Re: [clamav-users] jquery-1.2.6.pack.js is now a Win.Trojan.Agent-1430626

2016-06-01 Thread Al Varnell
On Wed, Jun 01, 2016 at 09:41 PM, Raphaël wrote: > > Hi, > > One of my teammate recently got notified about (more) trojans since the 21640 > update > http://lists.clamav.net/pipermail/clamav-virusdb/2016-May/002964.html > > A derivated version of jquery-1.2.6.pack.js now matches a known signat

[clamav-users] jquery-1.2.6.pack.js is now a Win.Trojan.Agent-1430626

2016-06-01 Thread Raphaël
Hi, One of my teammate recently got notified about (more) trojans since the 21640 update http://lists.clamav.net/pipermail/clamav-virusdb/2016-May/002964.html A derivated version of jquery-1.2.6.pack.js now matches a known signature: # download original JQ $ wget http://code.jquery.com/jquery-1

Re: [clamav-users] ClamAV in production environment

2016-06-01 Thread Paul Kosinski
I lost trust in Symantec (and maybe others) when they didn't flag the infamous Sony rootkit (on music CDs) as malware. Even the US DHS took Sony to task for compromising Windows computers with their buggy DRM software, which, even if it weren't buggy, was an uninvited install. (Corporate solidarit

Re: [clamav-users] ClamAV in production environment

2016-06-01 Thread G.W. Haywood
Hi there, On Wed, 1 Jun 2016, Eljai Mohammed wrote: Within the framework of a project for a sensitive client, we would like to put in place clamAV in order to scan the users? uploaded files through a web interface. I have difficulty in reconciling the concepts of a "sensitive client" and "use

Re: [clamav-users] ClamAV in production environment

2016-06-01 Thread Dennis Peterson
I've run it successfully in several of Seattle's large ecommerce data centers for over 10 years. Because of the nearly infinite configurability it outperformed commercial systems and became a much better fit in RHEL Linux and Oracle Linux systems, and Sun/Oracle Solaris than the less flexible co

Re: [clamav-users] ClamAV in production environment

2016-06-01 Thread Groach
You might be interesting in reading COMPLETELY through this thread: http://lists.clamav.net/pipermail/clamav-users/2016-May/002912.html On 01/06/2016 13:53, Eljai Mohammed wrote: Dear All, Within the framework of a project for a sensitive client, we would like to put in place clamAV in order

Re: [clamav-users] ClamAV in production environment

2016-06-01 Thread Groach
Interesting. Asking a CLamAV mailing list how 'reliable' CLamAV is and whether it should be recommednded. (I wonder what kind of answers you were expecting to receive). Well, luckily, I am here and I have experience and no loyalty whatsoever so will offer an unbiased opinion. Answer: DONT!

[clamav-users] ClamAV in production environment

2016-06-01 Thread Eljai Mohammed
Dear All, Within the framework of a project for a sensitive client, we would like to put in place clamAV in order to scan the users’ uploaded files through a web interface. Accordingly, we would like to know: - To what extent is clamAV reliable? - Do you recommend it in a production environment?

[clamav-users] A few signatures to remove from main.hdb

2016-06-01 Thread Arnaud Jacques / SecuriteInfo.com
Hello Clamav Team, I suggest to remove the following signatures : main.hdb:ea29050f5d5a725ff666c9198ec95676:18:Win.Trojan.FormatC-39 main.hdb:501122fcdd5b2d6633c52769432e0ab2:14:Dos.Trojan.DeltreeY-21 main.hdb:a649d63a43589f6c33d3f6375499d4ab:22:Dos.Trojan.MouseDisable-3 main.hdb:92acc109223088b4