Koozali.org: home of the SME Server

Legacy Forums => Experienced User Forum => Topic started by: thomas_chan on April 21, 2005, 04:24:41 AM

Title: Any GNU tool to remove inflected virus Files
Post by: thomas_chan on April 21, 2005, 04:24:41 AM
Anyone can advise how to remove the virus from the inflected files when detected from CLAMAV ?


----------- SCAN SUMMARY -----------
Known viruses: 33185
Scanned directories: 8288
Scanned files: 104506
Infected files: 17
Data scanned: 1892.48 MB
I/O buffer size: 131072 bytes
Time: 2141.239 sec (35 m 41 s
Title: Any GNU tool to remove inflected virus Files
Post by: Tib on April 21, 2005, 05:30:21 AM
What I do in that case is ... log into the server using winscp and go to those directories and delete the infected e-mail or files.
The scan should give you the location of the infected files.

Regards,

Tib
Title: Any GNU tool to remove inflected virus Files
Post by: girkers on April 21, 2005, 05:41:00 AM
I get files like this, including a JPG file (go figure) and when I look at the iBay with my Windows box and do a virus scan using AVG (Free) it says there is nothing wrong with it.

In my case deleting the file is not a option, but I can not also confirm the positive detection by clam.

My 20cents worth (not including GST)
Title: Any GNU tool to remove inflected virus Files
Post by: Tib on April 21, 2005, 09:02:09 AM
girkers

Your right ... I have had a few so called infected files but when checked with a diff scanner all was ok but most of the time the file was infected. I run all my mail through IMAP ... using it this way the virus scanner on the comp doesn't pick up the virus unless you try and open the mail but clamv picked up the virus through the nightly scan. This of course doesn't work if you get your mail and open it right away. As for files the virus scanner on your comp should catch them well before you transfer the files to your server as long as you keep up your definition files.
Just be aware ... jpeg files can carry viruses.

I use AVG but not the free one ... with the free one the virus def's only get updated once a week mainly ... on my payed one I sometimes get e-mails informing me of updates 3 times a day ... like today.

Tib
Title: Any GNU tool to remove inflected virus Files
Post by: raem on April 21, 2005, 11:55:10 AM
Look for --remove in this thread
http://forums.contribs.org/index.php?topic=26761.msg109631#msg109631
Title: Re: Any GNU tool to remove inflected virus Files
Post by: CharlieBrady on April 21, 2005, 05:06:57 PM
Quote from: "thomas_chan"
Anyone can advise how to remove the virus from the inflected files when detected from CLAMAV ?


/bin/rm