Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread G.W. Haywood
Hi there, On Mon, 23 May 2016, C.D. Cochrane wrote: ... ClamAV is just ... and on Mon, 23 May 2016, Joel Esler wrote: Obviously going to disagree. ... I'll disagree too, since ClamAV here sees approximately one virus per annum (and as far as I'm concerned, whether or not ClamAV detects th

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread Joel Esler (jesler)
So our recent improvements and detection have not produced any different result in the field? Sent from my Apple Watch On May 28, 2016, at 10:01 AM, G.W. Haywood wrote: > Hi there, > > On Mon, 23 May 2016, C.D. Cochrane wrote: > >> ... ClamAV is just ... > > and on Mon, 23 May 2016, Joel Es

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread Groach
I have several viruses on file that I have accumulated over the last two years or so. I will do a test to see which ones are detected and I will post the results here. On 28 May 2016 17:03:22 CEST, "Joel Esler (jesler)" wrote: >So our recent improvements and detection have not produced any >dif

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread Groach
24 files, ALL OF THEM are viruses of some sort or another (including 1 which is the eicar test virus). ClamAV database: --- SCAN SUMMARY --- Known viruses: 4397481 Engine version: 0.99.1 Scanned directories: 0 Scanned files: 24 **Infected files: 10** Data scanned: 5.27 MB Data

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread Dennis Peterson
Are these true viruses or otherwise harmful (and if so how is that known) or does the list include messages that are unwanted junk mail? If junk mail, which is subjective, there will always be differences between vendor signatures because nobody agrees about what is and is not junk mail. dp O

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread G.W. Haywood
Hello Joel, On Sat, 28 May 2016, Joel Esler wrote: So our recent improvements and detection have not produced any different result in the field? If you're asking me, I think you're asking the wrong person. As I explained in my October 2014 message, I filter out the vast majority of the cr@p

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread Joel Esler (jesler)
To be honest right now, I'm interested in threats coming out more recently. While yes, your concern is valid, I'd like to hear from someone with a more recent test set. -- Joel Esler iPhone On May 28, 2016, at 12:13 PM, Groach mailto:groachmail-stopspammin...@yahoo.com>> wrote: 24 files, AL

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread C.D. Cochrane
Wow groach, no punches pulled! I have submitted more than 200 virus samples (and confirmed on VT) since January 2015. The majority are still undetected by native ClamAV. I can provide more precise numbers and details on Monday when I get back to my quarantine server, if it is actually helpful

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread Joel Esler (jesler)
A. I wish I had a fan club B. Thank you for your input. C. We'll do better. -- Joel Esler Manager, Talos Group Sent from my iPad On May 28, 2016, at 7:37 PM, Groach mailto:groachmail-stopspammin...@yahoo.com>> wrote: Ooh, Joel, Im going to enjoys replying to this one... On 28/05/2016 2

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-28 Thread Dennis Peterson
Probably worth pointing out that the black hats have an excellent tool at their disposal to test their day zero viruses and that would be Virus Total which happens to use ClamAV among others. It's not a fair fight when we give them the means to defeat us. dp On 5/28/16 7:46 PM, Joel Esler (j