Hello everyone,

I have two different versions of clamav installed on two different OS: Red Hat 
9 and Red Hat 7
Red Hat 7 has 0.103.11
Red Hat 9 has 1.0.5

Both are using the same pattern definition files 27260 Mon Apr 29 2024.
They are also using the same main.cvd bytecode.cld and freshclam.dat files 
because the freshclam service is pointed to the same location on both.

1.0.5 flags these two files as Win.Malware.Sivis-6744986-0
0.103.11 says these two files are safe.

I'm running clamdscan filename - -move=/opt/clamav/quarantine

https://www.virustotal.com/gui/file/e92b0b2b51d37444e5cdc1c164db15fd3bd07f44381677b59e09feb54c40978b
https://www.virustotal.com/gui/file/8f6988e717e0334b33b7f4697c8ebbb5038c218994c8da7dc295986fe43b2b8b

Does anyone know why one flags and the older version doesn't?

Hong-Duc Vu
Email: hong-duc...@jhuapl.edu<mailto:hong-duc...@jhuapl.edu>

_______________________________________________

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat

Reply via email to