Re: [clamav-users] clamav-users Digest, Vol 174, Issue 2

2019-08-22 Thread Dexter Rivera via clamav-users
My use-case is this: I have very good protection via Crowdstrike Falcon Sensor, but that only deletes/quarantines files based on known IOCs, high malicious scores, or behavior via machine-learning. Otherwise it still blocks processes considered suspicious and/or due custom IOA. The downside i

Re: [clamav-users] clamav-users Digest, Vol 174, Issue 2

2019-08-22 Thread Eric Tykwinski
Dexter, Something like ansible? Use ansible's homebrew module to install ClamAV, run a scan, than use the module again to uninstall. With something like Tower or AWX just schedule it out to run whenever you want on as many computers as you want. Problem would be the time to scan as each host wi

[clamav-users] Pure Perl milter for clamd.

2019-08-22 Thread G.W. Haywood via clamav-users
Hi there, Anyone interested in a pure Perl ClamAV milter? Over on clamav-devel I've posted about a milter that I'm working on and which I'd be pleased to see getting some more exercise: https://lists.gt.net/clamav/devel/76575 I'd be happy to help with installation if you're not very familiar w

Re: [clamav-users] Pure Perl milter for clamd.

2019-08-22 Thread Joel Esler (jesler) via clamav-users
What I have found is: If a project has usefulness for you, and you are willing to open it up to others, it probably has usefulness to someone else. > On Aug 22, 2019, at 12:48 PM, G.W. Haywood via clamav-users > wrote: > > Hi there, > > Anyone interested in a pure Perl ClamAV milter? > > O

[clamav-users] ClamAV CVE's

2019-08-22 Thread Chris Pollock via clamav-users
The most current version is ClamAV 0.100.3 for Ubuntu 18.04.3 LTS. Is there a list of CVE's that I can reference in a bug report to try and get ClamAV updated to the latest version? Thank you Chris -- Chris KeyID 0xE372A7DA98E6705C 31.11972; -97.90167 (Elev. 1092 ft) 16:10:12 up 9 days, 7:27, 1

Re: [clamav-users] ClamAV CVE's

2019-08-22 Thread Al Varnell via clamav-users
I'm don't see anything specifying 0.100.3 yet: >. -Al- ClamXAV user On Aug 22, 2019, at 14:12, Chris Pollock via clamav-users wrote: > The most current version is ClamAV 0.100.3 f

Re: [clamav-users] ClamAV CVE's

2019-08-22 Thread Chris Pollock via clamav-users
On Thu, 2019-08-22 at 16:58 -0700, Al Varnell via clamav-users wrote: > I'm don't see anything specifying 0.100.3 yet: < > https://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=clamav>. > > -Al- > ClamXAV user Thanks Al, maybe I'm reading the listing wrong but these https://cve.mitre.org/cgi-bin/cvena

Re: [clamav-users] ClamAV CVE's

2019-08-22 Thread Al Varnell via clamav-users
Yes, I'm sorry, I was thinking of 0.101.3 when I said that. -Al- On Thu, Aug 22, 2019 at 17:37 PM, Chris Pollock via clamav-users wrote: > On Thu, 2019-08-22 at 16:58 -0700, Al Varnell via clamav-users wrote: >> I'm don't see anything specifying 0.100.3 yet: < >> https://cve.mitre.org/cgi-bin/cve

Re: [clamav-users] ClamAV CVE's

2019-08-22 Thread Chris Pollock via clamav-users
On Thu, 2019-08-22 at 17:46 -0700, Al Varnell via clamav-users wrote: > Yes, I'm sorry, I was thinking of 0.101.3 when I said that. > > -Al- > No problem, so, I can reference these to hopefully get an update built for 18.04. I'll file a bug report tomorrow some time. Thanks Al. > On Thu, Aug 22