Hello,
je me suis installer avec apt-get avscan (3.1.1)
avec ce qui est requit a savoire: clamav 0.90.1-3.1 lenny2
et quand je fait un scan de /proc j’obtien le log suivan.
# AntiVirus Scanner - Version 3.1.1 - Scan Results Log
#
# Run view this log verbosely; run AVScan, click on the Results
# tab, go to Results->Open..., and open this file.
#
#StartTime=1180221270
#Duration=72
#NScanned=144
#NInfected=1
#NProblems=0
#Total=143
#BlocksScanned=602240
#Location=/proc
#Status=1 Virus Found 0 Problems Found Duration: 1:12
LibClamAV Warning: ***********************************************************
LibClamAV Warning: *** This version of the ClamAV engine is outdated. ***
LibClamAV Warning: *** DON'T PANIC! Read http://www.clamav.net/support/faq ***
LibClamAV Warning: ***********************************************************
"/proc/asound" Clean
"/proc/ide" Clean
"/proc/crypto" Clean
"/proc/key-users" Clean
"/proc/swaps" Clean
"/proc/kallsyms" Clean
"/proc/dma" Clean
"/proc/iomem" Clean
"/proc/ioports" Clean
"/proc/scsi" Clean
"/proc/misc" Clean
"/proc/acpi" Clean
"/proc/fb" Clean
"/proc/irq" Clean
"/proc/bus" Clean
"/proc/tty" Clean
"/proc/driver" Clean
"/proc/fs" Clean
"/proc/sys" Clean
"/proc/sysvipc" Clean
"/proc/net" Clean
"/proc/sysrq-trigger" Clean
!"/proc/kcore" Trojan.Downloader.Small-149
"/proc/modules" Clean
"/proc/diskstats" Clean
"/proc/zoneinfo" Clean
"/proc/vmstat" Clean
"/proc/buddyinfo" Clean
"/proc/slabinfo" Clean
"/proc/interrupts" Clean
"/proc/stat" Clean
"/proc/partitions" Clean
"/proc/cpuinfo" Clean
"/proc/devices" Clean
"/proc/kmsg" Clean
"/proc/mounts" Clean
"/proc/execdomains" Clean
"/proc/locks" Clean
"/proc/cmdline" Clean
"/proc/filesystems" Clean
"/proc/version" Clean
"/proc/meminfo" Clean
"/proc/uptime" Clean
"/proc/loadavg" Clean
"/proc/self" Clean
"/proc/1" Clean
"/proc/2" Clean
"/proc/3" Clean
"/proc/4" Clean
"/proc/5" Clean
"/proc/8" Clean
"/proc/9" Clean
"/proc/142" Clean
"/proc/192" Clean
"/proc/193" Clean
"/proc/194" Clean
"/proc/195" Clean
"/proc/327" Clean
"/proc/328" Clean
"/proc/330" Clean
"/proc/331" Clean
"/proc/336" Clean
"/proc/337" Clean
"/proc/359" Clean
"/proc/755" Clean
"/proc/1052" Clean
"/proc/1236" Clean
"/proc/1746" Clean
"/proc/1779" Clean
"/proc/1781" Clean
"/proc/1783" Clean
"/proc/1785" Clean
"/proc/1787" Clean
"/proc/2144" Clean
"/proc/2545" Clean
"/proc/2555" Clean
"/proc/2608" Clean
"/proc/2695" Clean
"/proc/2711" Clean
"/proc/2719" Clean
"/proc/2727" Clean
"/proc/2728" Clean
"/proc/2734" Clean
"/proc/2741" Clean
"/proc/2748" Clean
"/proc/2765" Clean
"/proc/2772" Clean
"/proc/2786" Clean
"/proc/2787" Clean
"/proc/2798" Clean
"/proc/2811" Clean
"/proc/2849" Clean
"/proc/2851" Clean
"/proc/2857" Clean
"/proc/2865" Clean
"/proc/2874" Clean
"/proc/2936" Clean
"/proc/2949" Clean
"/proc/2953" Clean
"/proc/2987" Clean
"/proc/2988" Clean
"/proc/2989" Clean
"/proc/2990" Clean
"/proc/2991" Clean
"/proc/2992" Clean
"/proc/3046" Clean
"/proc/3094" Clean
"/proc/3097" Clean
"/proc/3098" Clean
"/proc/3100" Clean
"/proc/3106" Clean
"/proc/3113" Clean
"/proc/3115" Clean
"/proc/3119" Clean
"/proc/3126" Clean
"/proc/3128" Clean
"/proc/3135" Clean
"/proc/3137" Clean
"/proc/3138" Clean
"/proc/3144" Clean
"/proc/3146" Clean
"/proc/3148" Clean
"/proc/3153" Clean
"/proc/3154" Clean
"/proc/3160" Clean
"/proc/3188" Clean
"/proc/3190" Clean
"/proc/3192" Clean
"/proc/3193" Clean
"/proc/3212" Clean
"/proc/3220" Clean
"/proc/3223" Clean
"/proc/3225" Clean
"/proc/3248" Clean
"/proc/3259" Clean
"/proc/3263" Clean
"/proc/5091" Clean
"/proc/5092" Clean
"/proc/5093" Clean
"/proc/5113" Clean
"/proc/5114" Clean
"/proc/5118" Clean
"/proc/5121" Clean
"/proc/5140" Clean
un peut plus tard apres un redemarrage, j’ai refait un scan
# AntiVirus Scanner - Version 3.1.1 - Scan Results Log
#
# Run view this log verbosely; run AVScan, click on the Results
# tab, go to Results->Open..., and open this file.
#
#StartTime=1180131809
#Duration=616
#NScanned=9905
#NInfected=1
#NProblems=1
#Total=534642
#BlocksScanned=1526172
#Location=/
#Status=1 Virus Found 1 Problem Found Duration: 10:16
LibClamAV Warning: ***********************************************************
LibClamAV Warning: *** This version of the ClamAV engine is outdated. ***
LibClamAV Warning: *** DON'T PANIC! Read http://www.clamav.net/support/faq ***
LibClamAV Warning: ***********************************************************
"//proc/acpi/event" Device or resource busy
!"//proc/kcore" Trojan.Spy.Small-3.dll
d’âpres ce que j’ais lu sur le net le fichier kore est un fichier est volatile qui contien la memoire du pc ou quelque chose dans ce genre la. mai bon le problème persiste âpres le démarrage.
je pencherai plutot pour un bug mai bon…
une idée?




