We are taking a short break and will close the store, helpdesk and email from 17:00 GMT on Tuesday, 16h April to 09:00 Thursday, 25th April 2024.
If you purchase a license or Service Package before the closing date and require installation, please be sure to leave at least 24-48 hours before then for the work to be done. Otherwise, any work will be scheduled for after this period. We will reopen on Thursday, 25th April 2024.cxs /path/to/fileIf it is not detected and you believe it is an exploit, you can submit the files to us using the --wttw option and we will examine them to determine whether they should be added to the fingerprint database.
md5sum exploit.phpYou'll get something like this:
28f2623f836e5376bbd81782fda1be29 exploit.phpAdd the following to /etc/cxs/cxs.xtra:
md5sum:28f2623f836e5376bbd81782fda1be29And make sure that you add this to your command line in the cxs script files that you are using for scanning (cxsftp.sh, cxscgi.sh, cxswatch.sh):
--xtra /etc/cxs/cxs.xtraFor instance, if your cxs command line in cxscgi.sh is this:
/usr/sbin/cxs --quiet --cgi --smtp --mail root -Q /home/quarantine --qoptions Mv "$1"You should change it to:
/usr/sbin/cxs --quiet --cgi --smtp --mail root -Q /home/quarantine --qoptions Mv --xtra /etc/cxs/cxs.xtra "$1"If you are running cxswatch it is best to restart it when you make changes to cxs.xtra or cxs.ignore.