Hello Joel
I mentioned the Clamwin forum moderators to show that loyal people are
equally dismayed. I am well aware that you guys do not view the forum
and probably only view this mailing list but (to my own cost - as I am
about to find out with this post) this is not the easiest platform to
view and use and the world is more used to a BBS-type forum;
consequently people go to those for advice and often things can be seen
there more than what you would find in this mailing-list thingy. I am
also aware thatg it is multi-platform and that was the whole thing that
prompted my 'enquiry': the muti-platform consciousness seem to have
forgotten the impact that can be felt on Wiondows platform if you dont
take care.
Quote: "So when FPs are found, they are remediated as fast as we can
get to them."
An interesting response after Ive pointed out 3 examples of FPs not
being remedied despite me sending them to you - one of them 17 months
old. Could you qualify the term "as fast as we get them..." ? I
REGULARLY upload FP's to CLamAV portal and it takes TOO long. Sure you
might have internal reasons as to why it takes longer but at the same
time people need to be given an expectation of what to expect in order
they can make a reasonable consideration as to risk (or inconvenience)
to their own systems.
Quote: "Not to say that your concerns aren’t noted, but generating
ClamAV detection is takes longer."
And this is the point of my mentioning it taking too long
Quote: "ClamAV should trust the certificate of the file (if you have it
installed correctly) and ignore those files "
Yes, but you cant. Clearly ASSUMING such 'safety measures' doesnt work
which brought peoples machines to their knees last week. An
alternative, safer approach is needed.
And the comedy value:
Quote: " would love to have more contributions from the community in
order to increase coverage."
You are not going to increase coverage whilst you ignore the workings of
windows, its flaws, its popularity and the sensitivity it has to your
signatures. Only by accepting these elements, and modifying the focus
on to them such as....:
* better testing before release of signatures
* not assume all windows files are signed (genuine programs dont
necessarily come from Microsoft)
* SPEEDIER response to FP's
* change of Focus on developement: get the existing products currently
in use more stable (which includes ClamAV) rather than concetrate on
fancy websites and rewrites of products that dont currently have so many
problems.
.....will make it more popular instead of losing coverage.
Im not sure from what I have read that there really is a gasp of the
situation and consequently that anything will change, just
acknowledgements and explanations why it is to be so.
For sure nothing will change for disgruntled users that have lowered
their reliance or moved away from Clam flavours.
Suggestion: given that there is a Clamwin flavour, and forum, then
maybe someone would like to signup and occasionally pop in day to day to
see what people are saying or thinking. How about it?
_______________________________________________
Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq
http://www.clamav.net/contact.html#ml