Re: [clamav-users] Unable to download daily.cvd after upgrade to RHEL 8

2024-03-07 Thread Joel Esler via clamav-users
Looks like you’re trying to connect through a proxy.  Not directly.  — Sent from my iPhoneOn Mar 7, 2024, at 13:34, John Paul Guay via clamav-users wrote:Hello,We have performed an In-Place upgrade to RHEL 8 on our system that ClamAV resides on and afterwards we are no longer able to download

Re: [clamav-users] Cloudflare block me

2023-11-17 Thread Joel Esler via clamav-users
You must use fresh clam to download updates. There are no country specific databases anymore.  They all just point at the same db. — Sent from my iPhoneOn Nov 17, 2023, at 02:00, Vedeau Jérôme via clamav-users wrote: Hello,   Can you help us to resolve this issue : We are blocked by

Re: [clamav-users] freshclam not working

2023-09-13 Thread Joel Esler via clamav-users
Off the top of my head. I think database is right. — Sent from my iPhone > On Sep 13, 2023, at 02:12, Andrew C Aitchison via clamav-users > wrote: > > On Tue, 12 Sep 2023, Joel Esler via clamav-users wrote: > >> Curl won’t work at all. >> But it definit

Re: [clamav-users] freshclam not working

2023-09-12 Thread Joel Esler via clamav-users
Curl won’t work at all.  But it definitely points to a dns problem. — Sent from my iPhoneOn Sep 11, 2023, at 13:07, Serge Slivitzky via clamav-users wrote:  Hi all,I'm using clamav on 2 systems built the same way: the first one is behind a firewall and freshclam is not working, the other one is

Re: [clamav-users] ClamAV Issue - 127.0.0.1:3310 Connection refused

2023-08-22 Thread Joel Esler via clamav-users
Yup. Looks like your FreshClam can’t reach the internet. Or DNS is messed up. Or something. > On Aug 22, 2023, at 3:10 PM, Mona AlRekabi wrote: > > Kindly, find the attached file > ___ Manage your clamav-users mailing list subscription /

Re: [clamav-users] ClamAV Issue - 127.0.0.1:3310 Connection refused

2023-08-22 Thread Joel Esler via clamav-users
Is perhaps your freshclam update attempting to connect to localhost or something?— Sent from my iPhoneOn Aug 22, 2023, at 03:54, Mona AlRekabi via clamav-users wrote:Dear,   Kindly, we installed ClamAV Antivirus on Windows Server and we face the following issue:   No connection could be made

Re: [clamav-users] Cloudflare ban?

2023-07-11 Thread Joel Esler via clamav-users
403 is a specific ban. Maybe by country or an Ip specifically. — Sent from my iPhone > On Jul 11, 2023, at 02:50, Łukasz Baniecki via clamav-users > wrote: > > Today I did a clean cvd update, meaning I removed everything in > /var/lib/clamav, I flushed my fw rules, so it won't block

Re: [clamav-users] How do I get something added to the ignore list

2023-06-08 Thread Joel Esler via clamav-users
What db do you think you want to add it to?— Sent from my iPhoneOn Jun 8, 2023, at 12:35, Tim McConnell via clamav-users wrote:Thanks for that AL, now how do I add to the DB? Two things I'm not is a programmer or DBA :-( -- Tim McConnell On Thu, 2023-06-08 at 05:01 -0700, Al Varnell

Re: [clamav-users] [EXTERNAL] Re: Off Line Signature updates.

2023-02-02 Thread Joel Esler via clamav-users
local mirror using the cvdupdate tool.     Kind Regards Andy     NATS Internal From: Joel Esler Sent: 30 January 2023 15:35 To: ClamAV users ML Cc: GARLICK, Andy W Subject: [EXTERNAL] Re: [clamav-users] Off Line Signature updates.   CAUTION: This email originated from outside

Re: [clamav-users] Off Line Signature updates.

2023-01-30 Thread Joel Esler via clamav-users
Andy, You can download them on a standalone machine and move them over via thumb drive. > On Jan 30, 2023, at 10:30 AM, GARLICK, Andy W via clamav-users > wrote: > > Hi CLAMAV, > > We only operate an air gapped system but still require anti-malware. > > Do you provide any options (free

Re: [clamav-users] Errors after using clamdscan

2023-01-12 Thread Joel Esler via clamav-users
> On Jan 12, 2023, at 11:19, Matus UHLAR - fantomas wrote: > > On 12.01.23 18:34, Antonio Galdieri via clamav-users wrote: >> We are trying to use the clamdscan command with a scripts that sends us the >> results of the scan via mail, problem is, whenever we try to use the script >> we get

Re: [clamav-users] Anyone else having trouble reaching the ClamAV website?

2023-01-09 Thread Joel Esler via clamav-users
The system is probably set up that way on purpose to discourage automated bots from pounding on the site constantly, and ensure that the browser visiting the site is actually a human. — Sent from my  iPad > On Jan 6, 2023, at 14:55, Paul Kosinski via clamav-users > wrote: > > I

Re: [clamav-users] How many viruses/malware is clamav protecting us from?

2022-12-15 Thread Joel Esler via clamav-users
Technically speaking, this is an impossible question to answer. Since there are millions of pieces of detection in ClamAV, but one piece of detection can cover millions of pieces of malware. > On Dec 15, 2022, at 9:09 AM, Michael Kyriacou via clamav-users > wrote: > > Hello, is there a way

Re: [clamav-users] Information about the signature database

2022-12-09 Thread Joel Esler via clamav-users
The Talos team should be able to tell you, I’d you give them the name of the detection, they can look it up. — Sent from my iPhone > On Dec 9, 2022, at 07:10, Al Varnell via clamav-users > wrote: > > Yes I simply search the daily's. If you give me the signature name I can do > that for

Re: [clamav-users] ClamAV 1.0.0 release candidate now available

2022-10-28 Thread Joel Esler via clamav-users
You wouldn’t download the cld from the server. Or am I reading this thread wrong. — Sent from my iPhone > On Oct 28, 2022, at 04:15, Ralf Hildebrandt via clamav-users > wrote: > > * Yasuhiro Kimura : > >> I experienced same problem while I'm working to update FreeBSD ClamAV >> port to

Re: [clamav-users] on my microsoft windows with both edited freshclam.conf and clamd.conf unfornately i can't update and i can't scan

2022-10-17 Thread Joel Esler via clamav-users
, > > Regards. > > > Dorian Rosse. > From: Joel Esler > Sent: Monday, October 17, 2022 1:04:50 PM > To: ClamAV users ML > Cc: Dorian ROSSE > Subject: Re: [clamav-users] on my microsoft windows with both edited > freshclam.conf and clamd.conf unfornately i can't upd

Re: [clamav-users] on my microsoft windows with both edited freshclam.conf and clamd.conf unfornately i can't update and i can't scan

2022-10-17 Thread Joel Esler via clamav-users
Dorian it looks like all your errors are below. Read the output. — Sent from my iPhone > On Oct 16, 2022, at 03:21, Dorian ROSSE via clamav-users > wrote: > >  > > ‘’’ > PS C:\Program Files\ClamAV> ./freshclam.exe > ERROR: Please edit the example config file C:\Program >

Re: [clamav-users] ClamAV Action is not working on WHM/cPanel

2022-10-13 Thread Joel Esler via clamav-users
I am betting that Inmotion is running an old version of ClamAV that can’t update anymore. I’d bet money on that. > On Oct 13, 2022, at 1:43 PM, Javier Camacho via clamav-users > wrote: > > Hi there, I am not sure if this the correct channel to request help. We have > a dedicated

Re: [clamav-users] Are there test results for ClamAV and which malware is supported

2022-10-07 Thread Joel Esler via clamav-users
Some tidbits from me. I do not speak for Cisco. > On Oct 6, 2022, at 5:21 PM, G.W. Haywood via clamav-users > wrote: > > Hi there, > > On Thu, 6 Oct 2022, Julia - via clamav-users wrote: > >> I have a general question to ClamAV regarding how good ClamAV is. > > It's a good question. Most

Re: [clamav-users] remove me

2022-09-12 Thread Joel Esler via clamav-users
> On Sep 9, 2022, at 12:40 PM, Matus UHLAR - fantomas wrote: > > On 09.09.22 12:29, Marc wrote: >> What about doing some sort of IQ test before users subscribe something like >> 2+2=? > > making unsubscribe easier would spare us from solving problems like these. > > unfortunately,

Re: [clamav-users] remove me

2022-09-08 Thread Joel Esler via clamav-users
Check the bottom of every email sent to the list. — Sent from my  iPhone > On Sep 8, 2022, at 14:16, Michael Piziak via clamav-users > wrote: > > remove me > > ___ > > clamav-users mailing list > clamav-users@lists.clamav.net >

Re: [clamav-users] Best practices when using caching http proxy as cvd private mirror

2022-09-08 Thread Joel Esler via clamav-users
What I don’t understand about threads like this: During my time at Cisco, Micah literally built multiple tools to correctly handle the CDN framework. CVDUPATE and Freshclam itself, and people are going out of their way to try and fake CVDUPDATE to create a local mirror. Which is literally

Re: [clamav-users] False Positive?

2022-08-11 Thread Joel Esler via clamav-users
Exactly the only answer that is correct to this email. :) > On Aug 11, 2022, at 2:15 PM, Al Varnell via clamav-users > wrote: > > Did you submit to ? > > -Al- > -- > ClamXAV user > > On Aug 11, 2022, at 11:01 AM, David Laxer

Re: [clamav-users] Inquire about clamav latest stable version -

2022-08-01 Thread Joel Esler via clamav-users
> On Aug 1, 2022, at 15:36, Paul Kosinski wrote: > > On Thu, 28 Jul 2022 17:38:20 -0400 > Joel Esler wrote: > >> ClamAV is a Cisco project. There’s no arguing that. >> All of the original team are observed here: https://www.clamav.net/about >>

Re: [clamav-users] Inquire about clamav latest stable version -

2022-07-28 Thread Joel Esler via clamav-users
ClamAV is a Cisco project. There’s no arguing that. All of the original team are observed here: https://www.clamav.net/about So, not sure what you’re getting at. — Sent from my  iPhone > On Jul 28, 2022, at 16:56, Paul Kosinski via clamav-users > wrote: > >  >> >> At the moment

Re: [clamav-users] Permanently banned from clamav

2022-07-03 Thread Joel Esler via clamav-users
Freshclam and cvdupdate can be ran as often as you want. They check DNS to see if an update is needed before it attempts to download from the CDN, so knock yourself out. That being said, ClamAV only publishes updates once a day. So hourly is PLENTY of time to run the check. — Sent from

Re: [clamav-users] Permanently banned from clamav

2022-07-02 Thread Joel Esler via clamav-users
This is correct. — Sent from my  iPhone > On Jul 2, 2022, at 11:50, Maarten Broekman via clamav-users > wrote: > > Downloading the entire databases unnecessarily (using web browsers, etc) is > banned because it results in higher volumes of data transfer which, in turn, > costs more

Re: [clamav-users] Off topic question...

2022-06-29 Thread Joel Esler via clamav-users
Talosintelligence.com/support — Sent from my  iPhone > On Jun 29, 2022, at 10:59, Eric Tykwinski via clamav-users > wrote: > >  > Any one have an abuse contact for Cisco IronPorts hosted service? > > Customer of ours received a phishing email from a Cisco client but wasn’t > sent by

Re: [clamav-users] Version .105

2022-06-29 Thread Joel Esler via clamav-users
https://www.clamav.net/downloads Seems to have what you need. > On Jun 29, 2022, at 10:02 AM, West, Hunter D [US] (ES) via clamav-users > wrote: > > Hello, > > I am unsure if I've come to the right place, but I need to install ClamAV > version .105. I work in a SAP environment with no

Re: [clamav-users] Scan reports

2022-05-31 Thread Joel Esler via clamav-users
Is it not updating? Or not scanning? — Sent from my  iPhone > On May 31, 2022, at 07:09, John Paul Guay via clamav-users > wrote: > > Hello, > > I’m new to ClamAV and I need help to fix our master server so it will scan > each agent daily. I work in a federal department in government

Re: [clamav-users] How to stop receive messages.

2022-05-05 Thread Joel Esler via clamav-users
https://lists.clamav.net/mailman/listinfo/clamav-users > On May 4, 2022, at 7:43 PM, Eric Jin via clamav-users > wrote: > > Dear Sir, > I don't want to receive any posted messages. Please tell me how to stop it. > Thanks. > > Best

Re: [clamav-users] clamav/safebrowsing updates?

2022-04-26 Thread Joel Esler via clamav-users
> On Apr 26, 2022, at 4:08 PM, Alex via clamav-users > wrote: > > Hi, > >>> Is the clamav-safebrowsing repository still maintained? >> >> https://blog.clamav.net/2020/06/the-future-of-clamav-safebrowsing.html > > Yes, that's exactly what I'm referring to - your link directs the user > to

Re: [clamav-users] DoD/IL4/Federal use case

2022-04-19 Thread Joel Esler via clamav-users
Thanks. > On Apr 19, 2022, at 4:31 PM, Ivan Zanoth via clamav-users > wrote: > > Do what you need. > > Em ter., 19 de abr. de 2022 às 17:29, Joel Esler via clamav-users > mailto:clamav-users@lists.clamav.net>> > escreveu: > I’m pretty sure there should b

Re: [clamav-users] DoD/IL4/Federal use case

2022-04-19 Thread Joel Esler via clamav-users
I’m pretty sure there should be an internal resource to the DoD to answer this question. > On Apr 19, 2022, at 2:27 PM, Enver Bahar via clamav-users > wrote: > > Hi, > > I tried before but didn't get a response, any directions would be great: > > I read on some forums that ClamAV is

Re: [clamav-users] DoD/IL4/Federal use case

2022-04-13 Thread Joel Esler via clamav-users
https://lists.clamav.net/mailman/listinfo/clamav-users Look for unsubscribe at the bottom. — Sent from my  iPhone > On Apr 13, 2022, at 12:58, Eliya Voldman via clamav-users > wrote: > > Folks, > I unsubscribed my email from this list but still continue to receive email. > Is it my

Re: [clamav-users] Inquiry about ClamAV's usage within sandbox

2022-03-30 Thread Joel Esler via clamav-users
If the purpose of doing all of this is to detect if malware is present, I would do it outside of the sandbox. The point of a sandbox is to let malware execute and NOT stop it. > On Mar 30, 2022, at 11:48 AM, G.W. Haywood via clamav-users > wrote: > > Hi there, > > On Wed, 30 Mar 2022,

Re: [clamav-users] ClamAV 1020 when pulling 104.2.tar.gz

2022-03-16 Thread Joel Esler via clamav-users
Should clear automatically after awhile. — Sent from my  iPhone > On Mar 16, 2022, at 13:09, Schneider, Arthur (A.V.) via clamav-users > wrote: > > Hello, > >Looks like we’re getting a 1020 when our automation is pulling the > 104.2.tar.gz. We’re currently in the process of

Re: [clamav-users] ClamAV 0.105 release candidate

2022-03-16 Thread Joel Esler via clamav-users
On Wed, 16 Mar 2022, Bowie Bailey via clamav-users wrote: >>> On 3/16/2022 10:09 AM, Joel Esler via clamav-users wrote: >>>> On Mar 16, 2022, at 5:35 AM, Gary R. Schmidt wrote: >>>>> On 16/03/2022 20:19, Christoph Moench-Tegeder via clamav-users wrote:

Re: [clamav-users] ClamAV 0.105 release candidate

2022-03-16 Thread Joel Esler via clamav-users
> On Mar 16, 2022, at 11:25 AM, Bowie Bailey via clamav-users > wrote: > > On 3/16/2022 10:09 AM, Joel Esler via clamav-users wrote: >> >>> On Mar 16, 2022, at 5:35 AM, Gary R. Schmidt wrote: >>> >>> On 16/03/2022 20:19, Christoph Moench-Teged

Re: [clamav-users] wget blocks - was Re: ClamAV 0.105 release candidate

2022-03-16 Thread Joel Esler via clamav-users
> On Mar 16, 2022, at 10:55 AM, Andrew C Aitchison > wrote: > > On Wed, 16 Mar 2022, Joel Esler via clamav-users wrote: >>> On Mar 16, 2022, at 5:35 AM, Gary R. Schmidt >> <mailto:grschm...@acm.org>> wrote: >>> >>> On 16/03/2022

Re: [clamav-users] ClamAV 0.105 release candidate

2022-03-16 Thread Joel Esler via clamav-users
> On Mar 16, 2022, at 5:35 AM, Gary R. Schmidt wrote: > > On 16/03/2022 20:19, Christoph Moench-Tegeder via clamav-users wrote: >> ## Joel Esler via clamav-users (clamav-users@lists.clamav.net): >>> Can’t use wget. >> Looks like "can't use anything wh

Re: [clamav-users] ClamAV 0.105 release candidate

2022-03-15 Thread Joel Esler via clamav-users
Can’t use wget. — Sent from my  iPhone > On Mar 14, 2022, at 20:28, Yasuhiro Kimura wrote: > > From: "Micah Snyder \(micasnyd\) via clamav-users" > > Subject: [clamav-users] ClamAV 0.105 release candidate > Date: Mon, 14 Mar 2022 20:14:18 + > >> Read this announcement online at >>

Re: [clamav-users] Virus database not updated since 14th July 2021

2022-03-09 Thread Joel Esler via clamav-users
https://blog.clamav.net/2021/07/psa-freshclam-database-download-issue.html — Sent from my  iPhone > On Mar 9, 2022, at 16:25, clamav.mbou...@spamgourmet.com wrote: > > ReceiveTimeout=30 is probably the one causing you problems. I was bitten by > that when installing ClamAV on an

Re: [clamav-users] Minor bug or working as intended?

2022-02-25 Thread Joel Esler via clamav-users
Pretty sure you can write what you’re trying to look for with an ldb signature anyway. — Sent from my  iPhone > On Feb 24, 2022, at 18:53, G.W. Haywood via clamav-users > wrote: > > Hi there, > >> On Thu, 24 Feb 2022, Kris Deugau wrote: >> >> After chasing docs back and forth and

Re: [clamav-users] Scan log parsing

2022-02-20 Thread Joel Esler via clamav-users
I think the word “FOUND” is used. — Sent from my  iPhone > On Feb 20, 2022, at 20:16, Eliya Voldman via clamav-users > wrote: > >  > > Hello, > I'm completely new to ClamAV > I am setting up ClamAV on one laptop located behind VLAN and I don't have the > option to monitor result. >

Re: [clamav-users] Error 403 downloading virus updates

2022-02-10 Thread Joel Esler via clamav-users
You’ll definitely need to upgrade. I imagine the minimum fLevel for the cvd files will have been moved as well, and if so, won’t work on older installations at all. > On Feb 10, 2022, at 10:55 AM, David Copeland via clamav-users > wrote: > > Hi Paul, > > According to

Re: [clamav-users] Unable to mirror ClamAV database

2022-02-09 Thread Joel Esler via clamav-users
Cvdupdate is where it’s at for what you’re trying to do. Clammirror was one of our problems, and why we had to put a stop to it. — Sent from my  iPhone > On Feb 9, 2022, at 05:08, Roy Cohen via clamav-users > wrote: > > Sorry, I (wringly) assumed clammirror was a clamav provided tool

Re: [clamav-users] help with my system please hybrid os does not update signatures

2022-01-21 Thread Joel Esler via clamav-users
Side comment about the below though: — Sent from my  iPhone > On Jan 21, 2022, at 18:16, G.W. Haywood via clamav-users > wrote: > > Since you're running Linux, and most of the published signatures are > intended to detect threats to Windows and other Microsoft products Only because of the

Re: [clamav-users] Where can I download daily.cvd, bytecode.cvd and main.cvd from?

2022-01-17 Thread Joel Esler via clamav-users
> On Jan 17, 2022, at 2:03 PM, Matus UHLAR - fantomas wrote: > > On 17.01.22 16:30, Nick Howitt via clamav-users wrote: >> I give up. This is like pushing water up hill. There is no sensible way of >> building the packages in one pass which allows me to package the sigs >> automatically. It

Re: [clamav-users] Where can I download daily.cvd, bytecode.cvd and main.cvd from?

2022-01-17 Thread Joel Esler via clamav-users
> On Jan 17, 2022, at 10:17, Maarten Broekman via clamav-users > wrote: > > And, after 7 days, you'll see warning messages about outdated definitions > when clam starts up. And Freshclam and cvdupdate will still download the right files. ___

Re: [clamav-users] Where can I download daily.cvd, bytecode.cvd and main.cvd from?

2022-01-17 Thread Joel Esler via clamav-users
gs in a v0.103.5 rpm for my distro in the same way > as EPEL does. > >> On 17/01/2022 14:17, Joel Esler wrote: >> This is what cvdupdate was designed for. Please use that. >> — >> Sent from my  iPhone >>>> On Jan 17, 2022, at 09:12, Nick Howitt via clamav-us

Re: [clamav-users] Where can I download daily.cvd, bytecode.cvd and main.cvd from?

2022-01-17 Thread Joel Esler via clamav-users
This is what cvdupdate was designed for. Please use that. — Sent from my  iPhone > On Jan 17, 2022, at 09:12, Nick Howitt via clamav-users > wrote: > > Please tell that to EPEL as well. We want to be able to distribute a package > which, in emergency, can be transferred to a standalone

Re: [clamav-users] main.cvd update schedule

2021-12-21 Thread Joel Esler via clamav-users
Correct. It’s about once a quarter. However, if you are using FreshClam or cvdupdate, (as you should be), those tools will download the correct files when the correct files need to be downloaded. > On Dec 21, 2021, at 3:21 PM, Kris Deugau wrote: > > Vu, Hong-Duc V. via clamav-users wrote:

Re: [clamav-users] using older clients to download from internal clam proxy

2021-12-09 Thread Joel Esler (jesler) via clamav-users
100 is end of life. 101 and 102 will be EOL on Jan 3. You need to be on 103 or higher. The rest will be dead in January. — Sent from my  iPhone > On Dec 9, 2021, at 15:25, novpenguincne via clamav-users > wrote: > > Thanks for the feedback and advice. I understand what you are

[clamav-users] ClamAV Community, it's been an honor!

2021-12-06 Thread Joel Esler via clamav-users
, but will remain on the mailing lists with my personal email address (this one) and I will continue to help out where needed. Working with you all has been fantastic over the years, and I wish you all continued success. -- Joel Esler Open Source & Strategy, Cisco Talos Intelligence G

Re: [clamav-users] using older clients to download from internal clam proxy

2021-12-02 Thread Joel Esler via clamav-users
il. > > ‐‐‐ Original Message ‐‐‐ > > On Thursday, December 2nd, 2021 at 12:14 PM, Joel Esler (jesler) > wrote: > >> The oldest version that is currently supported is the 0.101.x line, but that >> will be EOL in January. So I would recommend 0.103.x or hig

Re: [clamav-users] using older clients to download from internal clam proxy

2021-12-02 Thread Joel Esler (jesler) via clamav-users
enough to accept the new definition files but still old enough to > install on a SystemV-based o/s? > > James > > Sent with ProtonMail Secure Email. > > ‐‐‐ Original Message ‐‐‐ > >> On Thursday, December 2nd, 2021 at 10:49 AM, Joel Esler (jesler) >>

Re: [clamav-users] using older clients to download from internal clam proxy

2021-12-02 Thread Joel Esler (jesler) via clamav-users
James, Thanks for your email. ClamAV definitions won’t even work on those older versions anymore. The Flevel for the main.cvd and daily.cvd are now set higher than that, so those systems shouldn’t be able to load the newer definitions. — Sent from my  iPad > On Dec 2, 2021, at 11:08,

Re: [clamav-users] ClamAV detects XMR-Stak as malicious. Is this a false positive?

2021-11-19 Thread Joel Esler (jesler) via clamav-users
Al is right. If you don’t want to detect it ignore it. Using the ignore functions. — Sent from my  iPad On Nov 19, 2021, at 03:49, Al Varnell via clamav-users wrote:  I suspect that it's because there are several instances of malicious software that install xmr-stak unknowingly to the

Re: [clamav-users] Nonsensical noreplies from ClamAV team

2021-11-18 Thread Joel Esler (jesler) via clamav-users
We’re looking into this. — Sent from my  iPhone On Nov 18, 2021, at 14:56, Maarten Broekman via clamav-users wrote:  "If you provided a description that suggests otherwise..." is a past tense conditional referring to the form submission. That phrase is the equivalent to this longer "If

Re: [clamav-users] "403: Forbidden" from website

2021-11-18 Thread Joel Esler (jesler) via clamav-users
: I’m not sure what the file is. The URL in which I’m interested is http://www.clamav.net/downloads/. I tried to add index.html to the URL but that didn’t work but when wget retrieves just http://www.clamav.net/downloads/, the filename it uses is index.html. From: Joel Esler (jesler) mailto:jes...@cis

Re: [clamav-users] "403: Forbidden" from website

2021-11-18 Thread Joel Esler (jesler) via clamav-users
What files are you attempting to download? On Nov 18, 2021, at 09:33, John Pfuntner -X (jpfuntne - EASI LLC at Cisco) via clamav-users mailto:clamav-users@lists.clamav.net>> wrote: I’m seeing errors trying to access the website programmatically: $ wget http://www.clamav.net/downloads URL

Re: [clamav-users] clamav DOA

2021-11-18 Thread Joel Esler (jesler) via clamav-users
101 should be fine. Try deleting your mirrors.dat file and see what happens? — Sent from my  iPad > On Nov 18, 2021, at 07:32, Cody Allen wrote: > >  its prepackaged on a mailcleaner appliance, not using any standard > locations for the binaries or configs and no updates available from

Re: [clamav-users] Fail to download source archive with 403 forbitten

2021-11-17 Thread Joel Esler (jesler) via clamav-users
It has been fixed. — Sent from my  iPad > On Nov 17, 2021, at 14:36, Paul Kosinski via clamav-users > wrote: > > On Mon, 15 Nov 2021 13:23:49 +0000 > "Joel Esler \(jesler\) via clamav-users" > wrote: > >> On Nov 14, 2021, at 19:11, Yasuhiro Kimur

Re: [clamav-users] Fail to download source archive with 403 forbitten

2021-11-15 Thread Joel Esler (jesler) via clamav-users
As a follow up to this thread, this has been fixed. — Sent from my  iPad > On Nov 15, 2021, at 10:09, Yasuhiro Kimura wrote: > > From: "Joel Esler (jesler)" > Subject: Re: [clamav-users] Fail to download source archive with 403 forbitten > Date: Mon, 15 Nov 2021 1

Re: [clamav-users] Fail to download source archive with 403 forbitten

2021-11-15 Thread Joel Esler (jesler) via clamav-users
On Nov 15, 2021, at 09:30, Joel Esler (jesler) via clamav-users mailto:clamav-users@lists.clamav.net>> wrote: On Nov 15, 2021, at 08:39, Yasuhiro Kimura mailto:y...@utahime.org>> wrote: From: "Joel Esler \(jesler\) via clamav-users" mailto:clamav-users@lists.cl

Re: [clamav-users] Fail to download source archive with 403 forbitten

2021-11-15 Thread Joel Esler (jesler) via clamav-users
On Nov 15, 2021, at 08:39, Yasuhiro Kimura mailto:y...@utahime.org>> wrote: From: "Joel Esler \(jesler\) via clamav-users" mailto:clamav-users@lists.clamav.net>> Subject: Re: [clamav-users] Fail to download source archive with 403 forbitten Date: Mon, 15 Nov 2021 13:23:4

Re: [clamav-users] Fail to download source archive with 403 forbitten

2021-11-15 Thread Joel Esler (jesler) via clamav-users
er two years. -- Joel Esler Strategy, Cisco Talos Intelligence Group ___ clamav-users mailing list clamav-users@lists.clamav.net https://lists.clamav.net/mailman/listinfo/clamav-users Help us build a comprehensive ClamAV guide: https://github.com/vr

Re: [clamav-users] stuck at "Starting Clam AntiVirus Daemon" when rebooting.

2021-11-14 Thread Joel Esler (jesler) via clamav-users
Windows 7 and newer includes windows 7. Also, is your problem separate from the original post about CentOS? If so, please start a new thread, don’t hijack someone else’s. — Sent from my  iPad > On Nov 14, 2021, at 18:03, RW Jones via clamav-users > wrote: > >  > I'm on a Win-DOS 10 box

Re: [clamav-users] Advertising Options / Sponsored Content Options on clamav.net

2021-11-12 Thread Joel Esler (jesler) via clamav-users
No. — Sent from my  iPad > On Nov 11, 2021, at 09:31, Doug Whittemore wrote: > >  > Hi, > > Just wanted to follow up on my advertising request? > > We’re interested in publishing content on your website, and I am keen to get > pricing/options etc. > > Please revert back with prices to

[clamav-users] ClamAV® blog: ClamAV 0.103.4 and 0.104.1 patch releases

2021-11-03 Thread Joel Esler (jesler) via clamav-users
https://blog.clamav.net/2021/11/clamav-01034-and-01041-patch-releases.html ClamAV 0.103.4 and 0.104.1 patch releases ClamAV 0.103.4 LTS and 0.104.1 patch versions are out now. Both of these can be found on clamav.net/downloads, with 0.104.1 as the main release

Re: [clamav-users] Missing Mac OS .pkg installer

2021-10-29 Thread Joel Esler (jesler) via clamav-users
https://www.clamav.net/downloads Scroll down to “alternate versions of ClamAV” and click on macOS. — Sent from my  iPhone On Oct 28, 2021, at 13:40, Vaughn A. Hart wrote:  Hi Team Clamav, In your documentsation you state that there is a pkg installer for Mac OS that supports Intel and M1

Re: [clamav-users] Clam updates failing

2021-10-23 Thread Joel Esler (jesler) via clamav-users
> On Oct 23, 2021, at 11:49, Paul Kosinski wrote: > > On Fri, 22 Oct 2021 18:47:01 +0000 > "Joel Esler (jesler)" wrote: > >>>> On Oct 22, 2021, at 14:16, Paul Kosinski via clamav-users >>>> wrote: >>> >>> On Fri, 22

Re: [clamav-users] Clam updates failing

2021-10-22 Thread Joel Esler (jesler) via clamav-users
> On Oct 22, 2021, at 14:16, Paul Kosinski via clamav-users > wrote: > > On Fri, 22 Oct 2021 13:27:46 +0000 > "Joel Esler \(jesler\) via clamav-users" > wrote: > >>> On Oct 21, 2021, at 18:55, Kenneth Porter wrote: >>> >>> On

Re: [clamav-users] Clam updates failing

2021-10-22 Thread Joel Esler (jesler) via clamav-users
> On Oct 21, 2021, at 18:55, Kenneth Porter wrote: > > On 10/21/2021 10:14 AM, Paul Kosinski via clamav-users wrote: >> I've never seen a DNS age warning, but that might be because, for several >> years now, I only run freshclam when the DNS TXT record (which I check >> hourly) says there

Re: [clamav-users] Rate limit for signature

2021-10-07 Thread Joel Esler (jesler) via clamav-users
Mike I am the correct person. Updating requires the use of either cvdupdate (for distribution to internal systems) or FreshClam. Versions 0.103.3 or higher. — Sent from my  iPad > On Oct 5, 2021, at 20:49, Mike JJ Chen wrote: > >  > Hello Team, > > Could you help suggest appropriate

Re: [clamav-users] Rate limited

2021-10-05 Thread Joel Esler (jesler) via clamav-users
update to download definitions. -- Joel Esler Strategy, Cisco Talos Intelligence Group ___ clamav-users mailing list clamav-users@lists.clamav.net https://lists.clamav.net/mailman/listinfo/clamav-users Help us build a comprehensive ClamAV guide: https://gith

Re: [clamav-users] ClamAV is not respecting Phishing* settings.

2021-09-22 Thread Joel Esler (jesler) via clamav-users
I am sure someone will respond about your particular issue, but are you saying they are false positives? — Sent from my  iPhone > On Sep 22, 2021, at 22:04, Jim Popovitch via clamav-users > wrote: > > ClamAV is not respecting Phishing* settings. > > clamd.conf: > ... >

Re: [clamav-users] QNAP Antivirus Updates

2021-09-21 Thread Joel Esler (jesler) via clamav-users
And… there’s your answer. Thank you all! I think this thread is dead. > On Sep 21, 2021, at 2:42 PM, Liston, Daniel (DLISTON) via clamav-users > wrote: > > I have already forgotten the point, but I did do some DNS > queries from our datacenters in LON, TYO, and NYC. All > reported the

Re: [clamav-users] QNAP Antivirus Updates

2021-09-21 Thread Joel Esler (jesler) via clamav-users
Cool  — Sent from my  iPhone > On Sep 20, 2021, at 20:17, Paul Kosinski wrote: > > On Mon, 20 Sep 2021 17:17:34 +0000 > "Joel Esler (jesler)" wrote: > >>>> On Sep 20, 2021, at 13:08, Paul Kosinski via clamav-users >>>> wrote: >&

Re: [clamav-users] QNAP Antivirus Updates

2021-09-20 Thread Joel Esler (jesler) via clamav-users
> On Sep 20, 2021, at 13:08, Paul Kosinski via clamav-users > wrote: > > These two IPs are Anycast addresses, and have been unchanged for well over 2 > years. (Anycast addresses don't have to change even if the physical servers > change, that's their point!) They are: > > 104.16.218.84 >

Re: [clamav-users] Virus DB updates?

2021-09-19 Thread Joel Esler (jesler) via clamav-users
Following up, looks like this has been fixed. A new daily should ship tonight. — Sent from my  iPhone > On Sep 19, 2021, at 17:31, G.W. Haywood via clamav-users > wrote: > > Hi there, > >> On Sun, 19 Sep 2021, Paul Kosinski via clamav-users wrote: >> >> I haven't seen any virus

Re: [clamav-users] Virus DB updates?

2021-09-19 Thread Joel Esler (jesler) via clamav-users
A new main was built that day and pushed. The daily may not have been re-enabled. I’ll double check. — Sent from my  iPhone > On Sep 19, 2021, at 17:31, G.W. Haywood via clamav-users > wrote: > > Hi there, > >> On Sun, 19 Sep 2021, Paul Kosinski via clamav-users wrote: >> >> I

Re: [clamav-users] IP List for Virus Definition Domain

2021-09-15 Thread Joel Esler (jesler) via clamav-users
It’s dynamic baed on your location in the world. Do a dns lookup for database.clamav.net from your location and you should get your answer. > On Sep 15, 2021, at 12:52 PM, James Freeman wrote: > > ALCON, > > Is there a list of IPs that the ClamAV domain used to

Re: [clamav-users] error code 429

2021-09-05 Thread Joel Esler (jesler) via clamav-users
Now? — Sent from my  iPad > On Sep 5, 2021, at 12:51, Paul Kosinski wrote: > > On Sun, 5 Sep 2021 02:45:25 +0000 > "Joel Esler \(jesler\) via clamav-users" > wrote: > >> We are experimenting with a feature that we’ve been working with Cloudflare

Re: [clamav-users] Clamav download problems

2021-09-05 Thread Joel Esler (jesler) via clamav-users
is up-to-date (version: 333, sigs: 92, f-level: 63, > builde > r: awillia2) > > Regards Paul > >> On 05/09/2021 16:08, Joel Esler (jesler) via clamav-users wrote: >> This is useful. Thank you. >> >> Each host should have a different rate limit under the new system

Re: [clamav-users] error code 429

2021-09-05 Thread Joel Esler (jesler) via clamav-users
l. > > I'm not complaining - you've clearly had a lot of problems with the CDN being > abused (intentionally or otherwise) and need to try these things. Just trying > to give you whatever information might be useful :) > > Thanks, > Mark. > > > Joel Esler jesle

Re: [clamav-users] error code 429

2021-09-05 Thread Joel Esler (jesler) via clamav-users
problems that we’ll encounter during this transition. — Sent from my  iPhone > On Sep 5, 2021, at 09:09, clamav.mbou...@spamgourmet.com wrote: > > Joel Esler clamav-users@lists.clamav.net wrote: >> We are experimenting with a feature that we’ve been working with Cloudflare

Re: [clamav-users] error code 429

2021-09-04 Thread Joel Esler (jesler) via clamav-users
We are experimenting with a feature that we’ve been working with Cloudflare on, trying to isolate violators on a per host basis for the newest versions of ClamAV, instead of IP. — Sent from my  iPhone > On Sep 4, 2021, at 18:52, Jim Popovitch via clamav-users > wrote: > > On Sat,

[clamav-users] ClamAV® blog: Changes to ClamAV end-of-life policy and a new Long Term Support policy

2021-09-03 Thread Joel Esler (jesler) via clamav-users
> > https://blog.clamav.net/2021/09/changes-to-clamav-end-of-life-policy.html > > > Changes to ClamAV end-of-life policy and a new Long Term Support policy > > Today, we're announcing changes to the ClamAV End-of-Life

[clamav-users] ClamAV® blog: ClamAV 0.104.0 released

2021-09-03 Thread Joel Esler (jesler) via clamav-users
> > https://blog.clamav.net/2021/09/clamav-01040-released.html > > > ClamAV 0.104.0 released > > ClamAV 0.104.0 is available as an official release as of today. > > We are also announcing a new Long Term Support (LTS) program today

Re: [clamav-users] Please unsubscribe me from all emails

2021-08-31 Thread Joel Esler (jesler) via clamav-users
Thank you for writing in. Go to this URL to change user options or unsubscribe: https://lists.ClamAV.net/mailman/listinfo/ClamAV-users or by sending an email to clamav-users-le...@lists.clamav.net Thanks! > On Aug 31, 2021, at 10:17 AM, Cândido Sales Gomes via clamav-users > wrote: > > Hi,

Re: [clamav-users] Authenticity token element not found

2021-08-25 Thread Joel Esler (jesler) via clamav-users
I think this was fixed in 103.3 — Sent from my  iPhone > On Aug 25, 2021, at 04:26, Philipp Ewald wrote: > >  >> > clamsubmit -e "philipp.ewald[at]digionline.de" -n > "29668235ea685b3e84309b9585dc71e7" -N "DigiOnline" > > Authenticity token element not found. > > This is my

Re: [clamav-users] ClamAV® blog: ClamAV 0.104.0 Second Release Candidate is here!

2021-08-22 Thread Joel Esler (jesler) via clamav-users
I could worry about the .0001% of the time* — Sent from my  iPhone > On Aug 22, 2021, at 13:48, Joel Esler (jesler) wrote: > > I could work about the .0001% or the time that github is inaccessible in > a given time, or I could save maintaining the docs i

Re: [clamav-users] ClamAV® blog: ClamAV 0.104.0 Second Release Candidate is here!

2021-08-22 Thread Joel Esler (jesler) via clamav-users
22 Aug 2021, Arjen de Korte via clamav-users wrote: >> Citeren "G.W. Haywood via clamav-users" : >>> On Sun, 22 Aug 2021, Joel Esler (jesler) via clamav-users wrote: >>>> I’m a fan of the thought of removing the user manual completely from >>>> the d

Re: [clamav-users] ClamAV® blog: ClamAV 0.104.0 Second Release Candidate is here!

2021-08-22 Thread Joel Esler (jesler) via clamav-users
I’m a fan of the thought of removing the user manual completely from the downloaded packages and including a link to docs.ClamAV.net. Since that’s more dynamic. — Sent from my  iPhone > On Aug 22, 2021, at 04:22, G.W. Haywood via clamav-users > wrote: > > Hi there, > >> On Sun, 22

[clamav-users] ClamAV® blog: ClamAV 0.104.0 Second Release Candidate is here!

2021-08-19 Thread Joel Esler (jesler) via clamav-users
https://blog.clamav.net/2021/08/clamav-01040-second-release-candidate.html ClamAV 0.104.0 Second Release Candidate is here! Today we are publishing a second release candidate for 0.104.0. Please help us verify that

Re: [clamav-users] database updates blocked

2021-08-17 Thread Joel Esler (jesler) via clamav-users
t; 13:26:24.653 5 EXTFILTER(CGPClamAV) inp(104): * WARNING: Download failed >> (77) * WARNING: Message: Problem with the SSL CA cert (path? access rights?) >> >> 13:26:24.653 5 EXTFILTER(CGPClamAV) inp(078): * WARNING: Can't download >> daily.cvd from https://database.clamav.ne

Re: [clamav-users] database updates blocked

2021-08-17 Thread Joel Esler (jesler) via clamav-users
Curl is not authorized to be used to download updates. Please use Freshclam or cvdupdate to download updates. — Sent from my  iPhone On Aug 17, 2021, at 08:33, Jona Tallieu wrote:  Dear all, Since a few days, our database updates are blocked: HTTP 403 (forbidden) > Cloudflare Error 1020:

Re: [clamav-users] Local web server

2021-08-12 Thread Joel Esler (jesler) via clamav-users
What’s the question? Can you use ClamAV in a commercial environment? Sure. As long as you adhere to the GPLv2, you’re good to go. But yes, Ged is right, if you have more than say, two or three hosts behind a NAT address? Set up a private mirror. > On Aug 12, 2021, at 2:15 PM, Johnson,

  1   2   3   4   5   6   7   8   9   10   >