Re: [clamav-users] Goldeneye ransomware

2016-12-08 Thread Michael D. L.
ClamAV doesn't detect/protect against malware by default. You need to add third-party databases like http://sanesecurity.com/ Works really well for me. Cheers. On 12/08/2016 05:53 PM, Matteo Dessalvi wrote: Hi all. In the last couple of days our Human Resources have received a bunch of

Re: [clamav-users] FW: Problem with setup

2016-05-25 Thread Michael D. L.
On 05/25/2016 11:06 AM, Philip Andersson wrote: I got some new information. The test files came from cybercom and all other test files they sent to us was blocked. I think that clamd removes the virus and reports OK back and translates the stream from PDF 1.4 to PDF 1.5. Because if I open

Re: [clamav-users] Problem with setup

2016-05-24 Thread Michael D. L.
On 05/24/2016 04:29 PM, Philip Andersson wrote: I know that the setup have work before, but the test virus is new and the clamav version is new. The plugins is written by me and used in small MTS application. I am not reading the log-file but the output stream from clamd, its two

Re: [clamav-users] Problem with setup

2016-05-24 Thread Michael D. L.
On 05/24/2016 03:47 PM, Philip Andersson wrote: Sorry for the confusion. Here is what I am trying to do. I have a java plugin installed to a message transferring system (MTS). The MTS checks incoming data and sends it to the right ip:port. The plugin is called if the message contains

Re: [clamav-users] Problem with setup

2016-05-24 Thread Michael D. L.
On 05/24/2016 02:58 PM, Philip Andersson wrote: Well my internet messages is sent through the address and port that is in the config. So the file is sent from an url to clamd for virus check then forwarded if clamd does not report a virus. But the file ends up on the machine anyway. So i

Re: [clamav-users] Problem with setup

2016-05-24 Thread Michael D. L.
On 05/24/2016 02:32 PM, Philip Andersson wrote: Hello clam users, I have a problem with my setup that creates a bit of a problem. I have installed clamav99.2 with settings for my system from source, clamd runs fine with no error or warning output. Database is up to date and freshclam

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-23 Thread Michael D. L.
On 05/23/2016 03:52 PM, Steve Basford wrote: Excellent - just installed it, and it's already working it's magic :) The views and opinions expressed by Michael in the above post that Sanesecurity possesses magic, are solely his own and do not necessarily represent the views of the ministry of

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-23 Thread Michael D. L.
On 05/23/2016 02:44 PM, C.D. Cochrane wrote: Hi Michael and Michael, You may want to look at sanesecurity[.]org. They have a supplemental ClamAV database that is supposed to be better at detecting the current scourge of ransomware and malware. It was recommended to me when I noted that

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-23 Thread Michael D. L.
On 05/23/2016 01:43 PM, Michael Heseltine wrote: Hello all, I have recently modified my exim (4.82) configuration so that all messages pass through clamav (0.99.2) first. Anything labeled as malware should be rejected while the incoming SMTP connection is still open (using an

[clamav-users] Signature update schedule, and requirements for adding Signatures

2016-05-17 Thread Michael D. L.
Hi, Hope it's the right list I'm posting to :) Why is the Signature Database only updated every 4 hours? Every 15 minutes would make more sense, since Spammers move very fast pushing out new version of Trojans and alike. I've reported several Signatures/Files (via. the website), but they