RE: [Declude.Virus] Fprot GDI Scanner lines.

2004-09-27 Thread Keith Johnson
Mark, What did you use to generate the GDI Exploit test file? Thanks Keith -Original Message- From: [EMAIL PROTECTED] on behalf of Mark Smith Sent: Mon 9/27/2004 1:55 PM To: [EMAIL PROTECTED] Cc: Subject: RE: [Declude.Virus]

RE: [Declude.Virus] Fprot GDI Scanner lines.

2004-09-27 Thread Keith Johnson
Nevermind, found a copy of it, just had trouble with the German. It seems my Inoc caught it correctly, however, the Fprot didn't, gave me error. Q6f7408d2006085b0 Scanner 1 reported error code #8, which is listed as OK 09/27/2004 15:52:20 Q6f7408d2006085b0 Scanner 2: Virus=

RE: [Declude.Virus] Fprot GDI Scanner lines.

2004-09-27 Thread Dave Marchette
Title: RE: [Declude.Virus] Fprot GDI Scanner lines. Same here. Is there a way to make f-prot w\Declude catch these? -Original Message- From: Keith Johnson [mailto:[EMAIL PROTECTED] On Behalf Of Keith Johnson Sent: Monday, September 27, 2004 12:51 PM To: [EMAIL PROTECTED]

RE: [Declude.Virus] Fprot GDI Scanner lines.

2004-09-27 Thread R. Scott Perry
Same here. Is there a way to make f-prot w\Declude catch these? The latest release of Declude Virus will automatically detect the GDIPlus.dll JPEG exploit. -Scott --- Declude JunkMail: The advanced anti-spam solution for IMail mailservers

RE: [Declude.Virus] Fprot GDI Scanner lines.

2004-09-27 Thread Andy Schmidt
Which one is considered the latest. Is that the mysterious latest interim 20 that end-users have announced on this list? Or is that the Version 1.80 that end-users have announced on this list. (If I somehow got unsubscribed form the announcement list then I apologize for wasting bandwidth.)

RE: [Declude.Virus] Fprot GDI Scanner lines.

2004-09-27 Thread R. Scott Perry
Which one is considered the latest. Unless otherwise specified, latest refers to a beta or release. In this case, it is specifically the v1.80 release. Is that the mysterious latest interim 20 that end-users have announced on this list? There's nothing mysterious about interims. We do not

RE: [Declude.Virus] Mysterious

2004-09-27 Thread Andy Schmidt
Sorry - new thread, as requested. I used the label mysterious because people (like me) had been highly anticipating the JPEG detection feature - and today we learn purely by accident that there are new interim and release releases. Mystery is an appropriate word, since I (the customer) know of

Re: [Declude.Virus] Mysterious

2004-09-27 Thread Jim Matuska
Yes Scott, thank you for updating Declude as well. I would prefer to have notifications of new releases go out ASAP to the lists, so that we as customers can decide if they are a priority to get installed, especially with all these new potential dangerous JPG's floating around (BTW, how

Re: [Declude.Virus] Mysterious

2004-09-27 Thread R. Scott Perry
Yes Scott, thank you for updating Declude as well. I would prefer to have notifications of new releases go out ASAP to the lists, so that we as customers can decide if they are a priority to get installed... I agree. :) If I had been the one deciding, I would likely have notified the lists

RE: [Declude.Virus] Mysterious

2004-09-27 Thread R. Scott Perry
I used the label mysterious because people (like me) had been highly anticipating the JPEG detection feature - and today we learn purely by accident that there are new interim and release releases. FYI, there was no new interim. Someone went to the URL to get an interim, saw that it wasn't what

[Declude.Virus] Virus test tools

2004-09-27 Thread John Tolmachoff \(Lists\)
Is there going to be a test added to the Tools page to test to see if the GDIplus.dll exploit will be caught? John Tolmachoff Engineer/Consultant/Owner eServices For You --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the

Re: [Declude.Virus] Mysterious

2004-09-27 Thread Bud Durland
R. Scott Perry wrote: ... especially with all these new potential dangerous JPG's floating around (BTW, how common are these, has anyone been picking them up with declude?) I'm not aware of any being picked up with Declude Virus yet. But there was a report earlier today of a trojan horse