According to VirusTotal, ClamAV does detect it as Doc.Dropper.Agent-6369707-0
<https://www.virustotal.com/en/file/142a177f214671f7abd22f9e545595bf56a8116763bb7e9de7368aa1b2d381bf/analysis/
 
<https://www.virustotal.com/en/file/142a177f214671f7abd22f9e545595bf56a8116763bb7e9de7368aa1b2d381bf/analysis/>>

but go ahead and try to submit it anyway.

-Al-

On Tue, Nov 14, 2017 at 03:33 AM, Emanuel wrote:
> Hello,
> 
> I received two docs files in a email with the Subject "Invoice". The 
> attachment is a malware virus, clamav not detected this.
> 
> Scan with kaspersky
> 
> 
> Scan result
> File is infected
> Detected threats
> Trojan-Downloader.MSWord.Agent.bqx
> File size
> 144.95 KB
> File type
> OOXML/DOCUMENT
> Scan date
> Nov 14 2017 08:15:42
> Databases release date
> Nov 14 2017 10:36:04 UTC
> MD5
> 70bdc39f8f57e090bebc4616924cdadc
> SHA1
> ecf414f8523627a0d5d6637041f6e1e3bbcee62e
> SHA256
> 142a177f214671f7abd22f9e545595bf56a8116763bb7e9de7368aa1b2d381bf
> 
> it's possible to add manually this virus to the clamav database?

-Al-
-- 
Al Varnell
Mountain View, CA





Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
clamav-users mailing list
clamav-users@lists.clamav.net
http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml

Reply via email to