Re: [clamav-users] Connection Refused error

2016-07-25 Thread Matus UHLAR - fantomas
On 25.07.16 15:17, Ravi Maddi wrote: I am trying to connect to a Clam AV running on a separate linux box...and if there is some configuration I have to do to connect? Or, Clam AV even allows that? The fact that you take `hostname` parameter makes me think it's possible. But, I am getting connec

Re: [clamav-users] ClamWin finds malware, ClamAV doesn't.

2016-07-25 Thread Al Varnell
You might be able to re-compile the ClamAV source and configure it with --maxfilesize=xxM, but the limit is there to prevent severe system damage that can result from attempting to scan over-sized files. I know in the case of OS X there is no known malware that exceed the established limits. -

[clamav-users] is this correct?

2016-07-25 Thread Walter H.
smime.p7s Description: S/MIME Cryptographic Signature ___ Help us build a comprehensive ClamAV guide: https://github.com/vrtadmin/clamav-faq http://www.clamav.net/contact.html#ml

Re: [clamav-users] Connection Refused error

2016-07-25 Thread Ravi Maddi
Hi Dennis, I am trying to connect to a Clam AV running on a separate linux box...and if there is some configuration I have to do to connect? Or, Clam AV even allows that? The fact that you take `hostname` parameter makes me think it's possible. But, I am getting connection refused error. Thank y

Re: [clamav-users] ClamWin finds malware, ClamAV doesn't.

2016-07-25 Thread Jay Gattuso
Thanks for your questions and suggestions. I had a look via the --debug method, and found the following in the clamAV call:- LibClamAV debug: cli_updatelimits: filesize exceeded (allowed: 26214400, needed: 104096320) To check this, I ran clamAV with an eicar string test and got the expected

Re: [clamav-users] Connection Refused error

2016-07-25 Thread Ravi Maddi
Thank you Dennis for your swift response. Yes, I got PONG as the response. We are looking into firewall settings. Appreciate your swift response. Best regards, Ravi On Mon, Jul 25, 2016 at 12:39 PM, Dennis Peterson wrote: > Try a simple test of the clamd connection with: > > echo "PING" | nc

Re: [clamav-users] Connection Refused error

2016-07-25 Thread Dennis Peterson
Try a simple test of the clamd connection with: echo "PING" | nc localhost 3310 It should return "PONG". If it does your problem is not related to clamd. dp On 7/25/16 7:44 AM, Ravi Maddi wrote: Hi Al, I am new to clamav. I am able to install it on RHEL AWS environment and enabled it to run

[clamav-users] Error in signature updates

2016-07-25 Thread Walter H.
Hello, I don't think, that it is correct, that all signature update mails look like this #21954 ... #21968 and maybe more if that is not fixed ... ClamAV Signature Publishing Notice Datefile: daily Version:21954 Publisher: Alain Zidouemba New Sigs: 0 Dropped Sigs:

Re: [clamav-users] CVE_2013_3860-1

2016-07-25 Thread Alain Zidouemba
Xml.Exploit.CVE_2013_3860-1 has been dropped. Thanks, - Alain On Sun, Jul 24, 2016 at 11:51 AM, Al Varnell wrote: > There was a previous Xml.Exploit.CVE_2013_3860-1 signature added by daily: > 20352 on Apr 20, 2015 which was found to be producing FP’s and was removed > by daily: 20358. > > The

[clamav-users] Connection Refused error

2016-07-25 Thread Ravi Maddi
Hi Al, I am new to clamav. I am able to install it on RHEL AWS environment and enabled it to run on port 3310. [ec2-user@ip-172-30-0-245 ~]$ sudo netstat -anp |grep 3310 tcp0 0 127.0.0.1:3310 0.0.0.0:* LISTEN 2421/clamd However, I am trying to access it from the ja

Re: [clamav-users] Infor about Xml.Exploit.CVE_2013_3860-1

2016-07-25 Thread Junuzovic Vahid
Yes now I did it using IE, before I tried it with Firefox 47 but without success, upload procedure never start after choosing of the file to submit! I don't know the reason, maybe my proxy that I'm using it! Regards, Vahid -Original Message- From: clamav-users [mailto:clamav-users-boun.

Re: [clamav-users] Infor about Xml.Exploit.CVE_2013_3860-1

2016-07-25 Thread Al Varnell
Because you have not reported it as a False Positive at Also see this identical report from yesterday: -Al- On Mon, Jul 25, 2016 at 02:53 AM, Junuzovic Vahid wrote: > > The last night I g

[clamav-users] Infor about Xml.Exploit.CVE_2013_3860-1

2016-07-25 Thread Junuzovic Vahid
The last night I got the notification: --- cut here --- /usr/share/doc/libxml2-python-2.7.6/reader2.py: Xml.Exploit.CVE_2013_3860-1 FOUND --- SCAN SUMMARY --- Known viruses: 4667493 Engine version: 0.99 Scanned directories: 0 Scanned files: 1 Infected files: 1 Data scanned: 0.01 M