[clamav-users] 1. What causes cool blocking by clamav 2.

2025-01-06 Thread koffie via clamav-users

Hello

1.
I've never got an answer on coll blocking by clamav.
That happened last december.
Instead I was sent to cloudflare and Honeypot.
All didn't explain and didn't do anything.
At the beginning I've tried to ask M.Snyder who is involved with that
topic but he refused to get in touch too.

What causes cool blocking by clamav.

2.No update possible with freshclam.
WARNING: Can't query current.cvd.clamav.net
Sun Jan  5 10:20:08 2025 -> WARNING: Invalid DNS reply. Falling back to
HTTP mode.
Sun Jan  5 10:20:08 2025 -> Trying to retrieve CVD header from
https://database.clamav.net/daily.cvd
Sun Jan  5 10:20:08 2025 -> WARNING: remote_cvdhead: Download failed (6)
Sun Jan  5 10:20:08 2025 -> WARNING:  Message: Could not resolve hostname
Sun Jan  5 10:20:08 2025 -> WARNING: Failed to get daily database
version information from server: https://database.clamav.net
Sun Jan  5 10:20:08 2025 -> ERROR: check_for_new_database_version:
Failed to find daily database using server https://database.clamav.net.
Sun Jan  5 10:20:08 2025 -> Trying again in 5 secs...

I've seen two log files on several programs.
There is permanent struggle with browser redirection a.s.o.

Need support.

___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat


[clamav-users] 1. What causes cool blocking by clamav 2. Freshclam

2025-01-07 Thread koffie via clamav-users

don't believe that here isn't enough .interest to get answer.
Again: Anybody who can reply if there is access to this post?


 Forwarded Message 
Subject: 1. What causes cool blocking by clamav 2.
Date: Mon, 6 Jan 2025 23:42:42 +0100
From: koffie 
To: clamav-users@lists.clamav.net

Hello

1.
I've never got an answer on cool blocking by clamav.
That happened last december.
Instead I was sent to cloudflare and Honeypot.
All didn't explain and didn't do anything.
At the beginning I've tried to ask M.Snyder who is involved with that
topic but he refused to get in touch too.

What causes cool blocking by clamav.

2.No update possible with freshclam.
WARNING: Can't query current.cvd.clamav.net
Sun Jan  5 10:20:08 2025 -> WARNING: Invalid DNS reply. Falling back to
HTTP mode.
Sun Jan  5 10:20:08 2025 -> Trying to retrieve CVD header from
https://database.clamav.net/daily.cvd
Sun Jan  5 10:20:08 2025 -> WARNING: remote_cvdhead: Download failed (6)
Sun Jan  5 10:20:08 2025 -> WARNING:  Message: Could not resolve hostname
Sun Jan  5 10:20:08 2025 -> WARNING: Failed to get daily database
version information from server: https://database.clamav.net
Sun Jan  5 10:20:08 2025 -> ERROR: check_for_new_database_version:
Failed to find daily database using server https://database.clamav.net.
Sun Jan  5 10:20:08 2025 -> Trying again in 5 secs...

I've seen two log files on several programs.
There is permanent struggle with browser redirection a.s.o.

Need support.

___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat


[clamav-users] Fwd: Fwd: 1. What causes cool blocking by clamav 2. Freshclam

2025-01-07 Thread koffie via clamav-users

Nice if you don't have problems with that.

I was blocked during sudo freshclam.





 Forwarded Message 
Subject: Re: [clamav-users] 1. What causes cool blocking by clamav 2.
Freshclam
Date: Tue,  7 Jan 2025 19:09:15 +
From: newcomer01 via clamav-users 
Reply-To: newcome...@posteo.de, ClamAV users ML

To: koffie via clamav-users 
CC: newcomer01 

I do not have any problems with that (O2 IP from Germany).
Is it possible, that your IP is newly (if there was a change) from Russia?
So all DNS replies to clamav.net will be (cold) blocked.
If this is not the problem in your case, you can check your network
settings, maybe here is something wrong or if you use a private DNS
check it's settings.
In the past I had sometimes problems in getting CLD instead of CVD and
since I changed my settings in freshclam.conf this problem is nearly
complete solved (switched to https and ipv6 settings for my queries).

Von / From: Clamav User Mailinglist <mailto:clamav-users@lists.clamav.net>
An / To:Newcomer01 <mailto:newcome...@posteo.de>
CC / CC:Koffie <mailto:kof...@gmx.net>
Gesendet / Sent:Dienstag, Januar 07, 2025 um 19:39 (at 07:39 PM) +0100
Betreff / Subject:  [clamav-users] 1. What causes cool blocking by
clamav 2. Freshclam


don't believe that here isn't enough .interest to get answer.
Again: Anybody who can reply if there is access to this post?


 Forwarded Message 
Subject: 1. What causes cool blocking by clamav 2.
Date: Mon, 6 Jan 2025 23:42:42 +0100
From: koffie 
To: clamav-users@lists.clamav.net

Hello

1.
I've never got an answer on cool blocking by clamav.
That happened last december.
Instead I was sent to cloudflare and Honeypot.
All didn't explain and didn't do anything.
At the beginning I've tried to ask M.Snyder who is involved with that
topic but he refused to get in touch too.

What causes cool blocking by clamav.

2.No update possible with freshclam.
WARNING: Can't query current.cvd.clamav.net
Sun Jan  5 10:20:08 2025 -> WARNING: Invalid DNS reply. Falling back to
HTTP mode.
Sun Jan  5 10:20:08 2025 -> Trying to retrieve CVD header from
https://database.clamav.net/daily.cvd
Sun Jan  5 10:20:08 2025 -> WARNING: remote_cvdhead: Download failed (6)
Sun Jan  5 10:20:08 2025 -> WARNING:  Message: Could not resolve hostname
Sun Jan  5 10:20:08 2025 -> WARNING: Failed to get daily database
version information from server: https://database.clamav.net
Sun Jan  5 10:20:08 2025 -> ERROR: check_for_new_database_version:
Failed to find daily database using server https://database.clamav.net.
Sun Jan  5 10:20:08 2025 -> Trying again in 5 secs...

I've seen two log files on several programs.
There is permanent struggle with browser redirection a.s.o.

Need support.

___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat


___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat
___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat


[clamav-users] Fwd: Fwd: Cool Blocking by ClamAV

2024-12-26 Thread koffie via clamav-users

Thanks for response.

this is the first of several question which was visible here.

Anyway I have no access with common browsers to the archiv.

I dont get access to other contacts of clamAV listed on their website.

Any ideas?



 Forwarded Message 
Subject: Re: [clamav-users] Cool Blocking by ClamAV
Date: Thu, 26 Dec 2024 16:58:33 +0100
From: Matus UHLAR - fantomas via clamav-users

Reply-To: ClamAV users ML 
To: clamav-users@lists.clamav.net
CC: Matus UHLAR - fantomas 


On 25.12.24 20:38, koffie via clamav-users wrote:

I've tried to get answer here several times without response.

I am asking now a simple question: Am i visible here as user? Anybody
or more who can you read this?


On 25.12.24 21:31, Matus UHLAR - fantomas via clamav-users wrote:

I can see you.
You can check your mail and replies to it at:

https://lists.clamav.net/pipermail/clamav-users/

I don't see any of your mail there.


And, sorry, I usually delete direct mail (and go through list mail), so
if you don't respond to mailing list, your answer may get lost.


--
Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
Depression is merely anger without enthusiasm.
___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat
___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat


[clamav-users] Snyder fascist

2025-01-30 Thread koffie via clamav-users




 Forwarded Message 
Subject: [clamav-users] ClamAV 1.4.2 and 1.0.8 security patch versions
published
Date: Thu, 30 Jan 2025 23:15:17 +0100
From: jac 
To: ClamAV users ML 

It took five attempts to get in contact to this list.
Responsible for this is M.Snyder. The only concrete
action were threats to get blocked
My questions about namespaces, blocking by ClamAV
have got a pseudo reply without any substantial content.

As mentioned Snyder knows exactly whats going on here.
Thats the only reason for this strange behavior as part of
the named attacks

M.  Snyder,

I'm exposed of ongoing malewareattacks.
I don't get any support by none of the established  companies. Reasons
unknown.
You know that.
Get in touch if you've enough courage.

h.s.

Gesendet: Mittwoch, 22. Januar 2025 um 17:18
Von: "Micah Snyder (micasnyd) via clamav-users"

An: "ClamAV Announcements ML" 
CC: "Micah Snyder (micasnyd)" ,"ClamAV users ML"
,"ClamAV Development"

Betreff: [clamav-users] ClamAV 1.4.2 and 1.0.8 security patch versions
published
Read this online at
https://blog.clamav.net/2025/01/clamav-142-and-108-security-patch.html

Today, we are publishing the 1.4.2 and 1.0.8 security patch versions.
The release files for the patch versions are available for download on
the ClamAV downloads page, on the GitHub Release page, and through
Docker Hub. The images on Docker Hub may not be immediately available on
release day. Continue reading to learn what changed in each version.

1.4.2
ClamAV 1.4.2 is a patch release with the following fixes:

 CVE-2025-20128: Fixed a possible buffer overflow read bug in the
OLE2 file parser that could cause a denial-of-service (DoS) condition.

 This issue was introduced in version 1.0.0 and affects all
currently supported versions. It will be fixed in: 1.4.2 and 1.0.8

 Thank you to OSS-Fuzz for identifying this issue.

1.0.8
ClamAV 1.0.8 is a patch release with the following fixes:

 CVE-2025-20128: Fixed a possible buffer overflow read bug in the
OLE2 file parser that could cause a denial-of-service (DoS) condition.

 This issue was introduced in version 1.0.0 and affects all
currently supported versions. It will be fixed in: 1.4.2 and 1.0.8

 Thank you to OSS-Fuzz for identifying this issue.

 ClamOnAcc: Fixed an infinite loop when a watched directory does
not exist. This is a backport of a fix from ClamAV 1.3.0.
 GitHub pull request






Micah Snyder (they/them)
ClamAV Development
Talos
Cisco Systems, Inc.
___ Manage your clamav-users
mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users Help us build a
comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation
https://docs.clamav.net/#mailing-lists-and-chat



 Forwarded Message 
Subject: Aw: [clamav-users] ClamAV 1.4.2 and 1.0.8 security patch
versions published
Date: Wed, 29 Jan 2025 21:30:44 +
From: clamav-users-ow...@lists.clamav.net
To: hansstelt...@gmx.de

Please subscribe to the list in order to post.

--- Begin Message ---
M.  Snyder,I'm exposed of ongoing malewareattacks. I don't get any support by none of the established  companies. Reasons unknown.You know that. Get in touch if you've enough courage.h.s.


Gesendet: Mittwoch, 22. Januar 2025 um 17:18
Von: "Micah Snyder (micasnyd) via clamav-users" 
An: "ClamAV Announcements ML" 
CC: "Micah Snyder (micasnyd)" ,"ClamAV users ML" ,"ClamAV Development" 
Betreff: [clamav-users] ClamAV 1.4.2 and 1.0.8 security patch versions published

Read this online at  https://blog.clamav.net/2025/01/clamav-142-and-108-security-patch.html
 
Today, we are publishing the 1.4.2 and 1.0.8 security patch versions. The release files for the patch versions are available for download on the ClamAV downloads page, on the GitHub Release page, and through Docker Hub. The images on Docker Hub may not be immediately available on release day. Continue reading to learn what changed in each version.
 
1.4.2
ClamAV 1.4.2 is a patch release with the following fixes: 

CVE-2025-20128: Fixed a possible buffer overflow read bug in the OLE2 file parser that could cause a denial-of-service (DoS) condition.This issue was introduced in version 1.0.0 and affects all currently supported versions. It will be fixed in: 1.4.2 and 1.0.8Thank you to OSS-Fuzz for identifying this issue.

1.0.8
ClamAV 1.0.8 is a patch release with the following fixes:

CVE-2025-20128: Fixed a possible buffer overflow read bug in the OLE2 file parser that could cause a denial-of-service (DoS) condition.This issue was introduced in version 1.0.0 and affects all currently supported versions. It will be fixed in: 1.4.2 and 1.0.8Thank you to OSS-Fuzz for identifying this issue.
ClamOnAcc: Fixed an infinite loop when a watched directory does not exist. This is a backport of a fix from ClamAV 1.3.0.

GitHub pull request



 
 

 
 

Micah Snyder (they/them)ClamAV DevelopmentTalos
Cisco

Re: [clamav-users] Snyder fascist

2025-01-30 Thread koffie via clamav-users

All is comming retour on my registrered address except this here koffie
The admin(Snyder?) is manipulating my post.


On 31/01/2025 00:11, koffie via clamav-users wrote:




 Forwarded Message 
Subject: [clamav-users] ClamAV 1.4.2 and 1.0.8 security patch versions
published
Date: Thu, 30 Jan 2025 23:15:17 +0100
From: jac 
To: ClamAV users ML 

It took five attempts to get in contact to this list.
Responsible for this is M.Snyder. The only concrete
action were threats to get blocked
My questions about namespaces, blocking by ClamAV
have got a pseudo reply without any substantial content.

As mentioned Snyder knows exactly whats going on here.
Thats the only reason for this strange behavior as part of
the named attacks

M.  Snyder,

I'm exposed of ongoing malewareattacks.
I don't get any support by none of the established  companies. Reasons
unknown.
You know that.
Get in touch if you've enough courage.

h.s.

Gesendet: Mittwoch, 22. Januar 2025 um 17:18
Von: "Micah Snyder (micasnyd) via clamav-users"

An: "ClamAV Announcements ML" 
CC: "Micah Snyder (micasnyd)" ,"ClamAV users ML"
,"ClamAV Development"

Betreff: [clamav-users] ClamAV 1.4.2 and 1.0.8 security patch versions
published
Read this online at
https://blog.clamav.net/2025/01/clamav-142-and-108-security-patch.html

Today, we are publishing the 1.4.2 and 1.0.8 security patch versions.
The release files for the patch versions are available for download on
the ClamAV downloads page, on the GitHub Release page, and through
Docker Hub. The images on Docker Hub may not be immediately available on
release day. Continue reading to learn what changed in each version.

1.4.2
ClamAV 1.4.2 is a patch release with the following fixes:

  CVE-2025-20128: Fixed a possible buffer overflow read bug in the
OLE2 file parser that could cause a denial-of-service (DoS) condition.

  This issue was introduced in version 1.0.0 and affects all
currently supported versions. It will be fixed in: 1.4.2 and 1.0.8

  Thank you to OSS-Fuzz for identifying this issue.

1.0.8
ClamAV 1.0.8 is a patch release with the following fixes:

  CVE-2025-20128: Fixed a possible buffer overflow read bug in the
OLE2 file parser that could cause a denial-of-service (DoS) condition.

  This issue was introduced in version 1.0.0 and affects all
currently supported versions. It will be fixed in: 1.4.2 and 1.0.8

  Thank you to OSS-Fuzz for identifying this issue.

  ClamOnAcc: Fixed an infinite loop when a watched directory does
not exist. This is a backport of a fix from ClamAV 1.3.0.
  GitHub pull request






Micah Snyder (they/them)
ClamAV Development
Talos
Cisco Systems, Inc.
___ Manage your clamav-users
mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users Help us build a
comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation
https://docs.clamav.net/#mailing-lists-and-chat



 Forwarded Message 
Subject: Aw: [clamav-users] ClamAV 1.4.2 and 1.0.8 security patch
versions published
Date: Wed, 29 Jan 2025 21:30:44 +
From: clamav-users-ow...@lists.clamav.net
To: hansstelt...@gmx.de

Please subscribe to the list in order to post.


___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat


___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat


[clamav-users] Cool Blocking by ClamAV

2024-12-25 Thread koffie via clamav-users

Hello,

I've tried to get answer here several times without response.

I am asking now a simple question: Am i visible here as user? Anybody
or more who can you read this?

koffie


___

Manage your clamav-users mailing list subscription / unsubscribe:
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/Cisco-Talos/clamav-documentation

https://docs.clamav.net/#mailing-lists-and-chat