Re: [clamav-users] Latest report on update "delays"

2018-10-23 Thread Dave Warren
On Tue, Oct 23, 2018, at 11:50, Paul Kosinski wrote: > "...it works smoothly for a very large number of people, myself > included." > > It would be interesting to know what percentage have experienced our > original problem of all mirrors ending up blacklisted. I also wonder > how many ClamAV

Re: [clamav-users] MBL_17713260 false positive!

2018-10-23 Thread Alex
Hi, Thought I'd follow up with the response from Malwarepatrol: "The classification of a sample hosted on that domain, according to MBL# 17713260 (MD5: 88a1265b2f954a1fb06b6a67f198645e9617007e), is backed by 12 anti-virus products. Therefore, this is not a false positive. There is no reason to

Re: [clamav-users] Mac: clamAV vs. Mojave

2018-10-23 Thread Michael Newman
Eric Tykwinski wrote: > Well definitely a permissions issue, my guess is that you used a binary > installation. > Make sure the user that’s running freshclam has permissions to write to > /private/var/log/freshclam.log Yes, I used a binary installation. I’ve never figured out how to use Brew.

[clamav-users] MBL_17713260 false positive!

2018-10-23 Thread Alex
Another malwarepatrol fp for docs.google.com # sigtool --find-sigs MBL_17713260 |sigtool --decode-sigs VIRUS NAME: MBL_17713260 TARGET TYPE: ANY FILE OFFSET: * DECODED SIGNATURE: https://docs.google.com I don't even know what to do anymore. Is it worth it to keep malwarepatrol? Also, my

Re: [clamav-users] Mac: clamAV vs. Mojave

2018-10-23 Thread Eric Tykwinski
Well definitely a permissions issue, my guess is that you used a binary installation. Make sure the user that’s running freshclam has permissions to write to /private/var/log/freshclam.log Personally, I usually just use Homebrew, https://brew.sh/ That will copy it to

[clamav-users] Mac: clamAV vs. Mojave

2018-10-23 Thread Michael Newman
After installing Mojave I’ve run into two problems: ERROR: Can't open /private/var/log/freshclam.log in append mode (check permissions!). ERROR: Problem with internal logger (UpdateLogFile = /private/var/log/freshclam.log). What should the ownership and permission be for the log file and the

[clamav-users] Secure download/verification of clamav database?

2018-10-23 Thread Luke Massa
Hello all, I have looked through the documentation and the source code, and there doesn’t seem to be a way to download the clamav database in a secure way (i.e. with https), is that the case? Furthermore, I don’t see any mechanism by which the clamav database is verified against a known

Re: [clamav-users] Latest report on update "delays"

2018-10-23 Thread Paul Kosinski
"...it works smoothly for a very large number of people, myself included." It would be interesting to know what percentage have experienced our original problem of all mirrors ending up blacklisted. I also wonder how many ClamAV users monitor their logs: I don't remember ClamAV *actively*

Re: [clamav-users] Latest report on update "delays"

2018-10-23 Thread Joel Esler (jesler)
We are aware that fresh clam is part of the issue. We are going to introduce some new code to freshclam (and have in the past two releases, IIRC) to prevent stuff like this happening. More updates to freshclam will come in future versions as well. That being said, it's important to realize