More problems with Sophos SAVI

Stephen Swaney Steve at swaney.com
Tue May 20 20:04:41 IST 2003


On Tue, 2003-05-20 at 12:59, Bobbejaan van Elst wrote:

> I had the almost same problem, I had sophos 3.68 (the latest update)
> and he has not detected the Palyh-A virus...
>


3.69 is the latest code but you should still have picked up the lateset
ide files via Sophos update:

-rw-rw-r--    1 root     root          495 May 19 06:23 lovgatel.ide
-rw-rw-r--    1 root     root          253 May 18 21:44 palyh-a.ide
-rw-rw-r--    1 root     root          881 May 15 10:11 fizzer-a.ide
-rw-rw-r--    1 root     root          352 May 15 06:13 lovgatei.ide
-rw-rw-r--    1 root     root         1337 May 13 13:29 lovgatej.ide
-rw-rw-r--    1 root     root          227 May 13 09:45 winur-d.ide
-rw-rw-r--    1 root     root        32604 May 11 08:32 randon-i.ide
-rw-rw-r--    1 root     root          225 May  9 10:14 boa-a.ide
-rw-rw-r--    1 root     root          256 May  9 09:30 kickin-a.ide

Steve
Steve Swaney
Steve at Swaney.com

> Now I'm using sophos f-prot and mcafee.. Till now I haven't any
> problems..
>
>
> At 16:52 5/20/2003 +0100, you wrote:
>
> > We run MS with both Sophos SAVI and McAfee UVSCAN. However I notice
> > that
> > for many days now

-rw-rw-r--    1 root     root          495 May 19 06:23 lovgatel.ide
-rw-rw-r--    1 root     root          253 May 18 21:44 palyh-a.ide
-rw-rw-r--    1 root     root          881 May 15 10:11 fizzer-a.ide
-rw-rw-r--    1 root     root          352 May 15 06:13 lovgatei.ide
-rw-rw-r--    1 root     root         1337 May 13 13:29 lovgatej.ide
-rw-rw-r--    1 root     root          227 May 13 09:45 winur-d.ide
-rw-rw-r--    1 root     root        32604 May 11 08:32 randon-i.ide
-rw-rw-r--    1 root     root          225 May  9 10:14 boa-a.ide
-rw-rw-r--    1 root     root          256 May  9 09:30 kickin-a.id
Sophos does not appear to finding _any_ viruses. We

> > were running with SAVI 3.68 which I updated to 3.69 today but with
> > no
> > improvement.
> >
> > A test of "sophoswrapper" on a file containing the EICAR test virus
> > shows that the new version of "sweep" is working OK.
> >
> > We are running MS 4.10-1.
> >
> > Any hints as to how I might debug the MS + Sophos setup would be
> > welcome.
> >
> > Quentin
> > ---
> > PHONE: +44 191 222 8209    Computing Service, University of
> > Newcastle
> > FAX:   +44 191 222 8765    Newcastle upon Tyne, United Kingdom, NE1
> > 7RU.
> > ------------------------------------------------------------------------
> > "Any opinion expressed above is mine. The University can get its
> > own."
>
>
> Met vriendelijke groet,
>
>            Bobbejaan van Elst
>     http://www.Life-eXtreme.com
>        http://www.the-mask.net
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.mailscanner.info/pipermail/mailscanner/attachments/20030520/5c008d90/attachment.html


More information about the MailScanner mailing list