F-Secure parsing change?

James A. Pattie james at PCXPERIENCE.COM
Fri Mar 28 21:11:10 GMT 2003


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I've gotten a report from a DansGuardian Anti-Virus user that F-Secure
was acting up.

His output from running f-secure-wrapper is:

/usr/lib/DGVirus/f-secure-wrapper
/var/www/html/dansguardian/quarantine/20030326/Barbara/http\:/www.eicar.org/
download/eicar.com.txt/fileKSqUM5
F-Secure Anti-Virus for i386-linux Release 4.14 build 4062
Frisk Software International F-PROT engine version 3.10 build 701
sign.def version 2003-03-26
sign2.def version 2002-12-17
fsmacro.def version 2003-03-25

/var/www/html/dansguardian/quarantine/20030326/Barbara/http:/www.eicar.org/d
ownload/eicar.com.txt/fileKSqUM5    infection: EICAR_Test_File

       1 files scanned
       1 infections found
[root at mail.intern.fischer.or.at dansguardian]#


Upon investigation it appears that F-Secure is no longer outputing []'s
around the filename from looking at the 4.13-3 sources.

I went to F-Secure's website and could not determine what the latest
version is they are using, so I don't know if 4.14 is old or the latest.

Just giving a heads up.  :)

- --
James A. Pattie
james at pcxperience.com

Linux  --  SysAdmin / Programmer
Xperience, Inc.
http://www.pcxperience.com/
http://www.xperienceinc.com/

GPG Key Available at http://www.pcxperience.com/gpgkeys/james.html
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQE+hLputUXjwPIRLVERAkiDAKCEbCz1wmL2N+2OOtNK86ItfylaFgCgvXV5
zgB5miHcJU7vvek+crO4X+I=
=f6Z3
-----END PGP SIGNATURE-----


--
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.



More information about the MailScanner mailing list