Re: [clamav-users] The antivirus signatures are outdated

2022-05-10 Thread gene heskett via clamav-users
Perhaps you are missing the point 30 minutes can be too old. > Thanks, > Moises Cheers, Gene Heskett. -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author, 1940) If we desire respec

Re: [clamav-users] Is 1.0.4 now ready?

2021-08-05 Thread Gene Heskett via clamav-users
On Thursday 05 August 2021 11:27:47 G.W. Haywood via clamav-users wrote: > Hi Gene, > > On Thu, 5 Aug 2021, Gene Heskett via clamav-users wrote: > > Is this new version now ready for prime time build/installation on > > common hardware used for linux? > > As far as

[clamav-users] Is 1.0.4 now ready?

2021-08-05 Thread Gene Heskett via clamav-users
Greetings; Is this new version now ready for prime time build/installation on common hardware used for linux? If so, how about a URL to get the tarball? Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-30 Thread Gene Heskett via clamav-users
On Friday 30 July 2021 03:32:44 Arjen de Korte via clamav-users wrote: > Citeren Gene Heskett via clamav-users : > > Well, I've screwed around with this for 3 days now, that's long > > enough. > > > > First gotcha for debian people is cmake is not instal

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-29 Thread Gene Heskett via clamav-users
On Thursday 29 July 2021 18:38:52 Rick Cooper wrote: > Gene Heskett via clamav-users wrote: > > On Thursday 29 July 2021 12:28:21 Rick Cooper wrote: > >> Gene Heskett via clamav-users wrote: > >>> On Thursday 29 July 2021 06:33:02 Rick Cooper wrote: > >>>

Re: [clamav-users] [OT] ClamAV® blog: ClamAV 0.104.0 Release Candidate is here!

2021-07-29 Thread Gene Heskett via clamav-users
re sometimes. In > summer they're often operating in the 70s without any trouble. We fit > the CPUs with heat sinks, but no fan. > > You might be able to run a local ClamAV mirror with only a Pi 3B+ with > its roughly 850M available RAM - I'll give that a try someday. Cheers, Ge

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-29 Thread Gene Heskett via clamav-users
On Thursday 29 July 2021 12:28:21 Rick Cooper wrote: > Gene Heskett via clamav-users wrote: > > On Thursday 29 July 2021 06:33:02 Rick Cooper wrote: > >> Had the same problem, install the check package. It's a unit test > >> framework. > > > > Did that,

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-29 Thread Gene Heskett via clamav-users
On Thursday 29 July 2021 06:44:28 G.W. Haywood via clamav-users wrote: > Hi Gene, > > On Thu, 29 Jul 2021, Gene Heskett via clamav-users wrote: > > On Thursday 29 July 2021 03:52:57 G.W. Haywood via clamav-users > > wrote: > > > > I am getting setup to

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-29 Thread Gene Heskett via clamav-users
ything including procmail seems to be happy. except its still running 1.0.2.whatever Did it not update the /etc/init.d files? Looks like they weren't touched. WTH? Hells bells, it didn't even make them! Go read the install.md again. Cheers, Gene Heskett -- "There are four boxes to be used

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-29 Thread Gene Heskett via clamav-users
On Thursday 29 July 2021 03:52:57 G.W. Haywood via clamav-users wrote: > Hi Gene, > > On Wed, 28 Jul 2021, Gene Heskett via clamav-users wrote: > > On Wednesday 28 July 2021 14:24:46 G.W. Haywood via clamav-users wrote: > >> On Wed, 28 Jul 2021, Gene Heskett via clamav-use

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-28 Thread Gene Heskett via clamav-users
On Wednesday 28 July 2021 14:24:46 G.W. Haywood via clamav-users wrote: > Hi Gene, > > On Wed, 28 Jul 2021, Gene Heskett via clamav-users wrote: > > /usr/bin/ld: cannot find -lpthreads > > > > But pthread is installed. "sudo ldconfg -v|grep pthread" comes bac

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-28 Thread Gene Heskett via clamav-users
On Wednesday 28 July 2021 12:24:32 G.W. Haywood via clamav-users wrote: > Hi there, > > On Wed, 28 Jul 2021, Gene Heskett via clamav-users wrote: > > On Wednesday 28 July 2021 07:06:08 G.W. Haywood via clamav-users wrote: > >> $ cd ~ > >> $ rm -rf clamav-0.104.0-

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-28 Thread Gene Heskett via clamav-users
On Wednesday 28 July 2021 07:06:08 G.W. Haywood via clamav-users wrote: > Hi Gene, > > On Wed, 28 Jul 2021, Gene Heskett via clamav-users wrote: > > The next instruction line from INSTALL.md is: > > > > cmake .. -D CMAKE_BUILD_TYPE="Release" > > >

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-28 Thread Gene Heskett via clamav-users
On Wednesday 28 July 2021 03:52:27 Andrew C Aitchison wrote: > On Wed, 28 Jul 2021, Gene Heskett via clamav-users wrote: > > cmake --version RETURN says: > > cmake version 3.7.2 > > Ah. INSTALL.md says: > ### Build requirements > - CMake 3.16 for Windows, an

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-27 Thread Gene Heskett via clamav-users
into it.. Seems to me the instructions should Just Work, but its not working, so what is missing? I haven't a clue what else I can copy/paste from that shells window that might be helpfull. Better yet, remake the tarball with working instructions. Thanks. Cheers, Gene Heskett -- "There are fo

Re: [clamav-users] can't cmake 1.0.4rc

2021-07-27 Thread Gene Heskett via clamav-users
On Tuesday 27 July 2021 13:33:07 Frans de Boer wrote: > On 7/27/21 6:31 PM, Gene Heskett via clamav-users wrote: > > Greetings; > > > > unpack freshly downloaded tarball, 1st step from INSTALL.md is > > mkdir build && cd build .. no prob > > > >

[clamav-users] can't cmake 1.0.4rc

2021-07-27 Thread Gene Heskett via clamav-users
Error: The source directory "/home/gene/src/clamav-0.104.0-rc/build/CMAKE_BUILD_TYPE=Release" does not exist. Specify --help for usage, or press the help button on the CMake GUI. That build directory does exist, but if I was supposed to move or rename a file, IDK. That FILE does not exis

[clamav-users] How do I get the last update to 103-3 installed on stretch?

2021-07-06 Thread Gene Heskett via clamav-users
I would think that by now, freshclam could see to this itself. Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) If we desire respect for the law, we must first ma

Re: [clamav-users] looks like I have a problem too

2021-03-16 Thread Gene Heskett via clamav-users
all capable of hitting that printer, and they all have to reestablish connections, the log is busier than that famous cat on the equally famous tin roof. Many thanks for the reply Micah. Take care and stay safe and well. Cheers, Gene Heskett -- "There are four boxes to be used in def

Re: [clamav-users] looks like I have a problem too

2021-03-10 Thread Gene Heskett via clamav-users
On Wednesday 10 March 2021 12:25:18 Gene Heskett via clamav-users wrote: > Greetings; > > I just reduced my freshclam fetch from 24 to 6 times a day. But I do > see some errors when it does try to update: > copy/paste, wordwrap off: > from freshclam.log: > > Wed Mar 10 0

[clamav-users] looks like I have a problem too

2021-03-10 Thread Gene Heskett via clamav-users
obviously something is aglay with my config which I haven't touched since debian stretch was installed. But it has been kept uptodate at least weekly. synaptic says I have version 102-4. What should I fix? Thanks folks. Cheers, Gene Heskett -- "There are four boxes to be used in defense

Re: [clamav-users] Unable to download clamav cvd file using google cloud python function

2021-03-10 Thread Gene Heskett via clamav-users
t it here. [...] Take care and stay well, Al. BTW, your posts are one of two folks at cisco I get from about 70 lists that turn the "Signed by" checker green in kmail from TDE. Not kde, but TDE. Congratulations for doing it right. Cheers, Gene Heskett -- "There are four boxes to be us

Re: [clamav-users] Freshclam network unreachable

2021-03-09 Thread Gene Heskett via clamav-users
list > > clamav-users@lists.clamav.net > > https://lists.clamav.net/mailman/listinfo/clamav-users > > > > > > Help us build a comprehensive ClamAV guide: > > https://github.com/vrtadmin/clamav-faq > > > > http://www.clamav.net/contact.html#ml > > _____

Re: [clamav-users] clamscan vs clamdscan

2020-05-11 Thread Gene Heskett via clamav-users
ountries, and some other > things that I don't want to talk about in public. If a firewalled IP > tries to send mail it will get a "connection refused". The Internet > is infested by criminals, many of whom are sponsored by governments > and have vastly greater resources than we do,

Re: [clamav-users] Why virus definition DB download url is not https?

2019-12-12 Thread Gene Heskett via clamav-users
Surprises aren't always funny. Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) If we desire respect for the law, we must first make the law respectable. - Louis D. Brandeis G

Re: [clamav-users] Fwd: Fwd: freshclam incremental update

2019-09-03 Thread Gene Heskett via clamav-users
remains in the outgoing trash forthwith and replace it with something you can reflash to dd-wrt. Nothing comes in thru dd-wrt that you don't specifically allow, and has stood guard here for nearly 20 years now. Unlike guard dogs, it never sleeps. > I repeat that I sugggest you upgrade Clam

Re: [clamav-users] Why is clam config so different for centos 6 and centos 7

2019-06-11 Thread Gene Heskett via clamav-users
uitable answers as the clamav folks might not be aware of it, yet. Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.net:6309/gene>

Re: [clamav-users] Using clamav to test for bad links in incoming emails

2019-02-10 Thread Gene Heskett
On Sunday 10 February 2019 13:08:59 G.W. Haywood wrote: > Hello again, > > On Sun, 10 Feb 2019, Gene Heskett wrote: > > most of what gets my attention comes from local to the US servers > > Well the USA _is_ the world's number one spam source. :( > > > , like earth

Re: [clamav-users] Using clamav to test for bad links in incoming emails

2019-02-09 Thread Gene Heskett
On Saturday 09 February 2019 12:47:11 G.W. Haywood wrote: > Hi there, > > On Sat, 9 Feb 2019, Gene Heskett wrote: > > Has anyone rigged clamd to check what looks like questionable links > > contained in incoming emails? It seems over the last 2 weeks my spam > >

Re: [clamav-users] Using clamav to test for bad links in incoming emails

2019-02-09 Thread Gene Heskett
ventually get smart, it hasn't yet. But I have a cron job that feeds that stuff to sa-learn every night, but that takes weeks to register in that database. You folks seem to be more actively trying to do something about it. Cheers, Gene Heskett -- "There are four boxes to be used i

[clamav-users] Using clamav to test for bad links in incoming emails

2019-02-08 Thread Gene Heskett
it? Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.net:6309/gene> ___ clamav-users mai

Re: [clamav-users] No good deed goes unpunished, or, why CVD files don't work

2018-12-15 Thread Gene Heskett
.. So by that math (I'm still drinking > my coffee this morning, so I could be wildly wrong)... You would need > to have over 3,333 machines to be saving any bandwidth... -- Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, ju

Re: [clamav-users] ClamAV mirrors have gotten worse!

2018-11-23 Thread Gene Heskett
> clamav-users mailing list > clamav-users@lists.clamav.net > http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > > > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav.net/contact.html#ml -- Cheers,

Re: [clamav-users] I have no idea if my emails are getting through.

2018-07-24 Thread Gene Heskett
ui > >> "ClamTK" and it's great, I don't know why that didn't become > >> popular, update button- scan where you want, all the features.) > >> > >> What I'm asking is embarrassingly silly, but I need you to explain > >> this to me as if I was just

Re: [clamav-users] lost the thread, but my ipv6 noise in the freshclam log has vanished

2018-07-03 Thread Gene Heskett
:59 2018 -> bytecode.cld is up to date (version: 322, sigs: 90, f-level: 63, builder: neo) Tue Jul 3 06:51:05 2018 -> Database updated (6568388 signatures) from db.us.clamav.net (IP: 104.16.187.138) Tue Jul 3 06:51:05 2018 -> Clamd successfully notified about the update.

[clamav-users] lost the thread, but my ipv6 noise in the freshclam log has vanished

2018-07-03 Thread Gene Heskett
-- Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.net:6309/gene> ___ clamav-us

Re: [clamav-users] update report

2018-07-02 Thread Gene Heskett
On Monday 02 July 2018 13:23:24 Reindl Harald wrote: > Am 02.07.2018 um 19:20 schrieb Gene Heskett: > >> And since that stuff did exist in my /etc/hosts file, I just stuck > >> a # in front of all those, just for S of course. Watching log > >> too. But its seems

Re: [clamav-users] update report

2018-07-02 Thread Gene Heskett
On Monday 02 July 2018 13:12:12 Gene Heskett wrote: > On Sunday 01 July 2018 07:05:52 Reindl Harald wrote: > > Am 01.07.2018 um 08:17 schrieb Gary R. Schmidt: > > > On 01/07/2018 10:22, Gene Heskett wrote: > > >> I'm still logging this about every other freshclam ru

Re: [clamav-users] update report

2018-07-02 Thread Gene Heskett
On Sunday 01 July 2018 07:05:52 Reindl Harald wrote: > Am 01.07.2018 um 08:17 schrieb Gary R. Schmidt: > > On 01/07/2018 10:22, Gene Heskett wrote: > >> I'm still logging this about every other freshclam run: > >> > >> Sat Jun 30 18:49:53 2018 -> nonblock_

Re: [clamav-users] update report

2018-07-01 Thread Gene Heskett
On Sunday 01 July 2018 10:20:59 Gary R. Schmidt wrote: > On 01/07/2018 23:00, Gene Heskett wrote: > > On Sunday 01 July 2018 08:22:03 Gary R. Schmidt wrote: > > [SNIP] > > >> Now, testing for IPv6 connectivity might turn a temporary failure > >> int

Re: [clamav-users] update report

2018-07-01 Thread Gene Heskett
On Sunday 01 July 2018 08:22:03 Gary R. Schmidt wrote: > On 01/07/2018 21:05, Reindl Harald wrote: > > Am 01.07.2018 um 08:17 schrieb Gary R. Schmidt: > >> On 01/07/2018 10:22, Gene Heskett wrote: > >>> I'm still logging this about every other freshclam run: > &

Re: [clamav-users] update report

2018-07-01 Thread Gene Heskett
On Sunday 01 July 2018 02:17:41 Gary R. Schmidt wrote: > On 01/07/2018 10:22, Gene Heskett wrote: > > I'm still logging this about every other freshclam run: > > > > Sat Jun 30 18:49:53 2018 -> nonblock_connect: connect(): fd=4 > > errno=101: Network is unreachabl

Re: [clamav-users] update report

2018-06-30 Thread Gene Heskett
On Saturday 30 June 2018 20:30:57 Joel Esler (jesler) wrote: > Interesting. Can you give us a -debug? > Is this something I can put in the crontab, Joel? How? > Sent from my iPhone > > > On Jun 30, 2018, at 20:22, Gene Heskett > > wrote: > > > > I'm

[clamav-users] update report

2018-06-30 Thread Gene Heskett
rs.dat several times. -- Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.net:6309/gene> __

Re: [clamav-users] off topic Re: clamav list spf problem

2018-06-22 Thread Gene Heskett
On Saturday 23 June 2018 00:56:41 Andrew McGlashan wrote: > On 23/06/18 00:37, Gene Heskett wrote: > > On Friday 22 June 2018 06:15:42 Reindl Harald wrote: > >> Am 22.06.2018 um 05:36 schrieb Gene Heskett: > >>> I get what I would call minimum spam, just enough to

[clamav-users] off topic Re: clamav list spf problem

2018-06-22 Thread Gene Heskett
On Friday 22 June 2018 06:15:42 Reindl Harald wrote: > Am 22.06.2018 um 05:36 schrieb Gene Heskett: > > I get what I would call minimum spam, just enough to train SA with. > > A bad day is 10. When I was using my old account at the tv station, > > several years ago, the spa

Re: [clamav-users] clamav list spf problem

2018-06-22 Thread Gene Heskett
On Friday 22 June 2018 00:30:31 Andrew McGlashan wrote: > On 22/06/18 06:58, Gene Heskett wrote: > > All sounds well and good, but where do I find the tut and tools to > > adjust this? > > http://www.openspf.org/Project_Overview > Bookmarked for further stu

Re: [clamav-users] clamav list spf problem

2018-06-21 Thread Gene Heskett
On Thursday 21 June 2018 23:08:34 Andrew McGlashan wrote: > On 22/06/18 07:21, Gene Heskett wrote: > > On Thursday 21 June 2018 17:12:51 Al Varnell wrote: > >> Gene, > >> > >> If you aren't responsible for an e-mail domain, then none of this > >>

Re: [clamav-users] clamav list spf problem

2018-06-21 Thread Gene Heskett
was trying to drill down to Al. The email address to get to me, is totally independent of the web address in the sig. That I buy from namecheap, in 5 year blocks. But that has not prevented me from getting spammed by my own address occasionally. Thanks Al. > On Thu, Jun 21, 2018 at 01:5

Re: [clamav-users] clamav list spf problem

2018-06-21 Thread Gene Heskett
On Thursday 21 June 2018 11:47:02 Andrew McGlashan wrote: > On 21/06/18 23:29, Gene Heskett wrote: > > What I'd like to see is a good description of SPF. All these > > acronyms get thrown around, usually with no references as to why its > > even needed or how to imple

Re: [clamav-users] clamav list spf problem

2018-06-21 Thread Gene Heskett
On Thursday 21 June 2018 09:33:31 Reindl Harald wrote: > Am 21.06.2018 um 15:29 schrieb Gene Heskett: > > On Thursday 21 June 2018 06:54:43 Andrew McGlashan wrote: > >> On 21/06/18 17:54, Tilman Schmidt wrote: > >>> Am 20.06.2018 um 19:14 schrieb Andrew McGlashan:

Re: [clamav-users] clamav list spf problem

2018-06-21 Thread Gene Heskett
_ > clamav-users mailing list > clamav-users@lists.clamav.net > http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > > > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav.n

Re: [clamav-users] Malwarepatrol false positives

2018-04-28 Thread Gene Heskett
cording to my clamav logs. Nor apparently at shentel.net either, my isp. -- Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.net:6

Re: [clamav-users] Spam warning

2018-04-19 Thread Gene Heskett
On Wednesday 18 April 2018 20:58:21 Al Varnell wrote: > On Wed, Apr 18, 2018 at 05:15 PM, Gene Heskett wrote: > > On Wednesday 18 April 2018 19:03:48 Al Varnell wrote: > >> Thanks for the warning, but suggest you also upload to VirusTotal > >> <https://www.virustotal

Re: [clamav-users] Spam warning

2018-04-18 Thread Gene Heskett
directly if shown to be malware. > I'll see if I can grok how to do that in the morning after the first cup has kicked in. I'm about bushed for the day. > Sent from my iPad > > -Al- > > > On Apr 18, 2018, at 10:10 AM, Gene Heskett <ghesk...@shentel.net> > >

[clamav-users] Spam warning

2018-04-18 Thread Gene Heskett
suspect its too new. The name of the file also has spaces, meaning it came from a winderz box. The .r00 files attached are not the same lengths, but are 300k to 500k in lengths. And I've never heard of the names used for reply addresses. -- Cheers, Gene Heskett -- "There are four boxes to be

Re: [clamav-users] URGENT: Clamd is wedged on multiple installations

2018-01-26 Thread Gene Heskett
m in your text plz. > ___ > clamav-users mailing list > clamav-users@lists.clamav.net > http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > > > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav

Re: [clamav-users] Anyone notice any issues with clamav 0.99.2 and recent patterns?

2018-01-26 Thread Gene Heskett
On Friday 26 January 2018 04:04:53 Gene Heskett wrote: > On Friday 26 January 2018 03:19:52 maxal wrote: > > On Fri, 2018-01-26 at 08:11 +0100, lukn wrote: > > > Same on a machine with clamav-milter: > > > > > > clamav-milter[8241]: Failed to initiate streamin

Re: [clamav-users] Anyone notice any issues with clamav 0.99.2 and recent patterns?

2018-01-26 Thread Gene Heskett
clamav-users@lists.clamav.net > > http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > > > > > > Help us build a comprehensive ClamAV guide: > > https://github.com/vrtadmin/clamav-faq > > > > http://www.clamav.net/contact.html#ml > > _______ > clamav-use

Re: [clamav-users] Using a file to list exclusions for on-demand search?

2018-01-06 Thread Gene Heskett
Works(TM). And its been that way for the 20 years I have been backing up my stuff with amanda. > ___ > clamav-users mailing list > clamav-users@lists.clamav.net > http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > > > Help us build a comprehensive Clam

Re: [clamav-users] freshclam broken

2017-11-05 Thread Gene Heskett
: 4566249, f-level: 60, > builder: sigmgr) [...] > This is a variation on a theme that I've been looking at in my freshclam logs for several days now, but the last 2 cycles look normal. [...] Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ball

Re: [clamav-users] /home/gene/firefox/browser/omni.ja: Html.Exploit.CVE_2017_8750-6336209-0 FOUND

2017-10-20 Thread Gene Heskett
On Friday 20 October 2017 10:47:24 Joel Esler (jesler) wrote: > All — > > This signature has been dropped. > > -- > Joel Esler | Talos: Manager | > jes...@cisco.com<mailto:jes...@cisco.com> > Thank you Joel. Cheers, Gene Heskett -- "There are four boxes to b

Re: [clamav-users] /home/gene/firefox/browser/omni.ja: Html.Exploit.CVE_2017_8750-6336209-0 FOUND

2017-10-20 Thread Gene Heskett
. > > Different versions of Firefox on different platforms. > > -Al- > > On Thu, Oct 19, 2017 at 10:24 PM, Gene Heskett wrote: > > On Friday 20 October 2017 00:24:20 Tsutomu Oyamada wrote: > >> Hi, > >> > >> The false positive for omni.ja is still oc

Re: [clamav-users] /home/gene/firefox/browser/omni.ja: Html.Exploit.CVE_2017_8750-6336209-0 FOUND

2017-10-19 Thread Gene Heskett
ported this, but nothing is being done. > > On Sat, 23 Sep 2017 09:53:30 -0400 > > Gene Heskett <ghesk...@shentel.net> wrote: > > On Saturday 23 September 2017 03:59:17 Al Varnell wrote: > > note correction in subject file location > > > > > So here are the f

Re: [clamav-users] /home/gene/firefox/browser/omni.ja: Html.Exploit.CVE_2017_8750-6336209-0 FOUND

2017-09-23 Thread Gene Heskett
74b0c099130313a9375d433f6d93fb8f672f1620e28221b6573ed0ae348 omni.ja Thanks Al > > On Sat, Sep 23, 2017 at 12:12 AM, Gene Heskett wrote: > > On Saturday 23 September 2017 02:32:48 Al Varnell wrote: > >> Power out here so cannot check. Was negative when I looked at macOS > &

Re: [clamav-users] /home/gene/Download/firefox/browser/omni.ja: Html.Exploit.CVE_2017_8757-6336185-0 FOUND

2017-09-23 Thread Gene Heskett
0+1 (2017-02-24) x86_64 GNU/Linux Thank you Al. > Sent from my iPhone > > -Al- Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page &

Re: [clamav-users] /home/gene/Download/firefox/browser/omni.ja: Html.Exploit.CVE_2017_8757-6336185-0 FOUND

2017-09-23 Thread Gene Heskett
On Sunday 17 September 2017 05:04:53 Gene Heskett wrote: > On Sunday 17 September 2017 04:55:09 Gene Heskett wrote: > > /home/gene/Download/firefox/browser/omni.ja > > Correction, since 2014. Deleted. Whole tree. > > Cheers, Gene Heskett This is now showing up against the

Re: [clamav-users] /home/gene/Download/firefox/browser/omni.ja: Html.Exploit.CVE_2017_8757-6336185-0 FOUND

2017-09-17 Thread Gene Heskett
On Sunday 17 September 2017 05:05:24 Al Varnell wrote: > On Sun, Sep 17, 2017 at 01:55 AM, Gene Heskett wrote: > > That download has been sitting there at least 5 years. So at first > > glance I'd say its an FP. > > > > Cheers, Gene Heskett > > They will want

Re: [clamav-users] /home/gene/Download/firefox/browser/omni.ja: Html.Exploit.CVE_2017_8757-6336185-0 FOUND

2017-09-17 Thread Gene Heskett
On Sunday 17 September 2017 04:55:09 Gene Heskett wrote: > /home/gene/Download/firefox/browser/omni.ja Correction, since 2014. Deleted. Whole tree. Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that ord

[clamav-users] /home/gene/Download/firefox/browser/omni.ja: Html.Exploit.CVE_2017_8757-6336185-0 FOUND

2017-09-17 Thread Gene Heskett
That download has been sitting there at least 5 years. So at first glance I'd say its an FP. Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web

Re: [clamav-users] Mirror issues and what we are doing to fix it

2017-08-30 Thread Gene Heskett
daily wasn't anyplace. But its worked well 2 more times since. I just assumed the dns problem was being adjusted when the failure occurred. Further thinking seems to connect it to file locking while the mirrors were being updated? I think that is to be expected. OTOH for that, 20 minutes doe

Re: [clamav-users] Freshclam failure - Still ongoing???

2017-08-25 Thread Gene Heskett
av.net/cgi-bin/mailman/listinfo/clamav-users > > > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav.net/contact.html#ml > > ___ > clamav-users mailing list > clamav-users@lis

Re: [clamav-users] Freshclam failure

2017-08-24 Thread Gene Heskett
On Thursday 24 August 2017 06:59:49 Gene Heskett wrote: > On Thursday 24 August 2017 06:10:00 Simon Mousey Smith wrote: > > BINGO!!! GENIUS!!! FIXED!!! > > > > Been banging my head against the wall all morning trying to resolve > > it > > > > Simon >

Re: [clamav-users] Freshclam failure

2017-08-24 Thread Gene Heskett
gt;>> Help us build a comprehensive ClamAV guide: > >>>>>> https://github.com/vrtadmin/clamav-faq > >>>>>> > >>>>>> http://www.clamav.net/contact.html#ml > >>>>> > >>>>> _

Re: [clamav-users] Unable to download database

2017-08-24 Thread Gene Heskett
> >>> clamav-users mailing list > >>> clamav-users@lists.clamav.net<mailto:clamav-users@lists.clamav.net > >>>> http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > >>> > >>> > >>> Help us build a compr

Re: [clamav-users] clamav-users Digest, Vol 150, Issue 19

2017-06-01 Thread Gene Heskett
On Thursday 01 June 2017 19:49:11 Reindl Harald wrote: > Am 02.06.2017 um 01:16 schrieb Gene Heskett: > > On Thursday 01 June 2017 12:01:17 Dennis Peterson wrote: > >> It is your problem to fix. > >> Be obvious or be blocked. There's too much at risk. > > >

Re: [clamav-users] clamav-users Digest, Vol 150, Issue 19

2017-06-01 Thread Gene Heskett
Reporting System: > > http://wdprs.internic.net/ > > > > >>> Last update of WHOIS database: 2017-05-31T23:20:11-0700 <<< > > > > ___ > > clamav-users mailing list > > clamav-users@lists.cl

Re: [clamav-users] Detected Email.Phishing.VOF1-6295284-0 in several emails - False positive??

2017-04-24 Thread Gene Heskett
amav-users > > > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav.net/contact.html#ml Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that

Re: [clamav-users] Another possible FP?

2017-04-22 Thread Gene Heskett
tting similar results after a quick update. I > > uploaded one message to the FP site which just happens to be a > > Security Update notice from Apple: > > 7ed54ef4cff55f1750f74b5a439f2605:8257:172003.emlx > > > > -Al- > > > > On Apr 21, 2017, at

[clamav-users] Another possible FP?

2017-04-21 Thread Gene Heskett
work? Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.net:6309/gene> ___ clamav-us

Re: [clamav-users] Howto quarantine emails? "ERROR: VirusEvent: fork failed."

2017-01-03 Thread Gene Heskett
== But don't expect a lot of activity. The last time that virii file was updated, was June 6th of last (2016) year. It appears they either are not sending viri by email very often, or clamdscan isn't catching them. And I haven't been attacked, and I don't click on spammy looking link

Re: [clamav-users] Win.Trojan.Toa-5368540-0 - How many people need to complain before you listen?

2016-12-29 Thread Gene Heskett
orm.Mydoom-90 FOUND So either my isp is doing a great job of black holeing questionable stuff, or 10,000 emails have been deleted by me without reading them. And I've done a hell of a lot of that. It seems to me, with all this hoorah about viri about in the wild, I ought to be getting hit

[clamav-users] More fp's. Now its almost everything that has been zipped.

2016-12-24 Thread Gene Heskett
FOUND /home/gene/Downloads/5i25.zip: Win.Trojan.Toa-5372190-0 FOUND /home/gene/Downloads/SeaToolsDOS223ALL.ISO: Win.Trojan.Toa-5371146-0 FOUND Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed H

Re: [clamav-users] FP Pdf.Exploit.CVE_2016_1091-2

2016-11-30 Thread Gene Heskett
ac.com>: > > > >> Has anybody submitted a PDF yet? > > > > > > > > Of course. > > > > > > Hash? > > > > 8d62c398679ab6c7b85749eacf7a9a80 > > generated by md5sum And mine on the Motorola programming pdf is: 71088f

Re: [clamav-users] FP Pdf.Exploit.CVE_2016_1091-2

2016-11-30 Thread Gene Heskett
does not ask for a hash, nor does it specify how to obtain it. It asked for the file, so thats what I sent. Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (

Re: [clamav-users] FP Pdf.Exploit.CVE_2016_1091-2

2016-11-30 Thread Gene Heskett
can expedite processing. > > -Al- I did Al, how many more copies of it does it take? > On Wed, Nov 30, 2016 at 02:26 AM, maxal wrote: > > hi, > > > > On Tue, 2016-11-29 at 15:46 -0500, Gene Heskett wrote: > >> On Tuesday 29 November 2016 11:53:03 Jeff Dyke wrote:

Re: [clamav-users] FP Pdf.Exploit.CVE_2016_1091-2

2016-11-29 Thread Gene Heskett
gt; Thanks, > >> > >> Hajo > >> > >> ___ > >> clamav-users mailing list > >> clamav-users@lists.clamav.net > >> http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > >> > &g

Re: [clamav-users] fp detection is false

2016-11-22 Thread Gene Heskett
moother than the last time. Good work on that web site. > On Mon, Nov 21, 2016 at 11:31 PM, Gene Heskett wrote: > > Greetings all; > > > > This is another copy of this same .pdf: > > > > /home/gene/Downloads/Download/MC6809-MC6809E 8-Bit Microprocessor > >

[clamav-users] fp detection is false

2016-11-21 Thread Gene Heskett
Programming Manual (Motorola Inc.) 1981.pdf So I believe both detections are false. Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.

[clamav-users] This is an FP I believe

2016-11-21 Thread Gene Heskett
e I acquired it. Thanks & Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.net:6309/gene> _

Re: [clamav-users] Problems with safe browsing

2016-11-10 Thread Gene Heskett
> > clamav-users mailing list > > clamav-users@lists.clamav.net > > http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users > > > > > > Help us build a comprehensive ClamAV guide: > > https://github.com/vrtadmin/clamav-faq > > >

Re: [clamav-users] Multiple logfiles for clamscan

2016-10-12 Thread Gene Heskett
ish Life Assurance plc. > > > > Permanent TSB plc. registered in Dublin under No. 222332. Registered > office is: 56-59, St. Stephen?s Green, Dublin 2, Ireland. > - > > ____

Re: [clamav-users] ClamAV+exim: scanner finds not a single malware

2016-05-23 Thread Gene Heskett
of May. Several have been identified as they sail thru my spam tree, but they got there by getting past that procmail recipe. > ___ > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav.net/cont

[clamav-users] incoming, it passes, scanned up to 24 hours later, its detected

2016-05-23 Thread Gene Heskett
. Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in that order." -Ed Howdershelt (Author) Genes Web page <http://geneslinuxbox.net:6309/gene> ___ Help us build a comp

Re: [clamav-users] important message

2016-04-03 Thread Gene Heskett
/www.clamav.net/contact.html#ml > > ___ > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav.net/contact.html#ml Cheers, Gene Heskett -- "There are four boxes to be used in d

Re: [clamav-users] Locky Dridex plan

2016-03-25 Thread Gene Heskett
ps://github.com/vrtadmin/clamav-faq > > > > http://www.clamav.net/contact.html#ml > > ___ > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav.net/contact.html#ml Cheers, Gene Heskett -- "

Re: [clamav-users] Why has clam started updating itself every 3 hours?

2016-03-21 Thread Gene Heskett
un Freshclam. Any idea what could be causing this? Curious, I looked at my log, its doing it 4x a day, or at 6 hour intervals. Is that still too many times/day? Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Please use in

Re: [clamav-users] Where do I send the latest zip with a ransomware viri in it?

2016-03-19 Thread Gene Heskett
t to samp...@sanesecurity.me.uk > > James. > > > On 17 Mar 2016, at 9:30 AM, Gene Heskett <ghesk...@wdtv.com> wrote: > > > > Greetings all; > > > > I got a zip this morning, addressed to me from me. Dropped on > > virustotal, show 9 hits from other viri detecto

[clamav-users] Where do I send the latest zip with a ransomware viri in it?

2016-03-19 Thread Gene Heskett
me, that whole class C gets sent to /dev/null on the mail server, forever. But I have saved it, and you need to develop a detector pretty fast, so where do I send it? Cheers, Gene Heskett -- "There are four boxes to be used in defense of liberty: soap, ballot, jury, and ammo. Pleas

Re: [clamav-users] ClamAV® blog: ClamAV Signature Interface maintenance is now complete! New Main.cvd!

2016-03-19 Thread Gene Heskett
es. I do see a limited anount of net traffic, in the 20k to 50k a second range that seems to be continuous, so either some one is wgetting my web page (again) or freshclam is still working on it. But if it is, its not logging it. Found it, its yahoo's "slurp" pulling my now out of

  1   2   3   >