Hi All, Just in case this is useful to anyone:
Adrian of extremeshok-dot-com has forked Bill Landry's clamav-unofficial-sigs script and made quite a few new changes to the script: ---------------------------- Original Message ---------------------------- Subject: [sanesecurity] extremeshok/clamav-unofficial-sigs :: version 4.3 (updated 2015-05-13) From: "admin-at-extremeshok-dot-com" <ad...@extremeshok.com> Date: Wed, May 13, 2015 7:47 pm To: sanesecur...@freelists.org assp-t...@lists.sourceforge.net -------------------------------------------------------------------------- Location: https://github.com/extremeshok/clamav-unofficial-sigs Version 4.3.0 (updated 2015-05-13) * eXtremeSHOK.com Maintenance * Code refactoring: group and move functions to top of script * Complete rewrite of securiteinfo support, full support for Free/Delayed clamav by securiteinfo.com ;-P Note: securite info requires you to create a free account and add your authorisation code to the config. * Config updated to 4.3 Version 4.2.0 * eXtremeSHOK.com Maintenance * Replace annoying si_ , mbl_, ss_ with actual names ie. securiteinfo_ malwarepatrol_ sanesecurity_ * Complete rewrite of malwarepatrol support, full support for Free/Delayed clamav ;-P Note: malware patrol requires you to create a free account and add your "purchase" code to the config. * More fixes to config prasing and stripping of comments and whitespace * Code refactoring: remove empty commands: echo "" and comment "" * Config version detection and enforcing Version 4.1.0 * eXtremeSHOK.com Maintenance * Fix on default enable of foxhole medium and High false positive sources * grammatical corrections to some comments and log output * sig-boundary patch by Alan Stern * create intermediate monitor-ign-old.txt to prevent reading and writing of local.ign by Alan Stern Version 4.0.0 * eXtremeSHOK.com Maintenance * Enabled all low false positive sources by default * Added all Sanesecurity database files * Disabled all med/high false positive sources by default * Set default configs to work out of the box on a centos system * Silence cron job * Set correct paths throughout the script * Updated Installation Instructions * Updated Paths for removal * Updated Default locations to reflect installation instructions * Fix: correctly remove comments and blanklines from config before eval * Remove: invalid config values (eg. EXPORT path) * Fix: correctly check if rsync was successful Cheers, Steve Web : sanesecurity.com Blog: sanesecurity.blogspot.com _______________________________________________ Help us build a comprehensive ClamAV guide: https://github.com/vrtadmin/clamav-faq http://www.clamav.net/contact.html#ml