Re: [clamav-users] ClamAV - check for executables

2015-11-04 Thread Heino Backhaus
Hi kk, just in case you didn't know about it and these documents are attached to Mails: Have you considered to use MailScanner for sanitizing your inbound/outbound mails? Mit freundlichen Gruessen H. Backhaus Fink-Computer Systeme Heggrabenstr. 9, 35435 Wettenberg Email: heino.backh...@fink

[clamav-users] Unable to run clamd in /opt/directory

2015-11-04 Thread P K
Hi Guys, I am seeing config file parse error when using config file inside /opt/ directory. Curious why unable to run clamd config in /opt directory. In other system with 0.98.6 its working fine. Below are output: sudo /usr/sbin/clamd --version -c ./clamd.conf ClamAV 0.98.7 pk@pk-x:~$ ls -

Re: [clamav-users] False positive on go source code using PUA

2015-11-04 Thread P K
ok thank you. On Wed, Nov 4, 2015 at 2:55 PM, Al Varnell wrote: > By definition, there is no such thing as a False Positive PUA nor is PUA > considered to be infected. > . > > Based on the description of CVE-2012-1461 >

Re: [clamav-users] ClamAV - check for executables

2015-11-04 Thread Hartmann, Jan
Mit freundlichen Grüßen / Best Regards i. A. Jan Hartmann IT Administrator Groupware phone: +49 2371 820 298 mobile: +49 171 865 962 2 fax: +49 2371 211 443 e-mail: j.hartm...@kirchhoff-automotive.com KIRCHHOFF Witte GmbH c/o KIRCHHOFF Automotive GmbH Stefanstrasse 2 58638 Iserlohn German

[clamav-users] ClamAV - check for executables

2015-11-04 Thread Krishnakumar Nair
Hi Guys, How to configure ClamAV to have a check for exe/exes' in ZIP/ any executable to be blocked as an attachment. ? I am using ClamAV as utility for antivirus scan for attached documents in a Java Web Application [using libclamav-1.0.jar] Regards, kk _

Re: [clamav-users] False positive on go source code using PUA

2015-11-04 Thread Steve Basford
On Wed, November 4, 2015 6:03 am, P K wrote: > Hi, > > > I tried clamdscan with PUA enabled on go source code and seen an error. > issue6550.gz: PUA.File.Exploit.CVE_2012_1461 https://www.virustotal.com/en/file/c809983cf1b4f11552a1880272e3002a963a39c453b4883bf47e5c2cfc8f2a47/analysis/1446632226/

Re: [clamav-users] False positive on go source code using PUA

2015-11-04 Thread Al Varnell
By definition, there is no such thing as a False Positive PUA nor is PUA considered to be infected. . Based on the description of CVE-2012-1461 I’d guess it h