The maleware is not known atm only 12 virusscanner on Virus total detect it.
The spam wave hit us yesterday and caused a massiv internal spamwave.
Gesendet von meinem BlackBerry 10
Mit freundlichen Grüßen / Best Regards
i. A. Jan Hartmann
IT Administrator Groupware
phone: +49 2371 820 298
mobile: +49 171 865 962 2
fax: +49 2371 211 443
e-mail: j.hartm...@kirchhoff-automotive.com
KIRCHHOFF Witte GmbH
c/o KIRCHHOFF Automotive GmbH
Stefanstrasse 2
58638 Iserlohn
Germany
KIRCHHOFF Witte GmbH | HRB 6370 Amtsgericht Iserlohn | Sitz der Gesellschaft:
58640 Iserlohn | Geschäftsführer: Dipl.-Ing. Jürgen Wolfgang Kirchhoff, Andreas
Haase, Dipl.-Ing. Stefan Leitzgen | http://www.kirchhoff-automotive.com
Diese E-Mail enthält vertrauliche und/oder rechtlich geschützte Informationen.
Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich erhalten
haben, informieren Sie bitte sofort den Absender und vernichten Sie diese
Mail.Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser Mail ist
nicht gestattet. This e-mail may contain confidential and/or privileged
information.If you are not the intended recipient (or have received this e-mail
in error) please notify the sender immediately and destroy this e-mail. Any
unauthorised copying, disclosure or distribution of the material in this e-mail
is strictly forbidden.
-Smartphone.
Originalnachricht
Von: Al Varnell
Gesendet: Mittwoch, 14. Oktober 2015 09:24
An: ClamAV users ML
Antwort an: ClamAV users ML
Betreff: Re: [clamav-users] Trouble with foxhole
Just a quick reminder that the foxholedb is unofficial and not something that
should normally be discussed in this e-mail list. Steve is kind enough to
intercept these request, but they really should be brought to his attention
directly <http://sanesecurity.com/contact-us/>.
That being said, I don’t really understand why you shouldn’t be able to find
known .exe malware in a .zip archive without any unofficial database
assistance. I support OS X and see them detected by Mac users all the time.
-Al-
On Tue, Oct 13, 2015 at 11:23 PM, Hartmann, Jan wrote:
>
> Hi,
> Today we had a lot problems with exe files hidden in zip archives
>
> I tried to add the foxholedb to our clamav, but sadly it didn’t recognize the
> exe in the zip.
>
>
> clamscan --database=/var/lib/clamav/foxhole_generic.cdb fatuousness\ paging\
> policy\ work\ regulations.zip
> fatuousness paging policy work regulations.zip: OK
>
>
> Mit freundlichen Grüßen / Best Regards
>
>
> i. A. Jan Hartmann
_______________________________________________
Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq
http://www.clamav.net/contact.html#ml