RE: REVDNS:RE: [Declude.Virus] Virus Issue

2001-08-14 Thread Craig Gittens
ditto here please. [EMAIL PROTECTED] TIA Craig. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Kevin Crawford Sent: Monday, August 13, 2001 12:06 PM To: [EMAIL PROTECTED] Subject: REVDNS:RE: [Declude.Virus] Virus Issue could you send me that file as

[Declude.Virus] FW: WARNING: YOU WERE SENT A VIRUS

2001-08-14 Thread Craig Gittens
Guys, this is what I got. Hope it helps. I use McAfee. Thanks hostmaster@paperworks! Craig. -Original Message- From: Postmaster [mailto:[EMAIL PROTECTED]] Sent: Tuesday, August 14, 2001 9:39 AM To: [EMAIL PROTECTED] Subject: WARNING: YOU WERE SENT A VIRUS

RE: [Declude.Virus] FW: WARNING: YOU WERE SENT A VIRUS

2001-08-14 Thread Kevin Crawford
I didn't catch it on f-prot or symantecAV 2001 both with latest defs... bummer. My outlook security update would be the only save here...h -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Craig Gittens Sent: Tuesday, August 14, 2001 9:46 AM To:

RE: REVDNS:RE: [Declude.Virus] Virus Issue

2001-08-14 Thread Dan Spangenberg
I never did get the file, could someone please send it to me, offlist of course? [EMAIL PROTECTED] Thanks Dan -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Craig Gittens Sent: Tuesday, August 14, 2001 7:33 AM To: [EMAIL PROTECTED] Subject: RE:

Re: REVDNS:RE: [Declude.Virus] Virus Issue

2001-08-14 Thread Jerry Murdock
I think it's just a link to Trend's browser based scanner. http://housecall.antivirus.com Jerry - Original Message - From: Dan Spangenberg [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Tuesday, August 14, 2001 10:53 AM Subject: RE: REVDNS:RE: [Declude.Virus] Virus Issue I never did

Re: REVDNS:Re: [Declude.Virus] Can declude use two scanners?

2001-08-14 Thread Jerry Murdock
I looked at it for a second when the Declude virusname/virusfile tokens were introduced, but to be honest, I haven't really tried. Because I use F-Prot as my first in line and I bypass the subsequent tests upon finding a virus, I decided to just let Declude handle the f-prot report. For the few

RE: REVDNS:RE: [Declude.Virus] Virus Issue

2001-08-14 Thread Dan Spangenberg
Well good ole' declude and Dr. Solomon caught the accstat.exe just fine. The spool file name is D41443b6.SMD. The virus is named the W95/MTX.gen@M virus !!! The filename was ACCSTAT.EXE Thanks All Dan -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL

Re: REVDNS:RE: [Declude.Virus] Virus Issue

2001-08-14 Thread Jerry Murdock
Expected since mcafee and solomon share the same engine. FWIW: Norman does not catch it either. Kaspersky identifies it as i-worm/magistr.corrupted. I found the corrupted interesting, don't know what it really means though. Jerry - Original Message - From: Dan Spangenberg [EMAIL

RE: REVDNS:RE: [Declude.Virus] Virus Issue

2001-08-14 Thread Kevin Crawford
F-prot support - I reported that they weren't stopping this one, and within 2 hours wanted a copy! I sent it to them - I'll keep you posted... they are in good company still though - symantec doesn't catch it either. Hopefully it is a corrupted non voltile strain??? Don't want my 20 bucks for 20

[Declude.Virus] Virus Issue resolved

2001-08-14 Thread R. Scott Perry
Hopefully it is a corrupted non voltile strain??? Don't want my 20 bucks for 20 users to go to waste :) I just had it tested in our virus lab, and when we try to run it (on NT) a pop-up windows appears that says that it is not a valid Windows NT application. Nor did it change the registry

RE: [Declude.Virus] Virus Issue resolved

2001-08-14 Thread Craig Gittens
There is a version of magistr that is corrupted: http://www.symantec.com/avcenter/venc/data/w32.magistr.corrupt.html Craig. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of R. Scott Perry Sent: Tuesday, August 14, 2001 2:19 PM To: [EMAIL PROTECTED]

[Declude.Virus] F-Prot Updates?

2001-08-14 Thread J Porter
I emailed F-Prot about this, but I haven't yet had a response.How can I tell if the F-Prot data files are being updated properly? Doesanyone have an idea of how often they are updated or what is the date of thecurrent data files?I've set the schedule to update once per day, but all I get is