Hello,
Using Ubuntu/Debian package install with the test files from
clamavscan-testfiles package
Set the logging on and most everything seems to work correctly.
When I execute:
clamdscan --fdpass -m /usr/share/
the log output looks like this:
---snip
Jul 3 14:08:05 flanker clamd[25264]: fd[51]: ClamAV-Test-File FOUND
Jul 3 14:08:05 flanker clamd[25264]: fd[50]: ClamAV-Test-File FOUND
Jul 3 14:08:05 flanker clamd[25264]: fd[19]: ClamAV-Test-File FOUND
Jul 3 14:08:05 flanker clamd[25264]: fd[56]: ClamAV-Test-File FOUND
Jul 3 14:08:05 flanker clamd[25264]: fd[65]: ClamAV-Test-File FOUND
Jul 3 14:08:05 flanker clamd[25264]: fd[52]: ClamAV-Test-File FOUND
Jul 3 14:08:05 flanker clamd[25264]: fd[57]: ClamAV-Test-File FOUND
Jul 3 14:08:05 flanker clamd[25264]: fd[66]: ClamAV-Test-File FOUND
--- snip
I assume this is clamav detecting the test files. I'd like to get more
data on these detections... like which file triggered the detection.
I set LogVerbose to true in /etc/clamac/clamd.conf, but the log output
is the same.
Is there a way to get better diags on the logged detections?
Thanks
R
_______________________________________________
Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net
http://www.clamav.net/support/ml