How to debug problems with MailScanner and Vexira
Brent Bolin
brentbolin at HOTMAIL.COM
Mon Aug 23 15:55:50 IST 2004
<x-flowed>
Hi All,
What can I do to debug problems when using Vexira antivirus. Vexira simple
won't detect any viruses.
Clamav works fine.
Using the "top: command I can see the Vexira program running.
FreeBSD 5.2.1
MailScanner-4.31.6
product version: 2.2.1-14
engine version: 6.27.0.6
packlib version: 2.0.3.13 (supports 24 formats)
vdf version: 6.27.0.25
This is NOT a milter version, it has command line features. It works fine
when run from the command line.
# /usr/lib/Vexira/vexira --allfiles -s -z -noboot -nombr -r1 -rs -lang=EN
--alltypes /tmp/tmp/*
Vexira Antivirus / FreeBSD Version 2.2.1-14
Copyright (C) 2002-2004 Central Command, Inc. and/or its suppliers.
Portions copyright (C) 1996-2004 H+BEDV Datentechnik GmbH.
All rights reserved.
Loading /usr/lib/Vexira/vexira.vdf ...
VDF version: 6.27.0.25 created 23 Aug 2004
Vexira Antivirus license: 2003000000 for Specialty Store Services, Inc.
ALERT: [Eicar-Test-Signatur virus] /tmp/tmp/eicar.com <<< Contains code of
the Eicar-Test-Signatur virus
ALERT: [Worm/Netsky.D.Dam worm] /tmp/tmp/df-63198-5B08CC27 -->
my_details.pif <<< Contains signature of the worm Worm/Netsky.D.Dam
ALERT: [Worm/Mydoom.M worm] /tmp/tmp/df-00748-794D30E6 -->
specialtystoreservices.com <<< Contains signature of the worm Worm/Mydoom.M
------ scan results ------
directories: 0
scanned files: 7
alerts: 3
suspicious: 0
repaired: 0
deleted: 0
renamed: 0
scan time: 00:00:01
--------------------------
This might be interesting to note. If the "*" is not included in the scan
vexira dosen't find anything.
# /usr/lib/Vexira/vexira --allfiles -s -z -noboot -nombr -r1 -rs -lang=EN
--alltypes /tmp/tmp/
Vexira Antivirus / FreeBSD Version 2.2.1-14
Copyright (C) 2002-2004 Central Command, Inc. and/or its suppliers.
Portions copyright (C) 1996-2004 H+BEDV Datentechnik GmbH.
All rights reserved.
Loading /usr/lib/Vexira/vexira.vdf ...
VDF version: 6.27.0.25 created 23 Aug 2004
Vexira Antivirus license: 2003000000 for Specialty Store Services, Inc.
checking drive/path (list): /tmp/tmp/
------ scan results ------
directories: 1
scanned files: 0
alerts: 0
suspicious: 0
scan time: 00:00:01
--------------------------
drwxr-xr-x 14 root wheel 512 Aug 19 10:32 .
drwxr-xr-x 24 root wheel 512 Apr 25 06:56 ..
drwxr-xr-x 4 root wheel 512 Aug 19 10:33 MailScanner
drwx------ 5 smmsp smmsp 512 Jul 29 09:38 avmilter
drwxrwx--- 2 smmsp smmsp 512 Aug 23 09:42 clientmqueue
drwx-wx--- 3 root daemon 512 Apr 29 11:24 cups
drwxrwxr-x 2 uucp dialer 512 Aug 18 07:45 lock
drwxr-xr-x 2 root daemon 512 Jan 10 2004 lpd
drwxr-xr-x 2 root daemon 512 Aug 23 09:43 mqueue
drwxr-xr-x 2 root daemon 512 Aug 23 09:42 mqueue.in
drwx------ 2 root daemon 512 Jan 10 2004 opielocks
drwxr-xr-x 3 root daemon 512 Apr 25 06:56 output
drwxrwxrwt 2 root wheel 512 Jul 27 13:08 samba
drwxr-xr-x 3 root wheel 512 Jul 29 09:37 var
btb
_________________________________________________________________
Don^Òt just search. Find. Check out the new MSN Search!
http://search.msn.click-url.com/go/onm00200636ave/direct/01/
------------------------ MailScanner list ------------------------
To unsubscribe, email jiscmail at jiscmail.ac.uk with the words:
'leave mailscanner' in the body of the email.
Before posting, read the MAQ (http://www.mailscanner.biz/maq/) and
the archives (http://www.jiscmail.ac.uk/lists/mailscanner.html).
</x-flowed>
More information about the MailScanner
mailing list