[Declude.Virus] Funny how....

2001-12-11 Thread Chris Hunt
[EMAIL PROTECTED] is used only as a recipient for Declude Virus and now its getting (attempted) viruses. I thought the Badtrans was done but maybe some domains are slow ;) Chris === To: [EMAIL PROTECTED] Subject: virus detected Declude Virus v1.29 caught the :

RE: [Declude.Virus] Funny how....

2001-12-11 Thread Smart Business Lists
I've added %HEADERS% to my postmaster email as I've had several badtrans that have used the recipient address as the sender address . -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Chris Hunt Sent: Tuesday, December 11, 2001 7:14 AM To: [EMAIL

[Declude.Virus] vir####.log analyzer ?

2001-12-11 Thread FIRST Internet Declude Virus Account
I'm wondering if anybody has a utility that will process the vir.log that is produced to provide useful statistics on the types of viruses received as well as the number (and maybe even sender/recipient info). Has this been done by anybody yet? Mike Tindor

Re: [Declude.Virus] Where is the virus information in vir####.log

2001-12-11 Thread Matthew Lohr
That is all I se as well. I was just about to respond to your last email and say that I was in the middle of writing an asp app to check the logs and report on viruses. I guess we are waiting on the gret Mr. R. Scott Perry for this one -- Original Message

Re: [Declude.Virus] Where is the virus information invir####.log

2001-12-11 Thread R. Scott Perry
Am I missing something? In the past I thought that the vir.log actually listed the names of the viruses found - but I am not seeing this. All I am seeing are generic messages such as '12/09/2001 21:57:49 Q249e036 File(s) are INFECTED [3]' Is this a result of using the PRESCAN, or is it

MISSING_REVERSE_DNS:RE: [Declude.Virus] Where is the virus information in vir####.log

2001-12-11 Thread Jeff Pitoniak
First you need to change declude configuration to give you more info. Look for X:\Imail\declude\virus.cfg and make sure logging is set to mid. # The in the LOGFILE option automatically gets replaced with the month/date LOGFILE D:\IMail\spool\vir.log LOGLEVEL MID

DSN:Re: [Declude.Virus] vir####.log analyzer ?

2001-12-11 Thread smb
A simple virus log file analyizer can be found at the addresses below. Note in the Declude virus.cfg file the LOGLEVEL must be set to MID to report the virus names. Stu CSOnline System Administrator An update to the Virus Log File Analyzer previously listed has been posted. Version 1.2 deals

[Declude.Virus] f-prot server and termserv

2001-12-11 Thread Smart Business Lists
Every time I logon on my Win2k server running f-prot with TermServ the realtime protector comes on. My scheduler seems to be working. Anyone know how to make the realtime protector stay off? Terry --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] This