According to VirusTotal, ClamAV does detect it as Doc.Dropper.Agent-6369707-0 <https://www.virustotal.com/en/file/142a177f214671f7abd22f9e545595bf56a8116763bb7e9de7368aa1b2d381bf/analysis/ <https://www.virustotal.com/en/file/142a177f214671f7abd22f9e545595bf56a8116763bb7e9de7368aa1b2d381bf/analysis/>>
but go ahead and try to submit it anyway. -Al- On Tue, Nov 14, 2017 at 03:33 AM, Emanuel wrote: > Hello, > > I received two docs files in a email with the Subject "Invoice". The > attachment is a malware virus, clamav not detected this. > > Scan with kaspersky > > > Scan result > File is infected > Detected threats > Trojan-Downloader.MSWord.Agent.bqx > File size > 144.95 KB > File type > OOXML/DOCUMENT > Scan date > Nov 14 2017 08:15:42 > Databases release date > Nov 14 2017 10:36:04 UTC > MD5 > 70bdc39f8f57e090bebc4616924cdadc > SHA1 > ecf414f8523627a0d5d6637041f6e1e3bbcee62e > SHA256 > 142a177f214671f7abd22f9e545595bf56a8116763bb7e9de7368aa1b2d381bf > > it's possible to add manually this virus to the clamav database? -Al- -- Al Varnell Mountain View, CA
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ clamav-users mailing list clamav-users@lists.clamav.net http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users Help us build a comprehensive ClamAV guide: https://github.com/vrtadmin/clamav-faq http://www.clamav.net/contact.html#ml