Re: [clamav-users] Recommended workstation usage?

2017-12-20 Thread G.W. Haywood
Hi there, On Wed, 20 Dec 2017, Dan Rawson wrote: Even starting the file manager took 20 or 30 seconds with that scan running. Run the scans when you're in bed. I did search through the documentation but didn't see much addressing "best practices" in a single machine environment. There are

Re: [clamav-users] Recommended workstation usage?

2017-12-20 Thread Alain Zidouemba
And...Pdf, Rtf, Doc, Xls, Ppt, Html etc... and I could go on. There are some vulnerabilities that affect applications across platforms. Something to keep in mind. Might be better to exclude "Win.", rather than chose what to include. - Alain On Wed, Dec 20, 2017 at 9:53 AM, Joel Esler (jesler) w

Re: [clamav-users] Recommended workstation usage?

2017-12-20 Thread Joel Esler (jesler)
You may want to add “ELF….” To your count. Perhaps even “OSX….” -- Joel Esler | Talos: Manager | jes...@cisco.com On Dec 20, 2017, at 7:02 AM, Maarten Broekman mailto:maarten.broek...@gmail.com>> wrote: There are far more than 31 signatures that have the potential

Re: [clamav-users] Recommended workstation usage?

2017-12-20 Thread Dan Rawson
Maarten - Great summary, thanks! Dan On 12/20/2017 07:02 AM, Maarten Broekman wrote: There are far more than 31 signatures that have the potential to impact Linux systems. There are, in truth, over 23,000 signatures that are able to detect malware on Linux and Unix systems. Most "Linux" signat

Re: [clamav-users] Recommended workstation usage?

2017-12-20 Thread Maarten Broekman
There are far more than 31 signatures that have the potential to impact Linux systems. There are, in truth, over 23,000 signatures that are able to detect malware on Linux and Unix systems. Most "Linux" signatures only contain the word Unix, however. Additionally, keep in mind that these are only f

Re: [clamav-users] Recommended workstation usage?

2017-12-20 Thread Al Varnell
FYI, there are 31 ClamAV signatures that contain the word "Linux". There are currently almost 6.4 million ClamAV signatures in the database. All but two are in main.ndb or main.hdb, meaning they are relatively old. All but five start with Win.Trojan or Win.Exploit or Win.Tool so I'm not clear o

Re: [clamav-users] Recommended workstation usage?

2017-12-20 Thread Matus UHLAR - fantomas
On 19.12.17 12:44, Dan Rawson wrote: I'm working on running clamav on my Linux workstation - NOT a server environment.  What is the recommended usage in that environment?  clamd + OnAccess?  clamscan scheduled from cron?? clamdscan scheduled from cron?? I did search through the documentation

Re: [clamav-users] Improving clamscan speed?

2017-12-20 Thread Matus UHLAR - fantomas
On 19.12.17 12:28, Dan Rawson wrote: "clamscan -v --stdout -r" and "clamdscan -v --stdout" take approximately the same time.  They both use all of a single core on my quad-core machine (25% of the available CPU cycles). as expected. Running "clamdscan -m -v --stdout" completes in approximate