Unisar 1.24.1867 manual Scan the archives, Actions on archives

Page 54

09

Using

Real life usage

BitDefender

 

Only the found malware will be displayed on the screen, but the log file will contain one line about every file scanned and its status. You can easily grep for “infected” and “suspected” keywords to see the report regarding them.

This is the beginning of the log file.

//

//BitDefender scan report

//Time: Fri Jan 27 15:24:03 2006

//Command line: --log=/tmp/bdscan.log --no-list /

//Core: AVCORE v1.0 (build 2266) (i386) (Mar 1 2005 19:34:16)

//Engines: scan: 13, unpack: 4, archive: 39, mail: 6

//Total signatures: 266776

//

/bin/dd ok /bin/cp ok /bin/df ok /bin/ed ok /bin/du ok /bin/ln ok /bin/ls ok

...

9.1.4. Scan the archives

BitDefender Antivirus Scanner for Unices can unpack and scan inside archives. There is a limit of archive recursion depth, to prevent several exploits such as the zip-bomb. You should be suspicious of every file archived recursively too many times.

Actions on archives

You should be aware of the fact that some actions, such as disinfect, are possible to fail when scanning archives. The reason is BitDefender will not try or will not succeed to recreate the archive, removing some objects from inside. Several closed-source compression algorithms are free only to uncompress and require a valid license and registration for compression, therefore BitDefender can only unpack such an archive.

Let's suppose you have a many-times-archived file: file.exe.tar.gz.bz2.zip.rar. You can scan it, setting a maximum recursive level, with the next command.

# bdscan --verbose --archive-level=10 file.exe.tar.gz.bz2.zip.rar

54

Image 54
Contents Users Guide Users Guide As every cat owner knows, nobody owns a cat BitDefender Antivirus Scanner for Unices Table of Contents Real life usage UninstallConfiguration file Testing BitDefender BitDefender integrationProduct registration UpdatesFrequently Asked Questions Support Best practicesBitDefender Antivirus Scanner for Unices Viii End User Software License Agreement End User Software License Agreement End User Software License Agreement Xii Preface Conventions used in this bookTypographical conventions Command AdmonitionsBook structure Request for Comments Description and features Description and features Why BitDefender? OverviewData Security Division Softwin Description Product features BitDefender Antivirus Scanner for UnicesKey Features Scanning mechanism More in the manualFeatures Installation Installation Prerequisites System requirementsHardware system requirements Linux convention Package naming conventionSoftware system requirements Linux requirementsFreeBSD convention Installation Package installation Test the package for integrityTest the rpm and deb packages Test the self-extractable archive Test the FreeBSD tbz packageInstall the deb package Install the packageInstall the rpm package Install the self-extractable archiveAdditional parameters Installer Install the FreeBSD packageConfigures the quarantine directory Uninstall the deb package UninstallUninstall the rpm package Uninstall using the self-extractable archiveUninstall the FreeBSD package Uninstall a package downloaded locallyUninstall from the ports collection Using BitDefender Using BitDefender Configuration file System versus User configurationMore about triggered update Key DescriptionUsing07 BitDefender Regular users and quarantineUsing BitDefender Product registrationTesting BitDefender Scan an executable fileEicar online resources Command output will be the following Scan an archiveScan a mailbox Tmp/mail.mbox Real life usage Virus scanningScan a regular file Scan a directory Scan the entire system Scan the archives Actions on archivesScan the mailbox Using the log file ReportGet more information Display the virus listVirus submission Display the product versionMidnight Commander BitDefender integrationDesktop integration Different installation path KDE KonquerorDo not break the last line Krusader Action on file in KonquerorROX-Filer Krusaders User ActionsPine Pine Information CenterWhat to do with infected emails This is how the screen should look likeExit Status Interval 1,254 Evolution BitDefender pipe bdscanpipeKMail Server integration Filter actions in KMailQmail-Scanner installation MailScanner installationMailScanner Amavisd-new Change it to the following formAmavisd-new installation Using Run the triggered update UpdatesTriggered update Regular updatesEdit the cron table Manual update Http proxyOrder to extract the updates Product registration Trial License License for home or personal useCheck the expiration date License for commercial use Best practices Best practices Getting help Getting help Frequently Asked Questions Getting help Support Support departmentBitDefender Knowledge Base Address Contact informationWeb addresses Softwin GmbHRomania BitDefender LLCGetting help Manual Pages Manual Pages Synopsis DescriptionOptions Manual Pages Actions Examples FilesBugs See alsoManual Pages Glossary Disk drive Command lineCookie DownloadFilename extension EventsFalse positive HeuristicNon-heuristic Macro virusMail client Packed programsScript PortReport file Startup itemsVirus definition UpdateVirus Worm