Re: [clamav-users] Is Doc.Packed available as PUA category?

2021-01-14 Thread Matthew Molyett
ble? > > Best regards, > Toshiyuki Honda > > ___ > > clamav-users mailing list > clamav-users@lists.clamav.net > https://lists.clamav.net/mailman/listinfo/clamav-users > > > Help us build a comprehensive ClamAV guide: > https://

Re: [clamav-users] is this realy a positive? Html.Trojan.Exploit-112 FOUND

2019-03-06 Thread Matthew Molyett
My best guess is that it is false-positive, as this filesystem is > totally isolated from any interactive user access. > > > > But where can i find the details behind this alert ? > > > > Google has no match on this. > > ___ > > clamav-users mai

Re: [clamav-users] crypto currency miner

2018-01-02 Thread Matthew Molyett
; +-> OFFSET: ANY > +-> SIGMOD: NONE > +-> DECODED SUBSIGNATURE: > bo > * SUBSIG ID 4 > +-> OFFSET: ANY > +-> SIGMOD: NONE > +-> DECODED SUBSIGNATURE: > blake > > > -Al- > -- > Al Varnell > ClamXAV user > > > > > __________

Re: [clamav-users] VIRUS ({HEX}EICAR.TEST.10.UNOFFICIAL) in mail FROM [198.148.79.53]

2017-10-03 Thread Matthew Molyett
AR string, and the message certainly wasn't 68 bytes > long. > > For reference, clamscan does not detect EICAR in these messages, and > rightly so. > > ___ > clamav-users mailing list > clamav-users@lists.clamav.net > http:/

Re: [clamav-users] Signature specifics (was Re: Malware/ransomware and Yara signatures with clamav)

2017-05-16 Thread Matthew Molyett
> clamav-users@lists.clamav.net > http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > > > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav.net/contact.html#ml > -- Matthew Molyett Malware Researcher

Re: [clamav-users] Question about ClamAV

2017-05-11 Thread Matthew Molyett
riteInfoCom > ___ > clamav-users mailing list > clamav-users@lists.clamav.net > http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > > > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > h

Re: [clamav-users] LibClamAV Warning

2017-05-09 Thread Matthew Molyett
> > >> > > >> http://www.clamav.net/contact.html#ml > > >> > > > ___ > > > clamav-users mailing list > > > clamav-users@lists.clamav.net > > > http://lists.clamav.net/cgi-bin/mailman/listin

Re: [clamav-users] Artificial Intelligence Based Anti-Virus

2017-05-05 Thread Matthew Molyett
pes > you should read signatures.pdf > <https://github.com/vrtadmin/clamav-devel/blob/master/docs/signatures.pdf > >. > > -Al- PS: Sharp eyed readers may have noticed the Unicode homoglyphs being used in the decoded signature and discussion. That was done to prevent the text of these