Re: [clamav-users] Re :Re: Re :Re: Offline Updating

2021-03-18 Thread Joel Esler (jesler) via clamav-users
Everyone please check, this should be cleared up. > On Mar 18, 2021, at 9:47 AM, Rick Cooper wrote: > > They fixed it , works with all my browsers again > > > > -Original Message- > From: clamav-users [mailto:clamav-users-boun...@lists.clamav.net] On Behalf > Of Matus UHLAR - fantomas

Re: [clamav-users] access denied to website

2021-03-18 Thread Joel Esler (jesler) via clamav-users
Please try again, it should be cleared up. On Mar 18, 2021, at 7:47 AM, John Pfuntner -X (jpfuntne - EASI LLC at Cisco) via clamav-users mailto:clamav-users@lists.clamav.net>> wrote: I’m getting a Access Denied nastygram going anywhere at https://www.clamav.net/. What’s going on? I wish I k

Re: [clamav-users] Clamav.net access denied

2021-03-18 Thread Joel Esler (jesler) via clamav-users
I’ll write you off list. On Mar 18, 2021, at 1:34 PM, Parker, Travis M. via clamav-users mailto:clamav-users@lists.clamav.net>> wrote: Hello, I am having issues getting to the clamav.net site to download clamav and access the documentation. Between yesterday and today I lo

Re: [clamav-users] Re :Re: Re :Re: Offline Updating

2021-03-18 Thread Joel Esler (jesler) via clamav-users
You’re going to have to give me an IP or a RayID to look up. On Mar 18, 2021, at 1:40 PM, Matus UHLAR - fantomas mailto:uh...@fantomas.sk>> wrote: On 18.03.21 14:22, Joel Esler (jesler) via clamav-users wrote: Everyone please check, this should be cleared up. still a problem with sea

Re: [clamav-users] Offline Updating

2021-03-18 Thread Joel Esler (jesler) via clamav-users
er > > On 18/03/2021 19:11, Matus UHLAR - fantomas wrote: >> On 18.03.21 17:42, Joel Esler (jesler) via clamav-users wrote: >>> You’re going to have to give me an IP or a RayID to look up. >> >> Cloudflare Ray ID: 63206b9ccdf238b7 >> >> >>>

Re: [clamav-users] 403 Access Denied

2021-03-18 Thread Joel Esler (jesler) via clamav-users
-prior-to-0100.html Sorry for the inconvenience, but we are currently in emergency mode and have to make several drastic changes over the last several days. -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group http://www.talosintelligence.com | https://www.snort.org Sent

[clamav-users] ClamAV® blog: ClamAV, CVDs, CDIFFs and the magic behind the curtain

2021-03-19 Thread Joel Esler (jesler) via clamav-users
bytecode interpreter engine * daily.cvd contains signatures for the latest threats (updated daily) * main.cvd contains signatures previously in daily.cvd that have shown to have a low false-positive risk. < — More — > Please read the rest of the post at the above link.. -- Joel

Re: [clamav-users] Linode Clam AV Updates

2021-03-19 Thread Joel Esler (jesler) via clamav-users
Linode is our second biggest abuser. Slow your updater down. Sent from my  iPhone > On Mar 19, 2021, at 19:40, Grant Taylor via clamav-users > wrote: > > On 3/19/21 4:57 PM, Bill Speidel wrote: >> hi, > > Hi, > >> Clam AV has put it's database behind Cloudflare... as a result the

Re: [clamav-users] Linode Clam AV Updates

2021-03-19 Thread Joel Esler (jesler) via clamav-users
Please check out cvdupdate or Freshclam for your updates. Once or twice a day to check is fine. Sent from my  iPhone > On Mar 19, 2021, at 23:16, Bill Speidel wrote: > > hi, > > thanks for the response... i'm new to the clam users list... i did see > that the freshclam routine was p

Re: [clamav-users] Linode Clam AV Updates

2021-03-20 Thread Joel Esler (jesler) via clamav-users
They aren’t blocked. They fall into the same rate limit that the rest of the planet does Sent from my  iPhone > On Mar 20, 2021, at 00:37, Gary R. Schmidt wrote: > > On 20/03/2021 14:12, Bill Speidel wrote: > [SNIP] >> on the other hand if all of Linode is blocked then there's not much

Re: [clamav-users] Linode Clam AV Updates

2021-03-20 Thread Joel Esler (jesler) via clamav-users
We haven’t published an updated safebrowsing file in about 3 or 4 years. https://blog.clamav.net/2020/06/the-future-of-clamav-safebrowsing.html Sent from my  iPhone On Mar 20, 2021, at 00:21, Grant Taylor via clamav-us

Re: [clamav-users] Linode Clam AV Updates

2021-03-20 Thread Joel Esler (jesler) via clamav-users
, at 09:22, Joel Esler (jesler) wrote:  We haven’t published an updated safebrowsing file in about 3 or 4 years. https://blog.clamav.net/2020/06/the-future-of-clamav-safebrowsing.html<https://blog.clamav.net/2020/06/the-future-of-clamav-safebrowsing.html?m=1> Sent from my  iPhone On

Re: [clamav-users] Linode Clam AV Updates

2021-03-20 Thread Joel Esler (jesler) via clamav-users
Ged is correct. Sent from my  iPhone > On Mar 20, 2021, at 13:14, G.W. Haywood via clamav-users > wrote: > > Hi there, > >> On Sat, 20 Mar 2021, Paul Smith via clamav-users wrote: >> >>> On 20/03/2021 04:31, Joel Esler (jesler) via clamav-users wrot

Re: [clamav-users] help my IP address has been blocked

2021-03-21 Thread Joel Esler (jesler) via clamav-users
-prior-to-0100.html Sorry for the inconvenience, but we are currently in emergency mode and have to make several drastic changes over the last several days. -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group http://www.talosintelligence.com | https://www.snort.org Sent

Re: [clamav-users] Blocked IP

2021-03-21 Thread Joel Esler (jesler) via clamav-users
Thanks Gary Sent from my  iPhone > On Mar 21, 2021, at 19:59, Gary R. Schmidt wrote: > > On 22/03/2021 10:42, Du, J. (Jingsong) via clamav-users wrote: >> Dear Sir/Madam, >> ING Australia External IP was blocked. May I please ask for assistance to >> get it unblocked? >> Thanks. >> Regards,

Re: [clamav-users] About the response result from ClamAV Server

2021-03-21 Thread Joel Esler (jesler) via clamav-users
https://www.clamav.net/documents/freshclam-faq Under “error codes” Sent from my  iPhone On Mar 21, 2021, at 23:11, Eero Volotinen wrote:  Try to update to supported clamav version? Eero On Mon 22. Mar 2021 at 4.07, takahiro suzuki via clamav-users mailto:clamav-users@lists.clamav.net>> wr

Re: [clamav-users] Linode Clam AV Updates

2021-03-22 Thread Joel Esler (jesler) via clamav-users
Jim, Glad to work with you, let’s take our conversation off list so we’re not flooding everyone. — Sent from my  iPad > On Mar 22, 2021, at 15:20, Jim Ackley via clamav-users > wrote: > >  > Hi folks, > > Jim at Linode here. I’m interested in helping resolve this problem, as we’d > like

Re: [clamav-users] Need Help | Clamav installation on SUSE Linux Enterprise Server 12

2021-03-23 Thread Joel Esler (jesler) via clamav-users
Looks like your error is right here. Sent from my  iPhone On Mar 23, 2021, at 01:08, amit.a.singh--- via clamav-users wrote: /usr/local/clamav/bin/freshclam ERROR: Please edit the example config file /usr/local/clamav/etc/freshclam.conf ___ clamav

Re: [clamav-users] Freshclam Update Error

2021-03-25 Thread Joel Esler (jesler) via clamav-users
Are you using Freshclam or cvdupdate to download the signatures? Sent from my  iPhone On Mar 25, 2021, at 09:32, Wayne Florence via clamav-users wrote:  Paul, Turns out I had 2 versions installed and was using 0.98 when I switched to version 102.4 I get a certificate error

Re: [clamav-users] Freshclam Update Error

2021-03-25 Thread Joel Esler (jesler) via clamav-users
Do you have an updated certificate store? Sent from my  iPhone On Mar 25, 2021, at 09:41, Wayne Florence wrote:  freshclam Wayne Florence IBM/VSO Unix Administrator c(978)987-4632 From: Joel Esler (jesler) Sent: Thursday, March 25, 2021 9:39 AM To: ClamAV users ML Cc: Wayne Florence

Re: [clamav-users] Detection rate

2021-03-29 Thread Joel Esler (jesler) via clamav-users
Not that I am aware of that is current. Most of those tests you have to pay for, and the vendors who are in the tests pay for them. Sent from my  iPhone On Mar 29, 2021, at 19:05, María Belén Bonino via clamav-users wrote:  Hey there! Are there any independent testing results to show the c

Re: [clamav-users] ClamAV 0.103.1 on RHEL 6.7 x32

2021-04-06 Thread Joel Esler (jesler) via clamav-users
Looks like you need to update your certificate store? -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group http://www.talosintelligence.com | https://www.snort.org On Apr 6, 2021, at 10:24 AM, Sorin Petrut Niculae via clamav-users mailto:clamav-users@lists.clamav.net

Re: [clamav-users] ClamAV 0.103.1 on RHEL 6.7 x32

2021-04-06 Thread Joel Esler (jesler) via clamav-users
More accurately: openssl s_client -connect database.clamav.net:443 -servername database.clamav.net On Apr 6, 2021, at 10:33 AM, Eero Volotinen mailto:eero.voloti...@iki.fi>> wrote: Hi, https://www-archive.mozilla.org/projects/securi

[clamav-users] ClamAV® blog: Are you still attempting to download safebrowsing.cvd?

2021-04-07 Thread Joel Esler (jesler) via clamav-users
> > https://blog.clamav.net/2021/04/are-you-still-attempting-to-download.html > > > Are you still attempting to download safebrowsing.cvd? > > It has come to our attention that a few of you (about 515,000 of you, to b

[clamav-users] ClamAV® blog: ClamAV 0.103.2 security patch release

2021-04-07 Thread Joel Esler (jesler) via clamav-users
> > https://blog.clamav.net/2021/04/clamav-01032-security-patch-release.html > > > ClamAV 0.103.2 security patch release > > Wednesday, April 7, 2021 > > <>ClamAV 0.103.2 is out now. Users can head over to clamav.net/

[clamav-users] Cvdupdate user?

2021-04-07 Thread Joel Esler (jesler) via clamav-users
If you are in Switzerland, and using cvdupdate, and have cvdupdate set to check for updates once an hour, please contact me off list. Your UUID is: CVDUPDATE/0.3.0 (3d80e05e-0afa-449b-b289-1de3e9c070f1) Thanks! -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group http

Re: [clamav-users] ClamAV® blog: Are you still attempting to download safebrowsing.cvd?

2021-04-07 Thread Joel Esler (jesler) via clamav-users
On Apr 7, 2021, at 3:04 PM, Vladislav Kurz via clamav-users mailto:clamav-users@lists.clamav.net>> wrote: Dne středa 7. dubna 2021 19:41:34 CEST, Joel Esler (jesler) via clamav-users napsal(a): https://blog.clamav.net/2021/04/are-you-still-attempting-to-download.html <https://blog.c

Re: [clamav-users] ClamAV® blog: ClamAV 0.103.2 security patch release

2021-04-07 Thread Joel Esler (jesler) via clamav-users
It’s available on the webpage. > On Apr 7, 2021, at 4:29 PM, Arjen de Korte via clamav-users > wrote: > > Citeren "Joel Esler (jesler) via clamav-users" > : > > It seems the package is now signed with a different PGP key. Is there a > location from where

Re: [clamav-users] ClamAV® blog: ClamAV 0.103.2 security patch release

2021-04-07 Thread Joel Esler (jesler) via clamav-users
We’ll look into that for a future update. Sent from my  iPhone > On Apr 7, 2021, at 16:58, Arjen de Korte via clamav-users > wrote: > > Citeren "Joel Esler (jesler) via clamav-users" > : > >> It’s available on the webpage. > > I already wr

Re: [clamav-users] ClamAV® blog: Are you still attempting to download safebrowsing.cvd?

2021-04-08 Thread Joel Esler (jesler) via clamav-users
On Apr 8, 2021, at 10:06 AM, Vladislav Kurz via clamav-users mailto:clamav-users@lists.clamav.net>> wrote: Dne středa 7. dubna 2021 19:41:34 CEST, Joel Esler (jesler) via clamav-users napsal(a): https://blog.clamav.net/2021/04/are-you-still-attempting-to-download.html <https://blog.c

Re: [clamav-users] Error 429 when updating database

2021-04-08 Thread Joel Esler (jesler) via clamav-users
Dear Marko, Thanks for your email. I believe you will find what you are looking for here: https://www.clamav.net/documents/freshclam-faq under “Error Codes" -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com | https://www.snor

Re: [clamav-users] [ext] Re: ClamAV® blog: Are you still attempting to download safebrowsing.cvd?

2021-04-08 Thread Joel Esler (jesler) via clamav-users
t making the file empty? I think this causes an error in clamav/clamd Then just make is as small as possible - e.g. leave only one signature in the file, or something like that. Yup, we’ve got it. :) Thanks -- Joel Esler Manager, Communities Division Cisco Talos Intelligence

Re: [clamav-users] Error 429 when updating database

2021-04-08 Thread Joel Esler (jesler) via clamav-users
On Apr 8, 2021, at 11:52 AM, Marko Randjelovic mailto:marko...@eunet.rs>> wrote: On Thu, 8 Apr 2021 16:44:46 +0200 Matus UHLAR - fantomas mailto:uh...@fantomas.sk>> wrote: On 08.04.21 16:37, marko...@eunet.rs wrote: I use ClamAV on a Devuan ASCII (based on Debian Stre

Re: [clamav-users] Error 429 when updating database

2021-04-08 Thread Joel Esler (jesler) via clamav-users
On Apr 8, 2021, at 2:26 PM, Matus UHLAR - fantomas mailto:uh...@fantomas.sk>> wrote: On 08.04.21 16:23, Joel Esler (jesler) via clamav-users wrote: Advice, for literally anyone: Upgrade to 103.2. The FreshClam there is much better and will resolve the issues. I don't think thi

Re: [clamav-users] Error 429 when updating database

2021-04-08 Thread Joel Esler (jesler) via clamav-users
Feel free if you have the ability to do so. We’re poking in all directions already. Sent from my  iPhone > On Apr 8, 2021, at 17:34, Andrew C Aitchison wrote: > >  >> On Thu, 8 Apr 2021, Joel Esler (jesler) via clamav-users wrote: >> Still, 102.4 should work p

Re: [clamav-users] freshclam issues

2021-04-09 Thread Joel Esler (jesler) via clamav-users
Absolutely correct Sent from my  iPhone > On Apr 9, 2021, at 10:07, Kris Deugau wrote: > > Wayne Florence via clamav-users wrote: >> Hello, >> I have recently updated my 4 ClamAV private mirrors to >> version 0.103.0 to fix issues downloading the cvd files. >>

Re: [clamav-users] Error 429 when updating database

2021-04-10 Thread Joel Esler (jesler) via clamav-users
This. — Sent from my  iPad > On Apr 10, 2021, at 09:15, Gary R. Schmidt wrote: > > On 10/04/2021 22:59, Matus UHLAR - fantomas wrote: > [SNIP] >> it could help if we provided proper reason to upgrade tho. > Isn't, "It's security software", sufficient? > >Cheers, >GaryB-) >

Re: [clamav-users] ClamAV® blog: ClamAV 0.103.2 security patch release

2021-04-10 Thread Joel Esler (jesler) via clamav-users
Thanks for pointing that out. We’ve corrected it with mitre, but obviously, we can’t correct the news.md for now. — Sent from my  iPad > On Apr 10, 2021, at 08:14, Sergey wrote: > > On Wednesday 07 April 2021, Joel Esler (jesler) via clamav-users wrote: > >> CVE-2021

Re: [clamav-users] clamav on rhel 6.7 x32

2021-04-13 Thread Joel Esler (jesler) via clamav-users
I wouldn’t install something that old. I would go ahead and move on. Sent from my  iPhone On Apr 13, 2021, at 18:29, Eero Volotinen wrote:  Hi, I think that installing following files will fix your problem. https://archives.fedoraproject.org/pub/archive/epel/6/i386/Packages/c/clamav-0.100.3

Re: [clamav-users] ClamAV® blog: ClamAV 0.103.2 security patch release

2021-04-14 Thread Joel Esler (jesler) via clamav-users
we have some idea that the new key can be trusted > and was not put up by a malicous webmaster - possibly of a spoof website. > > Thanks, > > On Wed, 7 Apr 2021, Joel Esler (jesler) via clamav-users wrote: > >> We’ll look into that for a future update. >> >>

[clamav-users] Help, we are still seeing issues

2021-04-17 Thread Joel Esler (jesler) via clamav-users
properly functioning. But downloading the entire daily and main every 5 minutes or so indicates to me that something is broken. -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com | https://www.snort.org | https://www.clamav.net

Re: [clamav-users] Help, we are still seeing issues

2021-04-18 Thread Joel Esler (jesler) via clamav-users
Correct. Sent from my  iPhone > On Apr 18, 2021, at 13:55, Paul Kosinski via clamav-users > wrote: > > You're comparing daily.CLD with main.CVD: as I understand it, CVDs are > compressed, CLDs aren't. > > >> On Sat, 17 Apr 2021 21:15:29 +0200 (CEST) >> "Robert M. Stockmann via clamav-us

Re: [clamav-users] ClamAV(R) blog: Are you still attempting to download safebrowsing.cvd?

2021-04-22 Thread Joel Esler (jesler) via clamav-users
Effect: Traffic surrounding safebrowsing has effectively ground to almost zero. FANTASTIC! -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com | https://www.snort.org | https://www.clamav.net On Apr 22, 2021, at 12:04 PM, Andrew

Re: [clamav-users] Problema antivirus su Nas QNAP

2021-04-26 Thread Joel Esler (jesler) via clamav-users
blog.clamav.net/2021/02/clamav-eol-versions-prior-to-0100.html>. Sorry for the inconvenience. -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com | https://www.snort.org | https://www.clamav.net On Apr 26, 2021, at 4:49 PM, Federico D

Re: [clamav-users] Can't download daily-25402.cdiff from db.local.clamav.net

2021-04-28 Thread Joel Esler (jesler) via clamav-users
Please upgrade to 103.2, as the error messages are more specific. Please change your Database settings to fetch from database.clamav.net instead of “db.local.clamav.net”. Daily-25402 is very out of date. On Apr 28, 2021, at 11:43 AM, Will

Re: [clamav-users] cdn :/

2021-04-28 Thread Joel Esler (jesler) via clamav-users
I don’t think that’s a solution. > On Apr 28, 2021, at 9:21 AM, Benny Pedersen via clamav-users > wrote: > > On 2021-04-28 14:42, Eero Volotinen wrote: > >> Please upgrade to supported version? > > i have that on gentoo, problem is fidxed now, finaly, how can this take so > long without anyo

Re: [clamav-users] cdn :/

2021-04-28 Thread Joel Esler (jesler) via clamav-users
> On Apr 28, 2021, at 12:10 PM, Benny Pedersen wrote: > > On 2021-04-28 17:56, Joel Esler (jesler) wrote: >> I don’t think that’s a solution. > > https scales only if makeing private mirrors :/ > > design of torrents is ther more users the faster speeds all get

Re: [clamav-users] Request for guidelines to connect freshclam to Squid proxy

2021-04-30 Thread Joel Esler (jesler) via clamav-users
If the firewall administrator is that way about AV updates, how are they with YouTube? On Apr 30, 2021, at 12:43 PM, Dave Warren via clamav-users mailto:clamav-users@lists.clamav.net>> wrote: A firewall's job is to regulate unwanted/undesired traffic and to enforce policy as defined by the bus

[clamav-users] Update on rate limits and downloading

2021-05-06 Thread Joel Esler (jesler) via clamav-users
, keep going keep upgrading. Upgrade to 0.103.2, and keep your mirrors.dat file around, this file contains a snapshot of where you are in your update progression so that the next time that FreshClam run, it can start where it left off. -- Joel Esler Manager, Communities Division Cisco Talos

Re: [clamav-users] Fwd: ClamAV®

2021-05-08 Thread Joel Esler (jesler) via clamav-users
No, this is the public git repository. Unless I am misunderstanding what you’re saying. Sent from my  iPhone On May 8, 2021, at 03:38, Frans de Boer wrote:  On 06/05/2021 01:19, ClamAV® blog wrote: "clamav-devel" GitHub repository name change to "clamav"

Re: [clamav-users] ClamAV 0.103.0 takes longer

2021-05-21 Thread Joel Esler (jesler) via clamav-users
Also, upgrading to the current version is smarter. 0.103.2 Sent from my  iPhone > On May 21, 2021, at 08:45, Uskokovic, Sinisa via clamav-users > wrote: > > Hi Ged, > > Thank you for your answer, it is good enough for my dilemma. > > Best, > Sinisa > > -Original Message- > From:

Re: [clamav-users] To unblock ip addresses for updating clamAV database/definations.

2021-06-03 Thread Joel Esler (jesler) via clamav-users
Hello Satwant, Moving off list. I’m going to need more info than the IPs. What error are you receiving? -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com | https://www.snort.org | https://www.clamav.net On May 27, 2021, at 5:18 PM

[clamav-users] ClamWin maintainers?

2021-06-05 Thread Joel Esler (jesler) via clamav-users
I tried to register an account on the ClamWin forums, but I don’t see where to create a new account anywhere. I can see where to login, and see where to reset my password. But I don’t have one, and I don’t see a place to create one. That being said. It seems that ClamWin users have been upda

Re: [clamav-users] ClamWin maintainers?

2021-06-06 Thread Joel Esler (jesler) via clamav-users
lamWin > missed the rest of the actual 0.103.2 changes, so in reality it's 0.103.1. > > I'll put in a ticket on the ClamWin repo. > >> -Original Message- >> From: clamav-users On Behalf Of >> Joel Esler (jesler) via clamav-users >> Sent: Sat

Re: [clamav-users] since nearly a week unable to update signatures using freshclam ...

2021-06-07 Thread Joel Esler (jesler) via clamav-users
What operating system are you using? Sent from my  iPhone > On Jun 6, 2021, at 14:06, Walter H. via clamav-users > wrote: > > # freshclam > ClamAV update process started at Sun Jun 6 19:58:06 2021 > Connecting via proxy > main.cld is up to date (version: 59, sigs: 4564902, f-level: 60, buil

Re: [clamav-users] Clam AV Cost and support for enterprise

2021-06-07 Thread Joel Esler (jesler) via clamav-users
There’s no cost for use in the Enterprise. There is no support offering for ClamAV other than these mailing lists. Sent from my  iPhone On Jun 7, 2021, at 16:30, Karthik Iyer via clamav-users wrote:  Hi , We would like to use ClamAV for scanning files in our blob storage and would like t

Re: [clamav-users] since nearly a week unable to update signatures using freshclam ...

2021-06-08 Thread Joel Esler (jesler) via clamav-users
Definitely need to compile. — Sent from my  iPad > On Jun 8, 2021, at 08:57, Richard via clamav-users > wrote: > > > >> Date: Tuesday, June 08, 2021 08:00:16 +0200 >> From: "Walter H. >> >> I'm using an old CentOS 6, not migrated to something newer >> >>> On 06.06.2021 20:04, Walter H.

Re: [clamav-users] since nearly a week unable to update signatures using freshclam ...

2021-06-08 Thread Joel Esler (jesler) via clamav-users
Do you have the uuid library installed on your machine? > On Jun 8, 2021, at 2:00 AM, Walter H. via clamav-users > wrote: > > I'm using an old CentOS 6, not migrated to something newer > > On 06.06.2021 20:04, Walter H. via clamav-users wrote: >> # freshclam >> ClamAV update process started at

Re: [clamav-users] since nearly a week unable to update signatures using freshclam ...

2021-06-08 Thread Joel Esler (jesler) via clamav-users
The problem is your installation is not identifying itself with the server and is blocked. Please see my previous email. > On Jun 8, 2021, at 12:48 PM, Walter H. via clamav-users > wrote: > > On 08.06.2021 14:57, Richard via clamav-users wrote: >> >>> Date: Tuesday, June 08, 2021 08:00:16 +0

Re: [clamav-users] Running ClamAV for production workloads

2021-06-08 Thread Joel Esler (jesler) via clamav-users
If you are setting up lots of machines, make sure you set up a private mirror using cvdupdate first for all of your machines to pull updates from. Have a script/plan for upgrading ClamAV. Super important to keep the engine up to date. Have a plan for what you are going to do when it detects som

Re: [clamav-users] KACE false positive

2021-06-11 Thread Joel Esler (jesler) via clamav-users
Douglas, Thank you for your email. Here is a good place to file false positives: https://www.clamav.net/reports/fp <https://www.clamav.net/reports/fp> for future reference. -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com |

[clamav-users] ClamAV moves to Discord!

2021-06-15 Thread Joel Esler (jesler) via clamav-users
ClamAV (‪@clamav‬) 6/15/21, 14:23 Since Freenode has decidedly driven off the proverbial cliff, we’ve moved to Discord for our chats: discord.gg/DAW9qWqFzt Join us! We realize that

[clamav-users] ClamAV® blog: ClamAV 0.103.3 patch release

2021-06-21 Thread Joel Esler (jesler) via clamav-users
> > https://blog.clamav.net/2021/06/clamav-01033-patch-release.html > > > ClamAV 0.103.3 patch release > > ClamAV 0.103.3 is out now. Users can head over to clamav.net/downloads > to download

Re: [clamav-users] question about a malware submission

2021-06-23 Thread Joel Esler (jesler) via clamav-users
You should submit the suspected malware here: https://www.clamav.net/reports/malware — Sent from my  iPhone On Jun 22, 2021, at 22:01, vze1amckv--- via clamav-users wrote: Hello, I recently submitted a suspicious file via the ClamAV website submission form, and got a response back saying

Re: [clamav-users] Scanning PDF for phishing links

2021-06-29 Thread Joel Esler (jesler) via clamav-users
How many of you are present members of either phishtank.com or spamcop.net? Both of which are ran by Talos, and both of which feed the same intel system that ClamAV can read from? -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com

[clamav-users] ClamAV® blog: ClamAV EOL of 0.100.x versions

2021-06-29 Thread Joel Esler (jesler) via clamav-users
the newest version of ClamAV, currently at 0.103.3, available for download now<https://www.clamav.net/downloads>! As always, thank you for using ClamAV. — -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com | https://www.s

Re: [clamav-users] Scanning PDF for phishing links

2021-06-29 Thread Joel Esler (jesler) via clamav-users
Awesome — Sent from my  iPad > On Jun 29, 2021, at 18:04, G.W. Haywood via clamav-users > wrote: > > Hi there, > >> On Tue, 29 Jun 2021, Joel Esler (jesler) via clamav-users wrote: >> >> How many of you are present members of either phishtank.com or >&

Re: [clamav-users] Scanning PDF for phishing links

2021-06-30 Thread Joel Esler (jesler) via clamav-users
h to phishtank (among > others). But it's low volume, just from my wife and my's accounts. > > Sent from my iPad > > -Al- > >>> On Jun 29, 2021, at 12:48, Joel Esler (jesler) via clamav-users >>> wrote: >>> >> How many of you are pre

Re: [clamav-users] Scanning PDF for phishing links

2021-07-01 Thread Joel Esler (jesler) via clamav-users
> On Jul 1, 2021, at 8:25 AM, Matus UHLAR - fantomas wrote: > > On 30.06.21 20:41, Joel Esler (jesler) via clamav-users wrote: >> Yes. I was just addressing everyone > > I have used to forward spam to spamcop, maybe I should start again? > > I'm thinking about

Re: [clamav-users] Not able to communicate on port 443(https) when running freshclam

2021-07-06 Thread Joel Esler (jesler) via clamav-users
That appears to be a private mirror. You should check with the administrator of your private mirror. — Sent from my  iPhone On Jul 6, 2021, at 18:31, Lopez, Carmelo via clamav-users wrote:  I am trying to communicate over port 443 to download freshclam database from the clamav mirror serv

Re: [clamav-users] How do I get the last update to 103-3 installed on stretch?

2021-07-07 Thread Joel Esler (jesler) via clamav-users
Freshclam keeps your definitions up to date, the engine is very much dependent on the OS. > On Jul 6, 2021, at 6:18 AM, G.W. Haywood via clamav-users > wrote: > > Hi there, > > On Tue, 6 Jul 2021, Gene Heskett via clamav-users wrote: > >> How do I get the last update to 103-3 installed on st

[clamav-users] New Main & Daily CVD's are incoming

2021-07-13 Thread Joel Esler (jesler) via clamav-users
tps://blog.clamav.net/2021/07/new-main-daily-cvds-are-incoming.html> -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com | https://www.snort.org | https://www.clamav.net smime.p7s Description: S/MIME cryptographic sig

Re: [clamav-users] New Main & Daily CVD's are incoming

2021-07-13 Thread Joel Esler (jesler) via clamav-users
ly.cvd or just the > new cvd files in their entirety? I seem to remember processing the cdiff > files caused a lot of problems for people the last time main.cvd was updated. > > Mark > >> On 13 Jul 2021, at 3:05 pm, Joel Esler (jesler) via clamav-users >>

Re: [clamav-users] New Main & Daily CVD's are incoming

2021-07-13 Thread Joel Esler (jesler) via clamav-users
> On Jul 13, 2021, at 18:08, Paul Kosinski via clamav-users > wrote: > > On Tue, 13 Jul 2021 14:05:53 +0000 > "Joel Esler \(jesler\) via clamav-users" > wrote: > >> Tomorrow, Wednesday July 14th, we are planning on publishing a brand new >> main.

Re: [clamav-users] New Main & Daily CVD's are incoming

2021-07-13 Thread Joel Esler (jesler) via clamav-users
chanism for performing daily incremental updates via cdiff > files rather than downloading the whole cvd. > > Are you providing cdiff files for both main.cvd and daily.cvd or just the cvd > files? > > Regards > Mark > >> On 13 Jul 2021, at 3:55 pm, Joel Esler (j

Re: [clamav-users] problems with freshclam: Incremental update failed

2021-07-15 Thread Joel Esler (jesler) via clamav-users
point on, it downloads the diffs again regularly. -- Joel Esler Manager, Communities Division Cisco Talos Intelligence Group https://www.talosintelligence.com | https://www.snort.org | https://www.clamav.net > On Jul 15, 2021, at 10:28 AM, Christian wrote: > > Hi altogether, > &g

[clamav-users] ClamAV® blog: ClamAV 0.104.0 Release Candidate is here!

2021-07-22 Thread Joel Esler (jesler) via clamav-users
> > https://blog.clamav.net/2021/07/clamav-01040-release-candidate-is-here.html > > > ClamAV 0.104.0 Release Candidate is here! > > We are pleased to announce the ClamAV 0.104.0 release candidate >

Re: [clamav-users] can not download updates

2021-07-27 Thread Joel Esler (jesler) via clamav-users
e devices download clamav database diferently then using >> freshclam? > > i have one device that uses freshclam once per hour > i am using a vpn > it looks like anyone that uses a vpn is probably screwed > it was good while it lasted What is your public IP? --

Re: [clamav-users] can not download updates

2021-07-27 Thread Joel Esler (jesler) via clamav-users
> On Jul 27, 2021, at 10:34 AM, fxkl47BF via clamav-users > wrote: > > ‐‐‐ Original Message ‐‐‐ > On Tuesday, July 27th, 2021 at 9:29 AM, Joel Esler (jesler) <mailto:jes...@cisco.com>> wrote: > >>> On Jul 27, 2021, at 10:22 AM, fxkl47BF via c

Re: [clamav-users] Cooldown much too long

2021-07-27 Thread Joel Esler (jesler) via clamav-users
> On Jul 26, 2021, at 6:02 PM, Markus Egg via clamav-users > wrote: > > I had that problem with "Incremental update failed, trying to download > main.cvd" also in > version 0.103.2 of clamav on Ubuntu 18.04 . > > So I waited and updated with the hope that 0.103.3 would solve it. > But still

Re: [clamav-users] can not download updates

2021-07-27 Thread Joel Esler (jesler) via clamav-users
‐ Original Message ‐‐‐ > > On Tuesday, July 27th, 2021 at 9:43 AM, Joel Esler (jesler) <mailto:jes...@cisco.com>> wrote: > >>> On Jul 27, 2021, at 10:34 AM, fxkl47BF via clamav-users >>> wrote: >>> >>> ‐‐‐ Original Message ‐‐‐

Re: [clamav-users] ClamAV® blog: ClamAV 0.104.0 Release Candidate is here!

2021-07-27 Thread Joel Esler (jesler) via clamav-users
> On Jul 27, 2021, at 11:27 AM, Paul Kosinski via clamav-users > wrote: > > On Mon, 26 Jul 2021 11:35:29 -0400 > "Rick Cooper" mailto:rcoo...@dwford.com>> wrote: > >> And what, exactly, is the reason for moving to cmake? I am sure you know >> it's going to be problematic for thousands of peop

Re: [clamav-users] ClamAV® blog: ClamAV 0.104.0 Release Candidate is here!

2021-07-28 Thread Joel Esler (jesler) via clamav-users
We are planning on making LTS versions for distros again. — Sent from my  iPad > On Jul 28, 2021, at 07:45, Andrew C Aitchison via clamav-users > wrote: > > On Wed, 28 Jul 2021, Rick Cooper wrote: > >> total disregard for the user base, not so much as a poll or query on the >> lists, >

Re: [clamav-users] ClamAV® blog: ClamAV 0.104.0 Release Candidate is here!

2021-07-28 Thread Joel Esler (jesler) via clamav-users
> On Jul 28, 2021, at 7:17 AM, Rick Cooper wrote: > > total disregard for the user base, not so much as a poll or query on the > lists, enjoy your new cutting edge toys > > Corporate BS rears it's ugly head again, First snort, then centos and now > clamav. I think this is unfair. This is

Re: [clamav-users] can not download updates

2021-07-28 Thread Joel Esler (jesler) via clamav-users
> On Jul 28, 2021, at 4:04 AM, Matus UHLAR - fantomas wrote: > > On 27.07.21 18:51, fxkl47BF via clamav-users wrote: >> for many years it's worked fine with timeout set at 30 seconds > > for many years it worked with people fetching via wget/curl, but it does not > apply now. > So true. >

Re: [clamav-users] Freshclam - can't apply latest patch 26246

2021-07-28 Thread Joel Esler (jesler) via clamav-users
> On Jul 28, 2021, at 12:30 PM, Andrew C Aitchison via clamav-users > wrote: > > This sounds about right. > A lot of signatures in daily 26231 were removed from daily 26232 or 26233 > and added to main 60. There was a glitch and main 61 was created to flush > caches on some of the mirrors. >

Re: [clamav-users] Long Term Support (LTS) program proposal

2021-07-29 Thread Joel Esler (jesler) via clamav-users
To be extremely specific, the LTS version would start with 0.103.3. So that would be the base version we’d support for LTS. > On Jul 29, 2021, at 10:06 AM, Andrew C Aitchison via clamav-users > wrote: > > > Executive Summary: > An LTS release every two years, supported for three, starting

Re: [clamav-users] ClamAVR blog: ClamAV 0.104.0 Release Candidate is here!

2021-07-29 Thread Joel Esler (jesler) via clamav-users
> On Jul 28, 2021, at 6:09 PM, Rick Cooper wrote: > >> On Jul 28, 2021, at 7:17 AM, Rick Cooper > > wrote: >> >> total disregard for the user base, not so much as a poll or query on the >> lists, enjoy your new cutting edge toys >> >> Corporate BS rears it's ugly

Re: [clamav-users] Long Term Support (LTS) program proposal

2021-07-30 Thread Joel Esler (jesler) via clamav-users
> On Jul 30, 2021, at 14:41, Paul Kosinski via clamav-users > wrote: > > (I don't see exactly how a LTS would have helped with the bandwidth issue, > but I suppose it wouldn't have made it any more disruptive.) 103.2 and 103.3 are much more respectful to bandwidth than any past version. We

Re: [clamav-users] Local web server

2021-08-12 Thread Joel Esler (jesler) via clamav-users
What’s the question? Can you use ClamAV in a commercial environment? Sure. As long as you adhere to the GPLv2, you’re good to go. But yes, Ged is right, if you have more than say, two or three hosts behind a NAT address? Set up a private mirror. > On Aug 12, 2021, at 2:15 PM, Johnson, Trici

Re: [clamav-users] database updates blocked

2021-08-17 Thread Joel Esler (jesler) via clamav-users
Curl is not authorized to be used to download updates. Please use Freshclam or cvdupdate to download updates. — Sent from my  iPhone On Aug 17, 2021, at 08:33, Jona Tallieu wrote:  Dear all, Since a few days, our database updates are blocked: HTTP 403 (forbidden) > Cloudflare Error 1020:

Re: [clamav-users] database updates blocked

2021-08-17 Thread Joel Esler (jesler) via clamav-users
cvd >> >> 13:26:24.653 5 EXTFILTER(CGPClamAV) inp(104): * WARNING: Download failed >> (77) * WARNING: Message: Problem with the SSL CA cert (path? access rights?) >> >> 13:26:24.653 5 EXTFILTER(CGPClamAV) inp(078): * WARNING: Can't download >> daily.cvd from h

[clamav-users] ClamAV® blog: ClamAV 0.104.0 Second Release Candidate is here!

2021-08-19 Thread Joel Esler (jesler) via clamav-users
https://blog.clamav.net/2021/08/clamav-01040-second-release-candidate.html ClamAV 0.104.0 Second Release Candidate is here! Today we are publishing a second release candidate for 0.104.0. Please help us verify that

Re: [clamav-users] ClamAV® blog: ClamAV 0.104.0 Second Release Candidate is here!

2021-08-22 Thread Joel Esler (jesler) via clamav-users
I’m a fan of the thought of removing the user manual completely from the downloaded packages and including a link to docs.ClamAV.net. Since that’s more dynamic. — Sent from my  iPhone > On Aug 22, 2021, at 04:22, G.W. Haywood via clamav-users > wrote: > > Hi there, > >> On Sun, 22 Aug

Re: [clamav-users] ClamAV® blog: ClamAV 0.104.0 Second Release Candidate is here!

2021-08-22 Thread Joel Esler (jesler) via clamav-users
22 Aug 2021, Arjen de Korte via clamav-users wrote: >> Citeren "G.W. Haywood via clamav-users" : >>> On Sun, 22 Aug 2021, Joel Esler (jesler) via clamav-users wrote: >>>> I’m a fan of the thought of removing the user manual completely from >>>> the d

Re: [clamav-users] ClamAV® blog: ClamAV 0.104.0 Second Release Candidate is here!

2021-08-22 Thread Joel Esler (jesler) via clamav-users
I could worry about the .0001% of the time* — Sent from my  iPhone > On Aug 22, 2021, at 13:48, Joel Esler (jesler) wrote: > > I could work about the .0001% or the time that github is inaccessible in > a given time, or I could save maintaining the docs i

Re: [clamav-users] Authenticity token element not found

2021-08-25 Thread Joel Esler (jesler) via clamav-users
I think this was fixed in 103.3 — Sent from my  iPhone > On Aug 25, 2021, at 04:26, Philipp Ewald wrote: > >  >> > clamsubmit -e "philipp.ewald[at]digionline.de" -n > "29668235ea685b3e84309b9585dc71e7" -N "DigiOnline" > > Authenticity token element not found. > > This is my comma

Re: [clamav-users] Please unsubscribe me from all emails

2021-08-31 Thread Joel Esler (jesler) via clamav-users
Thank you for writing in. Go to this URL to change user options or unsubscribe: https://lists.ClamAV.net/mailman/listinfo/ClamAV-users or by sending an email to clamav-users-le...@lists.clamav.net Thanks! > On Aug 31, 2021, at 10:17 AM, Cândido Sales Gomes via clamav-users > wrote: > > Hi, >

[clamav-users] ClamAV® blog: ClamAV 0.104.0 released

2021-09-03 Thread Joel Esler (jesler) via clamav-users
> > https://blog.clamav.net/2021/09/clamav-01040-released.html > > > ClamAV 0.104.0 released > > ClamAV 0.104.0 is available as an official release as of today. > > We are also announcing a new Long Term Support (LTS) program today

[clamav-users] ClamAV® blog: Changes to ClamAV end-of-life policy and a new Long Term Support policy

2021-09-03 Thread Joel Esler (jesler) via clamav-users
> > https://blog.clamav.net/2021/09/changes-to-clamav-end-of-life-policy.html > > > Changes to ClamAV end-of-life policy and a new Long Term Support policy > > Today, we're announcing changes to the ClamAV End-of-Life

<    5   6   7   8   9   10   11   12   >