[clamav-users] How to know if yara rules are being run?

2017-06-30 Thread Mark Foley
I've put the expetr.yara rule from Kaspersky for the recent notPetya ransomware in my /var/lib/clamav directory. I can I tell if clamav is running it? I see nothing in /var/log/clamav.log. --Mark ___ clamav-users mailing list clamav-users@lists.clamav.

Re: [clamav-users] GPG signature problem with clamav-0.99.2.tar.gz

2017-06-30 Thread Joel Esler (jesler)
Jim, Thanks. This look like the vulndev key. The correct key is on the contact page of Talosintelligence.com. We'll take a look here. -- Sent from my iPhone > On Jun 30, 2017, at 13:46, Jim Michaud wrote: > > I just downloaded clamav-0.99.2.tar.gz from > https://www.clamav.net/downloads

[clamav-users] GPG signature problem with clamav-0.99.2.tar.gz

2017-06-30 Thread Jim Michaud
I just downloaded clamav-0.99.2.tar.gz from https://www.clamav.net/downloads and tried to check the signature using the "Talos PGP Public Key" on the same page. It looks like it was signed with a different public key. $ gpg --import ../Talos-PGP-Public-Key gpg: key 0B3BB3A7: public key "vuln...@

Re: [clamav-users] Error: upgrading Clamav

2017-06-30 Thread Michael D.
On 06/30/2017 09:48 AM, Ravi Raj wrote: Hi I have read the documentation for clamav upgrading, when i run the commands for upgrade i.e. 'freshclam' & 'freshclam -d' i get the following Error output: [root@localhost ~]# freshclam ERROR: Please edit the example config file /etc/freshclam.conf ERR

[clamav-users] Error: upgrading Clamav

2017-06-30 Thread Ravi Raj
Hi I have read the documentation for clamav upgrading, when i run the commands for upgrade i.e. 'freshclam' & 'freshclam -d' i get the following Error output: [root@localhost ~]# freshclam ERROR: Please edit the example config file /etc/freshclam.conf ERROR: Can't open/parse the config file /et