Re: [clamav-users] clamav-milter error

2017-10-27 Thread Michael D.
On 10/27/17 4:09 PM, Emanuel wrote: i use CentOS Linux release 7.3.1611 x86_64 /etc/clamd.conf LogFile /var/log/clamav/clamd.log LogSyslog yes PidFile /var/run/clamav/clamd.pid LocalSocket /var/run/clamav/clamd.sock User clamav LocalSocketMode 660 AllowSupplementaryGroups yes i solved this pro

Re: [clamav-users] EICAR file problems

2017-10-03 Thread Michael D.
On 10/03/2017 12:20 PM, Nymblewyke wrote: Trying to trigger CLAMAV with an EICAR file for a test. The file reacts on a windows machine, but on a redhat machine using clamav there is no trigger at all. We are using the standard eicar text file. Any thoughts on where to look for details on why i

Re: [clamav-users] ClamAV SegFault on Reload - 0.99.3-beta1

2017-09-26 Thread Michael D.
send it to you. It would be great to get to the bottom of this before releasing 0.99.3. Thanks, Steve On Mon, Sep 25, 2017 at 8:11 PM, Michael D. wrote: Hi Steven, Tried running "clamdscan --reload" throughout the night - no segfaults so far. I have been running "clamav-uno

Re: [clamav-users] ClamAV SegFault on Reload - 0.99.3-beta1

2017-09-25 Thread Michael D.
to reproduce the problem with 'clamdscan --reload'? Thanks, Steve On Sun, Sep 24, 2017 at 8:10 AM, Michael D. wrote: Hi, I twice tried to reach out to the ClamAV Developers regarding this error, but been ignored. Anyone? Best regards Michael Latest segfaults since reboo

Re: [clamav-users] ClamAV SegFault on Reload - 0.99.3-beta1

2017-09-24 Thread Michael D.
at 6 ip 7f3af21b41c5 sp 7ffe2c059ad8 error 4 in libclamav.so.7.1.1[7f3af20f5000+1cf000] Sep 24 13:42:53 Boomer kernel: clamd[22657]: segfault at 1c0d12b ip 7efbfdf2f1c5 sp 7fff0b092628 error 4 in libclamav.so.7.1.1[7efbfde7+1cf000] On 09/22/2017 05:50 PM, Michael D. wrote

Re: [clamav-users] Error: upgrading Clamav

2017-06-30 Thread Michael D.
On 06/30/2017 09:48 AM, Ravi Raj wrote: Hi I have read the documentation for clamav upgrading, when i run the commands for upgrade i.e. 'freshclam' & 'freshclam -d' i get the following Error output: [root@localhost ~]# freshclam ERROR: Please edit the example config file /etc/freshclam.conf ERR

Re: [clamav-users] Question on GUI notifications of virus detection

2017-06-19 Thread Michael D.
On 06/19/2017 07:49 PM, Bryan C. Everly wrote: Hi all, I am running Arch Linux with ClamAV 0.99.2 on a Thinkpad X1 Carbon (Skylake) using xorg and Gnome3. Anyhow, I have the ScanOnAccess stuff configured to where the system will detect any activity on my EICAR test file. My /opt/clamav-utils/c

Re: [clamav-users] Goldeneye ransomware

2016-12-08 Thread Michael D. L.
ClamAV doesn't detect/protect against malware by default. You need to add third-party databases like http://sanesecurity.com/ Works really well for me. Cheers. On 12/08/2016 05:53 PM, Matteo Dessalvi wrote: Hi all. In the last couple of days our Human Resources have received a bunch of emai

Re: [clamav-users] FW: Problem with setup

2016-05-25 Thread Michael D. L.
On 05/25/2016 11:06 AM, Philip Andersson wrote: I got some new information. The test files came from cybercom and all other test files they sent to us was blocked. I think that clamd removes the virus and reports OK back and translates the stream from PDF 1.4 to PDF 1.5. Because if I open

Re: [clamav-users] Problem with setup

2016-05-24 Thread Michael D. L.
On 05/24/2016 04:29 PM, Philip Andersson wrote: I know that the setup have work before, but the test virus is new and the clamav version is new. The plugins is written by me and used in small MTS application. I am not reading the log-file but the output stream from clamd, its two different

Re: [clamav-users] Problem with setup

2016-05-24 Thread Michael D. L.
On 05/24/2016 03:47 PM, Philip Andersson wrote: Sorry for the confusion. Here is what I am trying to do. I have a java plugin installed to a message transferring system (MTS). The MTS checks incoming data and sends it to the right ip:port. The plugin is called if the message contains atta

Re: [clamav-users] Problem with setup

2016-05-24 Thread Michael D. L.
On 05/24/2016 02:58 PM, Philip Andersson wrote: Well my internet messages is sent through the address and port that is in the config. So the file is sent from an url to clamd for virus check then forwarded if clamd does not report a virus. But the file ends up on the machine anyway. So i wan

Re: [clamav-users] Problem with setup

2016-05-24 Thread Michael D. L.
On 05/24/2016 02:32 PM, Philip Andersson wrote: Hello clam users, I have a problem with my setup that creates a bit of a problem. I have installed clamav99.2 with settings for my system from source, clamd runs fine with no error or warning output. Database is up to date and freshclam run

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-23 Thread Michael D. L.
On 05/23/2016 03:52 PM, Steve Basford wrote: Excellent - just installed it, and it's already working it's magic :) The views and opinions expressed by Michael in the above post that Sanesecurity possesses magic, are solely his own and do not necessarily represent the views of the ministry of ma

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-23 Thread Michael D. L.
On 05/23/2016 02:44 PM, C.D. Cochrane wrote: Hi Michael and Michael, You may want to look at sanesecurity[.]org. They have a supplemental ClamAV database that is supposed to be better at detecting the current scourge of ransomware and malware. It was recommended to me when I noted that Clam

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-23 Thread Michael D. L.
On 05/23/2016 01:43 PM, Michael Heseltine wrote: Hello all, I have recently modified my exim (4.82) configuration so that all messages pass through clamav (0.99.2) first. Anything labeled as malware should be rejected while the incoming SMTP connection is still open (using an *acl_smtp_data*

[clamav-users] Signature update schedule, and requirements for adding Signatures

2016-05-17 Thread Michael D. L.
Hi, Hope it's the right list I'm posting to :) Why is the Signature Database only updated every 4 hours? Every 15 minutes would make more sense, since Spammers move very fast pushing out new version of Trojans and alike. I've reported several Signatures/Files (via. the website), but they ne

Re: [Clamav-users] Reducing CPU consumption?

2004-07-03 Thread Michael D. Crawford
> I > think that you should get more details about their > setup and then you > can search documentation and mailing lists of those > particular programs. I don't know how they had it set up. I'll ask. I don't normally do any kind of administration of the hosting service's server. I'm just tryi

[Clamav-users] Reducing CPU consumption?

2004-07-03 Thread Michael D. Crawford
Recall that I was asking the list recently how to deal with getting 400 MB a day of the zafi.b virus in my mailbox. I can filter out my mailbox with a procmail script, followed by using clamscan and procmail, but my hosting service isn't yet able to do it for me. It turns out that they had clamav

Re: [Clamav-users] How to disinfect an mbox file?

2004-06-18 Thread Michael D. Crawford
I've been using formail, procmail and clamav to disinect a 200 MB mailbox, and since last night it's only processed 80 MB of mail so far. It's a 350 Mhz box that I'm running it on, and clamav must be pretty CPU intensive. Somebody tipped me off to the following procmail config, which filters on t

Re: [Clamav-users] How to disinfect an mbox file?

2004-06-17 Thread Michael D. Crawford
I think the virus that's assaulting me is what this page calls the PE_ZAFI.B virus: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=PE_ZAFI.B&VSect=T The clamav database lists a virus called Worm.Zafi.B. I'm still working on downloading my mailbox. I copied it to my home directo

Re: [Clamav-users] How to disinfect an mbox file?

2004-06-17 Thread Michael D. Crawford
Somebody yesterday said to use formail to convert maildirs back to mbox format. I've looked at the formail man page and I can't figure out how to do it. Can you tell me? I've successfully used a tool called yammc.pl to convert my mailboxes to maildir. There are several programs that claim to do

Re: [Clamav-users] How to disinfect an mbox file?

2004-06-16 Thread Michael D. Crawford
--- Jim Maul <[EMAIL PROTECTED]> wrote: > > Just curious, if clamav was running on the server, > how did the infected > message > get into the mbox in the first place? I think clamav was installed on the server, but I don't think the server is configured properly to use it yet. The hosting serv

[Clamav-users] How to disinfect an mbox file?

2004-06-16 Thread Michael D. Crawford
o, do you know some Linux software that could do it? I'm using clamscan version 0.70 on Debian testing for PowerPC. Thanks for any help you can give me. Michael D. Crawford [EMAIL PROTECTED] ^- a temporary email addr 'cuz I have too

RE: [Clamav-users] clamav-milter

2003-10-02 Thread Michael D. Bathrick
Thanks, everyone. These responses have given me a clue to continue with the good fight. Mike Michael D. Bathrick President BerkshireNet, Inc 126 Fenn Street Pittsfield, MA 01201 (413) 442-7805 -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of SCHULZ

RE: [Clamav-users] clamav-milter

2003-10-01 Thread Michael D. Bathrick
Now, clamd has crashed and won't come back up. Since it isn't volunteering any error messages on crash, can someone tell me where the errors are logged? Mike Michael D. Bathrick President BerkshireNet, Inc 126 Fenn Street Pittsfield, MA 01201 (413) 442-7805 -Original Message

[Clamav-users] clamav-milter

2003-10-01 Thread Michael D. Bathrick
../mkinstalldirs /usr/local/sbin /bin/ksh ../mkinstalldirs /usr/local/man/man1 make[2]: Leaving directory `/home/prez/clamav-0.60/clamav-milter' make[1]: Leaving directory `/home/prez/clamav-0.60/clamav-milter' Any ideas? Michael D. Bathrick President Berkshire

RE: [Clamav-users] New User question

2003-09-29 Thread Michael D. Bathrick
OK, I got it... clamscan/clamscan -r -l scan.txt -d [full path name to database] Mike Michael D. Bathrick President BerkshireNet, Inc 126 Fenn Street Pittsfield, MA 01201 (413) 442-7805 -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Michael D

[Clamav-users] New User question

2003-09-29 Thread Michael D. Bathrick
but when I put the proper directory in clamav.conf under DataDirectory, it still doesn't work. Does this need special permissions, or am I reading this wrong? Mike Michael D. Bathrick President BerkshireNet, Inc 126 Fenn Street Pittsfield, MA 01201