Hi, we've received a word virus that isn't currently being detected by any scanners. I've submitted the FN, but would like to see if we can get that pushed out as soon as possible.
$ sha1sum Invoice_SKMBT_20170501.doc 6cc1dd12fbc79311ebaf59e19e562ff63141f457 Invoice_SKMBT_20170501.doc It's not currently being found by any scanners: https://www.virustotal.com/en/file/5b10fb6d20649c246d970e521e4436d70608bbb8c6d6128245d349c69a76ef10/analysis/ Also, there's some notes in the "comments" section of this post. What does it mean? How can I use that to my benefit in the future? Is there any way a postfix/amavisd/spamassassin/clamav user can benefit from this information by blocking based on that signature provided? _______________________________________________ clamav-users mailing list clamav-users@lists.clamav.net http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users Help us build a comprehensive ClamAV guide: https://github.com/vrtadmin/clamav-faq http://www.clamav.net/contact.html#ml