RE: [Declude.Virus] Log analyzer question

2003-09-23 Thread Dan Horne
I know this is an old message I'm responding to, but I just noticed that the
latest version of Sawmill at www.sawmill.net includes support for processing
Declude Spam, Declude Virus, and something called Declude Log Format.  It
also supports iMail Log Format, iMail Log Format (Alternate), and IMail7 Log
Format. I haven't tested any of those, but I will do so this weekend. 

 
Dan Horne, CCNA
Systems Administrator
TAIS Web
Wilcox World Travel & Tours
[EMAIL PROTECTED]


CONFIDENTIALITY NOTICE:
This email message, including any attachments, is for the sole use of the
intended recipient(s) and may contain confidential and privileged
information. Any unauthorized review, use, disclosure or distribution is
prohibited. If you are not the intended recipient, please contact the sender
by reply email and destroy all copies of the original message.


>>-Original Message-
>>From: [EMAIL PROTECTED] 
>>[mailto:[EMAIL PROTECTED] On Behalf Of John 
>>Tolmachoff (Lists)
>>Sent: Thursday, September 04, 2003 3:32 PM
>>To: [EMAIL PROTECTED]
>>Subject: [Declude.Virus] Log analyzer question
>>
>>
>>I have not had time in the last couple of weeks to go through 
>>the Virus Log analyzers available, so I have a question:
>>
>>Do any of them list in the report the number of infections 
>>and/or virus name by sending IP address, including be able to 
>>detect and bypass a backup mail server IP address?
>>
>>John Tolmachoff MCSE CSSA
>>Engineer/Consultant
>>eServices For You
>>www.eservicesforyou.com
>>
>>
>>
>>---
>>[This E-mail was scanned for viruses by Declude Virus 
(http://www.declude.com)]

---
This E-mail came from the Declude.Virus mailing list.  To unsubscribe, just
send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.Virus".The archives can be found
at http://www.mail-archive.com.

---
[This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)]

---
This E-mail came from the Declude.Virus mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.Virus".The archives can be found
at http://www.mail-archive.com.


Re: [Declude.Virus] Log analyzer question

2003-09-04 Thread serge
i've tried a few
none give that possibilty
so i'm using the tip scott gave me
the folks of dlanalyzer are working on a virus log analyzer
i  have asked for that feature
a simmilar report by sender adress (for non forging viruses) is also needed
(for dial up users without fixed ip adresses)
hope they include these features, and that they release  their product soon

i also requested a daily summary report per user instead of sending
notifications for each intercepted message
date/time, virus name, sender(or forged), senderIP, subject,
spoolfilename,...

- Original Message - 
From: "John Tolmachoff (Lists)" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Thursday, September 04, 2003 8:31 PM
Subject: [Declude.Virus] Log analyzer question


I have not had time in the last couple of weeks to go through the Virus Log
analyzers available, so I have a question:

Do any of them list in the report the number of infections and/or virus name
by sending IP address, including be able to detect and bypass a backup mail
server IP address?

John Tolmachoff MCSE CSSA
Engineer/Consultant
eServices For You
www.eservicesforyou.com



---
[This E-mail was scanned for viruses by Declude Virus
(http://www.declude.com)]

---
This E-mail came from the Declude.Virus mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.Virus".The archives can be found
at http://www.mail-archive.com.


---
[This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)]

---
This E-mail came from the Declude.Virus mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.Virus".The archives can be found
at http://www.mail-archive.com.