On Mar 8, 2021, at 9:36 AM, Todd Aiken 
<[email protected]<mailto:[email protected]>> wrote:

> From: clamav-users 
> <[email protected]<mailto:[email protected]>>
>  on behalf of Lo Nelson via clamav-users 
> <[email protected]<mailto:[email protected]>>
> Reply-To: ClamAV users ML 
> <[email protected]<mailto:[email protected]>>
> Date: Monday, March 8, 2021 at 8:49 AM
> To: "[email protected]<mailto:[email protected]>" 
> <[email protected]<mailto:[email protected]>>
> Cc: Lo Nelson <[email protected]<mailto:[email protected]>>
> Subject: [EXTERNAL] [clamav-users] Not able to use curl to download the cvd 
> files successfully
>
> Dear Clamav support,
>
> May I know why I am not able to use curl to download the cvd files 
> successfully? The cvd files show error code 1020. Thank you.

This is Cloudfare "protecting" the ClamAV website.  You can bypass it by 
sending a fake user agent string, like this:

curl -A "Mozilla/5.0" http://database.clamav.net/daily.cvd --output daily.cvd

or using wget:

wget --user-agent "Mozilla/5.0" http://database.clamav.net/daily.cvd''


No!  Don’t “bypass” it.

And “protecting” does not need to be in quotes, it’s quite literally what we 
are doing.  And people doing the above are the problem.

As I said in countless other emails, either use Freshclam or 
https://github.com/micahsnyder/cvdupdate.  The more people that do the above 
will force us to take drastic measures.

--
Joel Esler
Manager, Communities Division
Cisco Talos Intelligence Group
http://www.talosintelligence.com | https://www.snort.org
_______________________________________________

clamav-users mailing list
[email protected]
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml

Reply via email to