Re: [clamav-users] Solaris pkg download

2017-11-17 Thread James
On 16/11/2017 17:15, Jones, Bob wrote: I have no servers that are ever allowed to access the internet. Is there a way to download the pkg file not using pkgutil? wget and many others will do it, the package file is just on a URL. Start here: http://rsync.opencsw.org/opencsw/ Choose a

Re: [clamav-users] PUA.Win.Trojan.EmbeddedPDF-1 false-positives

2017-11-17 Thread Eric Tykwinski
PUA's tend to have a lot of false positives due to them being Potential. I wouldn't recommend using them unless you really need a strict scan with the ability to whitelist when needed. Sincerely, Eric Tykwinski TrueNet, Inc. P: 610-429-8300 > -Original Message- > From: clamav-users

[clamav-users] PUA.Win.Trojan.EmbeddedPDF-1 false-positives

2017-11-17 Thread Alex
Hi, We're seeing a large number of false-positives with the above rule. Is it particularly prone to false-positives? Would someone explain how it works? What's perhaps even more strange is that scanning the email again (or the files within the email) don't produce the same false-positives. Was

Re: [clamav-users] Solaris pkg download

2017-11-17 Thread G.W. Haywood
Hi there, On Fri, 17 Nov 2017, Jones, Bob wrote: I have no servers that are ever allowed to access the internet. Is there a way to download the pkg file not using pkgutil? If you have no Internet access, I suspect that ClamAV is just a distraction. -- 73, Ged.

Re: [clamav-users] Virus Malvare not detected

2017-11-17 Thread ungifted01
14.11.2017 15:00, Al Varnell пишет: > According to VirusTotal, ClamAV does detect it as Doc.Dropper.Agent-6369707-0 > >