Greetings; I have trolled thru the man pages at length, and can find no option to make it just a little more verbose by outputting something that would serve to identify the originator of a compromised email. What we do get, is hard to impossible to actually connect to a given email currently sitting in a kmail folder.
This is all I am getting in the /var/log/clamav/clamav.log: Thu Jan 30 10:22:29 2014 -> instream(local): Sanesecurity.Malware.20493.ZipHeur.UNOFFICIAL(75da5ae7bb694b4d03687026bb4d6ee4:22222) FOUND all on one long line of course. No "FOUND" yet today which seems odd. Such a feature would appear to me to be handier than sliced bread or bottled beer. Am I missing something? If so, please point me at it. Thanks. Cheers, Gene -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.net:6309/gene> WTB: Will pay 100 USD for an HP-4815A defective but complete probe assembly. _______________________________________________ Help us build a comprehensive ClamAV guide: https://github.com/vrtadmin/clamav-faq http://www.clamav.net/support/ml