Re: [Clamav-users] Cannot prepare for JIT...

2010-10-18 Thread Daniel J McDonald
a patch like this to a specfile... -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX www.austinenergy.com ___ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://www.clamav.net/support/ml

Re: [Clamav-users] lstat() failed: Permission denied. ERROR

2009-12-21 Thread Daniel J McDonald
something like: $ cat eicar.txt | clamdscan -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX www.austinenergy.com ___ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://www.clamav.net/support/ml

Re: [Clamav-users] SubmitDetectionStats Error

2009-11-23 Thread Daniel J McDonald
it in the same twitter feed as the pattern updates. -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX www.austinenergy.com ___ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://www.clamav.net/support/ml

Re: [Clamav-users] Question of clamav/clamav-milter

2009-06-04 Thread Daniel J McDonald
On Wed, 2009-06-03 at 16:00 -0500, Javier Lopez wrote: Hi community, I would like to know if there is a way to send the e-mail messages that were clasified by clamav as Infected Message to a particulary e-mail account automatically as they are detected. Yes. Using amavisd-new, I can

Re: [Clamav-users] test for SafeBrowsing?

2009-03-30 Thread Daniel J McDonald
last week, out of about 181,000 messages. The messages were all identical You'd think someone at Google had the foresight to provide a test-URL. -- Daniel J McDonald, CCIE #2495, CISSP #78281, CNX Austin Energy http://www.austinenergy.com ___ Help

Re: [Clamav-users] test for SafeBrowsing?

2009-03-17 Thread Daniel J McDonald
On Tue, 2009-03-17 at 16:59 +0200, Török Edwin wrote: On 2009-03-17 16:57, McDonald, Dan wrote: On Tue, 2009-03-17 at 14:08 +, Steve Basford wrote: Is there a test string I can use to see if the SafeBrowsing code is working properly? I've just set up 0.95RC2 with SafeBrowsing

Re: [Clamav-users] Non-Windows Malware

2008-12-08 Thread Daniel J McDonald
On Sat, 2008-12-06 at 17:29 -0800, Dennis Peterson wrote: Derek Currie wrote: On Dec 6, 2008, at 12/06, 7:26 PM, Dennis Peterson wrote: There is no naming standard. Again with the misinformation. There is, in fact, a naming standard, Prove it. and an organization designated to

[Clamav-users] scan taking too long

2007-08-03 Thread Daniel J McDonald
files: 0 Data scanned: 25.20 MB Time: 488.716 sec (8 m 8 s) from the content, it appears to be marketing anyway, so it's not critical, but advice on what to do with it would be appreciated. -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com

Re: [Clamav-users] Build rpm of 0.90

2007-05-31 Thread Daniel J McDonald
section and it should do fine. While you are at it, upgrade to 0.90.3 ;-) -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com ___ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http

Re: [Clamav-users] AV server

2007-04-24 Thread Daniel J McDonald
Thanks for any help Chris ___ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://lurker.clamav.net/list/clamav-users.html -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com

Re: [Clamav-users] Upgrade to .90? - Update

2007-03-13 Thread Daniel J McDonald
you to all who answered my original email and to the ClamAV crew for the hard work you put into this effort. -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com ___ Help us build a comprehensive ClamAV guide

RE: [Clamav-users] Re: 0.90.1 freshclam error

2007-03-13 Thread Daniel J McDonald
clamd.conf is shown 644 root:root, should it be 644 clamav:clamav? That's not the problem. /var/lib/clamav/clamd.socket, or wherever you have put it, is the likely issue. -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com

Re: [Clamav-users] Starting clamd at boot time

2007-03-09 Thread Daniel J McDonald
that /etc/init.d/clamd refers to an image in the same location that you installed it. You might have put clamd in /usr/local/sbin, and the init.d file might be referring to /usr/sbin, as an example. -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com

Re: [Clamav-users] Zip module failure ERROR

2007-03-08 Thread Daniel J McDonald
. -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com ___ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] Zip module failure ERROR

2007-03-08 Thread Daniel J McDonald
On Thu, 2007-03-08 at 16:54 +0100, Ralf Hildebrandt wrote: * Don Drake [EMAIL PROTECTED]: I would, but I'm getting the following error in Bugzilla: You are not authorized to access bug #396. I wonder why that is -- it's a stupid idea IMHO. I believe all bugs are coded as security

Re: [Clamav-users] no virus scanning after manual ClamAV update

2007-03-08 Thread Daniel J McDonald
clamd.conf and restarting clamd will fix your problem. Thanks Sebastian -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com ___ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http

Re: [Clamav-users] Freshclam not updating

2007-03-08 Thread Daniel J McDonald
that freshclam does update properly? Thanks. Instead of AllowSupplementaryGroups make it AllowSupplementaryGroups yes You will probably need to read through the whole freshclam.conf and clamd.conf file to make those changes. -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http

Re: [Clamav-users] Zip module failure ERROR

2007-03-07 Thread Daniel J McDonald
On Wed, 2007-03-07 at 00:55 +0100, Tomasz Kojm wrote: On Tue, 06 Mar 2007 16:10:41 -0600 Daniel J McDonald [EMAIL PROTECTED] wrote: Suggestions welcome. I will try to hunt done a failure that is nabbed by quarantine or by a user who would be amenable to sharing the file. Did you

[Clamav-users] Zip module failure ERROR

2007-03-06 Thread Daniel J McDonald
by quarantine or by a user who would be amenable to sharing the file. -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com ___ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http

Re: [Clamav-users] Freshclam stability as a daemon [was: DB Update email before actual update available?]

2006-12-29 Thread Daniel J McDonald
to date, too bad the engine wasn't ;-) -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin Energy http://www.austinenergy.com ___ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://lurker.clamav.net/list/clamav

Re: [Clamav-users] Cherishing my ignorance - An appeal to package rs

2006-11-09 Thread Daniel J McDonald
, I'm going to tackle that beast. Of course, I don't have 4 hours, so it just gets deeper on the pile, and I never get my monitoring server built, and I never am able to contribute back to the project by helping other clueless newbies... -- Daniel J McDonald, CCIE # 2495, CISSP # 78281, CNX Austin

Re: [Clamav-users] Small number of ClamAV known viruses ?

2006-07-18 Thread Daniel J McDonald
) daily.cvd is up to date (version: 1601, sigs: 3715, f-level: 8, builder: ccordes) But if you have samples that clamav is not finding, you are welcome to submit them. -- Daniel J McDonald, CCIE #2495, CNX, CISSP #78281 Austin Energy gpg Key: http://austinnetworkdesign.com/pgp.key Key fingerprint

Re: [Clamav-users] clamav update

2006-07-18 Thread Daniel J McDonald
of your time. Most package maintainers are not pushing 0.88.3, as it is not a security fix. I agree that building a package takes just a few minutes. -- Daniel J McDonald, CCIE #2495, CNX, CISSP #78281 Austin Energy gpg Key: http://austinnetworkdesign.com/pgp.key Key fingerprint = B527 F53D 0C8C D38B

Re: [Clamav-users] Graphical Interface for clamAV

2006-05-19 Thread Daniel J McDonald
particular use/OS? I like ClamXav... I think for KDE there is klamav, but I've never played with it -- Daniel J McDonald, CCIE #2495, CNX, CISSP #78281 Austin Energy gpg Key: http://austinnetworkdesign.com/pgp.key Key fingerprint = B527 F53D 0C8C D38B DCC7 901D 2F19 A13A 22E8 A76A

Re: [Clamav-users] Re: OT: Download script

2006-04-25 Thread Daniel J McDonald
and scales, freshphish would be able to likewise scale, and work in everyone's environment irrespective of what version of gunzip they had Anyway, just my $0.02 -- Daniel J McDonald, CCIE #2495, CNX, CISSP #78281 Austin Energy gpg Key: http://austinnetworkdesign.com/pgp.key Key fingerprint

Re: [Clamav-users] Version mismatches on supposedly up-to-date system

2006-04-17 Thread Daniel J McDonald
now, but I learned a valuable skill for other open-source projects I work with. changing a srpm for a new version and rebuilding the binaries is a whole lot easier than messing with source installs on a minimal server. -- Daniel J McDonald, CCIE #2495, CNX, CISSP #78281 Austin Energy gpg Key

Re: [Clamav-users] Hmmmm. Trojan.Clicker.Small-100 ?

2006-02-21 Thread Daniel J McDonald
that's already been done in update 1293: Submission: 233376 Sender: Riksoft Submission notes: Signature removed to avoid FP. Removed: Trojan.Clicker.Small-100 -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] gpg Key: http://austinnetworkdesign.com/pgp.key Key

RE: [Clamav-users] Firewall's and freshclam

2006-02-21 Thread Daniel J McDonald
On Tue, 2006-02-21 at 12:48 -0800, [EMAIL PROTECTED] wrote: Ed Stover wrote: What tcp ports does freshclam use to update the virus database? DNS/UDP (53/udp) and HTTP/TCP (80/tcp) At one point the dns record was too large and 53/tcp was needed. -- Daniel J McDonald, CCIE # 2495, CNX

RE: [Clamav-users] Freshclam not running correctly?

2006-02-10 Thread Daniel J McDonald
is unable to use useful things like forward-only zones, so I would avoid it if at all possible. Best would be to just run bind on your scanner, and set up forward-only zones that point to your internal DNS. -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] gpg Key

Re: [Clamav-users] question about running ClamAV on dedicated server

2006-02-06 Thread Daniel J McDonald
/var/lib/clamav/clamd.socket with 1.2.3.4:3310 I'm curious because I work for an ISP that currently runs a dedicated Spamassassin server, and would like to investigate the possibility of doing the same for ClamAV. Any assistance would be greatly appreciated. -- Daniel J McDonald, CCIE

Re: [Clamav-users] Is CME officially supported/supporting ClamAV?

2006-02-01 Thread Daniel J McDonald
. -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] gpg Key: http://austinnetworkdesign.com/pgp.key Key fingerprint = B527 F53D 0C8C D38B DCC7 901D 2F19 A13A 22E8 A76A ___ http://lurker.clamav.net/list/clamav

Re: [Clamav-users] Scanning and eml file

2006-01-24 Thread Daniel J McDonald
, clamd seems to find nothing. Did you run freshclam to get the most recent pattern files? try clamscan --detect-broken in addition to clamdscan... -- Daniel J McDonald LAN/WAN Integrator Austin Energy Desk: 512 322 6739 Cell: 512 694 0654 [EMAIL PROTECTED

Re: [Clamav-users] Squirriel Mail clamav scanner

2006-01-09 Thread Daniel J McDonald
with market share. 70% or more of webservers are on something other than IIS, but 90% of the web hacks are against IIS. Using that logic, why don't most web hackers go after linux/apache? -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] gpg Key: http

Re: [Clamav-users] Report infected mail to the user

2006-01-05 Thread Daniel J McDonald
it to your backup spam filter, and again and again I much prefer to blackhole the message - 200 thanks for the spam! -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] gpg Key: http://austinnetworkdesign.com/pgp.key Key fingerprint = B527 F53D 0C8C D38B

RE: [Clamav-users] clamd.conf not recognizing TemporaryDirectory

2006-01-03 Thread Daniel J McDonald
/2006 -- No virus found in this outgoing message. Checked by AVG Free Edition. Version: 7.1.371 / Virus Database: 267.14.11/219 - Release Date: 1/2/2006 ___ http://lurker.clamav.net/list/clamav-users.html -- Daniel J McDonald, CCIE # 2495, CNX

Re: [Clamav-users] Freshclam

2005-12-30 Thread Daniel J McDonald
verify it using: $ ldd `which freshclam` -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] gpg Key: http://austinnetworkdesign.com/pgp.key Key fingerprint = B527 F53D 0C8C D38B DCC7 901D 2F19 A13A 22E8 A76A

Re: [Clamav-users] Clamdscan Upgrading Problem.

2005-12-28 Thread Daniel J McDonald
Or, since I use urpmi, I just do: urpmi.update update_source urpmi --update clamav and urpmi prompts me with a list of packages that it will install to meet the dependencies -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] gpg Key: http

Re: [Clamav-users] Timeout before data read

2005-12-28 Thread Daniel J McDonald
- without more details it's impossible to know. But that's where you should look first. Dec 28 17:35:59 apple sendmail[27243]: jBSEZmu7027243: Milter (clmilter): timeout before data read -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] gpg Key: http

Re: [Clamav-users] 9.scr

2005-10-10 Thread Daniel J McDonald
try: clamscan --detect-broken 9.scr Most likely it is a broken executable. -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] Amavisd source code

2005-10-04 Thread Daniel J McDonald
On Tue, 2005-10-04 at 16:50 +0300, Stephen Cheboi wrote: Where can i find the amavisd source code. I need to check on the default mail notifications when a virus is detected? http://www.ijs.si/software/amavisd/ -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL

Re: [Clamav-users] Re: clamav-users Digest, Vol 13, Issue 2

2005-10-03 Thread Daniel J McDonald
/shownotes.php?release_id=356974 -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

[Clamav-users] Common Malware Enumeration

2005-09-27 Thread Daniel J McDonald
Since the so-called major players are supposedly on board with this, will we see clamav providing input to this project? http://www.eweek.com/article2/0,1895,1862251,00.asp Frankly, it seems pretty hokey to me... -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL

Re: [Clamav-users] Common Malware Enumeration

2005-09-27 Thread Daniel J McDonald
On Wed, 2005-09-28 at 00:10 +1000, Bill Maidment wrote: Daniel J McDonald wrote: Since the so-called major players are supposedly on board with this, will we see clamav providing input to this project? http://www.eweek.com/article2/0,1895,1862251,00.asp Frankly, it seems pretty hokey

Re: [Clamav-users] clamscan can see TNEF files but clamdscan cannot

2005-09-15 Thread Daniel J McDonald
with the privileges of the logged in user). -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] Freshclam port

2005-09-07 Thread Daniel J McDonald
22, 25, 80 etc. It also uses DNS for version checking, so be sure to allow 53/udp and potentially 53/tcp to your DNS server. -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list

Re: [Clamav-users] managed ClamAV relays?

2005-08-22 Thread Daniel J McDonald
about MX records... -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] update with rpm

2005-07-26 Thread Daniel J McDonald
On Tue, 2005-07-26 at 10:43 +0100, Brian Morrison wrote: On Tue, 26 Jul 2005 11:18:06 +0200 in [EMAIL PROTECTED] Salvatore Basso [EMAIL PROTECTED] wrote: Hi, in the binary packages and ports I don't find rpm file for version 0.86.2 (in particular for Fedora Core 2), but there will be ??

Re: [Clamav-users] protection

2005-07-26 Thread Daniel J McDonald
been a while). If any others make it through, you've done something wrong. -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] protection

2005-07-26 Thread Daniel J McDonald
that should pass (I think it's 17 and 18, but it has been a while). If any others make it through, you've done something wrong. -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav

Re: [Clamav-users] clamav only virus? - Trojan.Briss-1

2005-07-26 Thread Daniel J McDonald
know that virus is really a virus if any other antivirus software know about trojan.briss-1? or am I wrong? F-secure finds other variations on the briss family, so it's most likely real. -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED

Re: [Clamav-users] clamav only virus? - Trojan.Briss-1

2005-07-26 Thread Daniel J McDonald
. -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

RE: [Clamav-users] AES-256 Encryption?

2005-07-15 Thread Daniel J McDonald
built it on? - Original Message - From: Daniel J McDonald Sent: Wed Jul 06 2005 11:14:58 GMT-0700 (Pacific Daylight Time) To: ClamAV users ML Subject: Re: [Clamav-users] AES-256 Encryption? On Wed, 2005-07-06 at 10:32 -0700, Johnny Stork wrote: How can I permit AES-256 encrypted

Re: [Clamav-users] Secondary relayhost option?

2005-07-11 Thread Daniel J McDonald
. As it should. A permanent error is supposed to be bounced. -- Daniel J McDonald, CCIE # 2495, CNX, CISSP # 78281 Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

RE: [Clamav-users] AES-256 Encryption?

2005-07-07 Thread Daniel J McDonald
appropriately) Be sure to run up2date first to get the most recent zlib-devel. Redhat should be releasing one in the next day or so, if they haven't done so already. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http

RE: [Clamav-users] Clamav + Exim on FreeBSD

2005-07-07 Thread Daniel J McDonald
was released yesterday that fixed another crash. I'm recompiling my clam's with the new library as I write this e-mail. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

RE: [Clamav-users] Clamav + Exim on FreeBSD

2005-07-07 Thread Daniel J McDonald
; /* incomplete set */ /* generate offsets into symbol table for each length for sorting */ I've seen announcements from Mandriva, RedHat, Gentoo, and Debian thus far. But the OP had a zlib library from 1998! That is certainly wrong, and why I said desperately. -- Daniel J McDonald, CCIE

Re: [Clamav-users] disable

2005-07-06 Thread Daniel J McDonald
of qmail, but you need a user either the same as the qmail scanner, or in the same group if you add allowsupplementarygroups in clamd.conf -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav

Re: [Clamav-users] AES-256 Encryption?

2005-07-06 Thread Daniel J McDonald
-- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] AllowSupplementaryGroups

2005-06-28 Thread Daniel J McDonald
socket if allowsupplementarygroups were set. I normally just do: adduser -g clamd clamd adduser -g amavis -G clamd amavis and I think the other permutation works too: adduser -g clamd -G amavis clamd adduser -g amavis amavis -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED

Re: [Clamav-users] Submissions (

2005-06-07 Thread Daniel J McDonald
usable data? Near the end of April, there were 32936 signatures. There are currently 34720 signatures, or an increase of 1784. Sounds like it is about 10% signal / 90% noise. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED

Re: [Clamav-users] Reporting Phishing Mails?

2005-05-26 Thread Daniel J McDonald
. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] Clam AV allows e-mail from www.webmail.us/testvirus through?

2005-05-17 Thread Daniel J McDonald
? The Mandriva postfix rpm allows for a content filter at port 10025. Are you using amavisd-new? Or are you using some other sort of milter-like configuration with postfix? -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http

Re: [Clamav-users] Upgrade to 0.85 or wait for 0.86

2005-05-13 Thread Daniel J McDonald
engine update from Symantec - which tells you how often I run windows ;-) but the 0.84 - 0.85 was definitely a bug-fix. For 0.83 there was an rc release series, but none for 0.84. And 0.84 probably would not have been needed had more people ran 0.83 rc2 and found the bugs beforehand. -- Daniel J

Re: [Clamav-users] Sober.P

2005-05-13 Thread Daniel J McDonald
that I was seeing 5-10 per minute. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] log entries.

2005-05-12 Thread Daniel J McDonald
question is - upgraded WHAT to 2.3.1-rc3? amavisd-new just released 2.3.1, and had 3 rc's, so most likely that's the question. Followups to the amavis-users list, please. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http

Re: [Clamav-users] failed upgrade

2005-05-09 Thread Daniel J McDonald
the e-smith antivirus folks hacked up clamav rather than their own system. Best talk to them. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] failed upgrade

2005-05-09 Thread Daniel J McDonald
On Tue, 2005-05-10 at 07:08 +1200, Robert Morgan wrote: Daniel J McDonald wrote: On Mon, 2005-05-09 at 23:39 +1200, Robert Morgan wrote: Thanks for the reply, I have followed the how to at http://www.pagefault.org/howto/e-smith-antivirus.shtml and everything went ok but how can I

Re: [Clamav-users] Maybe a virus Sober.P

2005-05-05 Thread Daniel J McDonald
. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] Maybe a virus Sober.P

2005-05-05 Thread Daniel J McDonald
On Thu, 2005-05-05 at 14:51 +0100, Matt Fretwell wrote: Dennis Peterson wrote: as it is harder to scan those messages for viruses Nonsense. Mail is mail. If you are running a mailserver, it should be able to cope with all types of mail, irrelevant of (creation|submission)

Re: [Clamav-users] Maybe a virus Sober.P

2005-05-05 Thread Daniel J McDonald
On Thu, 2005-05-05 at 09:32 -0500, John Madden wrote: If they were running their systems properly we wouldn't be having this conversation. The clients of those systems are able to retrieve mail and attachments straight to local storage while by-passing local filters (and policy). Not very

Re: [Clamav-users] Update to 0.84

2005-05-05 Thread Daniel J McDonald
make install 13. reload old config files overwriting newly installed ones OR edit new 14. config files with options to suit my set up. 15. restart clamd. 16. * restart freshclam 17. * restart MTA -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED

RE: [Clamav-users] Re: Clamav Loops infinitely

2005-05-02 Thread Daniel J McDonald
On Mon, 2005-05-02 at 15:45 +1000, Jeff Parson wrote: Clam AV was installed from the Swerts-Knudsen.dk install file from his web site to SME Server 6.0.1.01 and Clamav 0.84. Sme is loaded on a no name Celeron 566 with 64mb ram So, if you keep a nice top running in another window, does the

[Clamav-users] 0.84-RC2 - experiences?

2005-04-29 Thread Daniel J McDonald
I saw a little list chatter when 0.84-RC1 came out about a few problems. I haven't seen any messages at all about RC2. Does that mean that people are running it successfully and smoothly? -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED

Re: [Clamav-users] ClamAV 0.84 Released?

2005-04-29 Thread Daniel J McDonald
On Fri, 2005-04-29 at 14:22 -0400, Andre Nicholson wrote: Homepage says 0.83 is the latest stable although the SourceForge download page has 0.84, released today at 11:12, as available. Is there something wrong with the release or has an announcement just been a little late? The

Re: [Clamav-users] looking for utility that can control clamav remotely ...

2005-04-27 Thread Daniel J McDonald
, the clamd/clamdscan. Does anyone know any existing source code that can do such a thing ? Thanks. Webmin http://www.webmin.com/ -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav

Re: [Clamav-users] Attachments

2005-04-25 Thread Daniel J McDonald
scanner that couldn't scan .exe's! if no add-ons are installed. Is this correct? no. Im using it with Procmail an Clamassassin. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] possible new virus?

2005-04-19 Thread Daniel J McDonald
On Tue, 2005-04-19 at 11:52 -0600, lists wrote: Hello, I am getting a bunch of emails to random addresses at one of my domains with the following text: worm.sober.n --- Hello, First, Very Sorry for my bad English. How should I submit this to see if it is a virus? Make certain

Re: [Clamav-users] Submitting a virus file

2005-04-19 Thread Daniel J McDonald
On Tue, 2005-04-19 at 20:29 +0200, Niek wrote: On 4/19/2005 8:25 PM +0200, Tomasz Kojm wrote: Does it send itself via e-mail? No they didn't send themselves per e-mail. So what you're saying is, only selfspreading e-mail viruses qualify to make it through the submit process ? No,

Re: [Clamav-users] mail delay

2005-04-04 Thread Daniel J McDonald
, the other way around, add amavis to the clamav group, usermod -G clamav amavis then add: AllowSupplementaryGroups to the clamd.conf file, and restart both clamd and amavis-new. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED

Re: [Clamav-users] ERROR

2005-03-28 Thread Daniel J McDonald
it as a service, and let it keep track of when to go. I use checks 47 so that I don't end up at the hour or 1/2 hour Of course, if this is a home box, then checks 1 is probably sufficient. It's not like you will miss 1200 viruses a day... -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy

Re: [Clamav-users] what does it do!!

2005-03-23 Thread Daniel J McDonald
On Sun, 2005-03-20 at 13:17 +0545, [EMAIL PROTECTED] wrote: hello and hi!! i downloaded these rpm's clamav-db-0.83-1.0.rh9.rf.i386.rpm clamav-milter-0.83-1.0.rh9.rf.i386.rpm clamav-devel-0.83-1.0.rh9.rf.i386.rpm clamd-0.83-1.0.rh9.rf.i386.rpm i am running sendmail-8.12.8-4 on RedHat

Re: [Clamav-users] Test installation

2005-03-22 Thread Daniel J McDonald
On Tue, Mar 22, 2005 at 04:39:14PM +0100, Michel Machado wrote: Hi all, I am new with linux, but i could install it in the PC (Red hat 9). Now i have a problem with clamav0.83. In the doc you can see the following: did you install it from source, or an rpm? To test your installation

Re: [Clamav-users] The minimum configuration of clamAV

2005-03-22 Thread Daniel J McDonald
On Wed, Mar 23, 2005 at 12:10:09AM +0800, Kelvin wrote: Dear Sir/Madam, I am new in clamAV, I installed the clamAV-0.83 under Redhat AS3. After installed the clamAV, I tried to run the clamd but failed. The system prompted below ERROR: ERROR: Please edit the example config file

Re: [Clamav-users] Report Phishing attacks?

2005-03-22 Thread Daniel J McDonald
On Tue, Mar 22, 2005 at 08:49:40PM +0100, Julian Mehnle wrote: Matthew van Eerde wrote: Julian Mehnle wrote: The way to combat phishing is to employ sender authentication methods such as SPF, DomainKeys, and public-key message cryptography. This is unfortunately debatable. SPF,

Re: [Clamav-users] eicar within tnef

2005-03-22 Thread Daniel J McDonald
On Tue, Mar 22, 2005 at 05:36:04PM -0500, Jim Maul wrote: Nigel Horne wrote: On Tue, 2005-03-22 at 21:26, jef moskot wrote: Is anyone having trouble detecting Test #14 (the TNEF test) from http://www.webmail.us/testvirus ? TNEF is on my list of things to do. To be honest it had slipped

Re: [Clamav-users] Please edit the example config file error

2005-03-15 Thread Daniel J McDonald
since the error is: ERROR: Can't open/parse the config file /usr/local/etc/clamd.conf Most likely it is a permissions problem. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] Tool to upgrade

2005-03-03 Thread Daniel J McDonald
me 64bit PPC, x86 and SPARC machines. What!? You aren't going to support my Tru-64 boxes using Alpha Processors! Waaah! ;-) -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] Clamav Install RH7.3

2005-02-28 Thread Daniel J McDonald
of Clamav. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lurker.clamav.net/list/clamav-users.html

Re: [Clamav-users] libclamav

2005-02-24 Thread Daniel J McDonald
edit clamd.conf instead. That's because clamdscan doesn't take commandline options. clamscan will, but clamdscan uses the clam*d* daemon, which gets its options from the clamd.conf file when the daemon is started. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED

Re: [Clamav-users] Disabling ScanArchive ?

2005-02-23 Thread Daniel J McDonald
On Wed, 2005-02-23 at 11:52 -0600, Jason Byrns wrote: Dennis Peterson wrote: The options I see so far are: 1) Make them use hosting space, via HTTP/FTP, and don't allow emailing of banned file types at all. 2) Make them PGP encrypt their files. 3) Make them rename files. At the

Re: [Clamav-users] EICAR signature update: second attempt

2005-02-23 Thread Daniel J McDonald
can create an eicar virus easily enough by copying the text from http://eicar.com/anti_virus_test_file.htm ) That will tell us whether your problem is with clamav, or with blackhole. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED

Re: [Clamav-users] List SPF

2005-02-22 Thread Daniel J McDonald
On Tue, 2005-02-22 at 12:30 +0100, Luca Gibelli wrote: Hello Robin Lynn Frank, Might I respectfully suggest to the administrators of this list that if they use SPF, it would be a good idea to include any alternate servers they might use in the SPF DNS TXT. Can you provide a log

Re: [Clamav-users] ClamAV not paying attention to conf file.

2005-02-22 Thread Daniel J McDonald
by libclamav. This option # disables recommended options and allows you to enable selected ones below. # DO NOT TOUCH IT unless you know what you are doing. # Default: disabled #DisableDefaultScanOptions -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED

Re: [Clamav-users] Disabling ScanArchive ?

2005-02-22 Thread Daniel J McDonald
On Tue, 2005-02-22 at 09:57 -0800, [EMAIL PROTECTED] wrote: At 09:39 AM 2/22/2005, you wrote: Due to license issues with the original RAR3.0 unpacker one of our developers is working on a new version written from scratch. It's planned for 0.90. secondly, is there a way to employ unrar

Re: [Clamav-users] Disabling ScanArchive ?

2005-02-22 Thread Daniel J McDonald
On Tue, 2005-02-22 at 12:09 -0600, Jason Byrns wrote: Trog wrote: On Tue, 2005-02-22 at 11:00 -0600, Jason Byrns wrote: 'Banned filename'? ClamAV doesn't do banned filenames. So that's Amavis blocking banned file names, then? Yup. I guess I'd rather not just stop banned files

Re: [Clamav-users] No announcement of 0.83 on clamav-announce ML

2005-02-17 Thread Daniel J McDonald
keep your ears open. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users

Re: [Clamav-users] Problem with postfix+amavis+clamav

2005-02-17 Thread Daniel J McDonald
) doesn't have clamscan in its path, it probably won't work without specifying the full path. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users

Re: [Clamav-users] not updating clam

2005-02-15 Thread Daniel J McDonald
On Tue, 2005-02-15 at 08:09 -0500, akshat wrote: Dear All, My clam is not updated, my log says, Then you had best download .83 and run it instead... -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http

Re: [Clamav-users] Re: not updating clam

2005-02-15 Thread Daniel J McDonald
is quicker, then I use his.) My test server gets upgraded relatively quickly, and when I am satisfied that it is stable, I upgrade production. Any help appreciated, Regards, Akshat Daniel J McDonald writes: On Tue, 2005-02-15 at 08:09 -0500, akshat wrote: Dear All, My clam

Re: AW: [Clamav-users] not updating clam

2005-02-15 Thread Daniel J McDonald
are using Mandrake's URPMI, but they never released an 0.82, so that can't be it. database updates of course are done all of the time. -- Daniel J McDonald, CCIE # 2495, CNX Austin Energy [EMAIL PROTECTED] ___ http://lists.clamav.net/cgi-bin/mailman

  1   2   >