Re: [clamav-users] Unable to run clamd in /opt/directory

2015-11-12 Thread P K
ble-milter' '--disable-clamuko' '--with-gnu-ld' '--enable-dns-fix' '--disable-unrar' '--libdir=/usr/lib' '--with-system-tommath' '--without-included-ltdl' 'build_alias=x86_64-linux-gnu' sizeof(void*) = 8 Engine flevel: 80, dconf: 80 sudo -u clamav /usr/sbin/clamd -c /opt/clamd.conf ERROR: Can't

Re: [clamav-users] Unable to run clamd in /opt/directory

2015-11-06 Thread P K
y sudo -u clamdUserName cat /opt/clamd.conf to see if the clamd >> user >> has permission to access the file? >> >> dp >> >> On 11/4/15 6:15 AM, P K wrote: >> >>> Hi Guys, >>> >>> I am seeing config file parse error when using config f

[clamav-users] Unable to run clamd in /opt/directory

2015-11-04 Thread P K
Hi Guys, I am seeing config file parse error when using config file inside /opt/ directory. Curious why unable to run clamd config in /opt directory. In other system with 0.98.6 its working fine. Below are output: sudo /usr/sbin/clamd --version -c ./clamd.conf ClamAV 0.98.7 pk@pk-x:~$ ls

Re: [clamav-users] False positive on go source code using PUA

2015-11-04 Thread P K
kes it suspicious. > > I don’t see any errors here. > > -Al- > > On Tue, Nov 03, 2015 at 10:03 PM, P K wrote: > > > > Hi, > > > > I tried clamdscan with PUA enabled on go source code and seen an error. > > > > Below are error: > > >

[clamav-users] False positive on go source code using PUA

2015-11-03 Thread P K
Hi, I tried clamdscan with PUA enabled on go source code and seen an error. Below are error: clamdscan -v go1.4.2.src.tar.gz /home/punit/go1.4.2.src.tar.gz: PUA.File.Exploit.CVE_2012_1461 FOUND --- SCAN SUMMARY --- Infected files: 1 Time: 0.507 sec (0 m 0 s) Is it really

Re: [clamav-users] Fwd: Unable to detect pdf virus (Not working in sharepoint)

2015-09-04 Thread P K
> attach to this bugzilla ticket the original pdf file and the original > multipart document. > > Thanks. > > On Tue, Aug 18, 2015 at 10:48 AM, P K <pkopen...@gmail.com> wrote: > > > Hi Guys, > > > > Again troubling you. Can you please let me know why its not w

Re: [clamav-users] Fwd: Unable to detect pdf virus (Not working in sharepoint)

2015-08-20 Thread P K
on -21154944191352840482619583850 Content-Disposition: form-data; name=__spText1 -21154944191352840482619583850 On Thu, Jul 30, 2015 at 3:39 PM, P K pkopen...@gmail.com wrote: thanks Shaun. I seen its pushed in latest update. Hope to learn more from you guys

Re: [clamav-users] Fwd: Unable to detect pdf virus

2015-08-18 Thread P K
-Disposition: form-data; name=ctl00$PlaceHolderMain$ctl01$ctl05$OverwriteSingle on -21154944191352840482619583850 Content-Disposition: form-data; name=__spText1 -2115494419135284048261958385 On Thu, Jul 30, 2015 at 3:39 PM, P K pkopen...@gmail.com

Re: [clamav-users] Fwd: Unable to detect pdf virus

2015-07-30 Thread P K
. As soon as the signature is done being tested for false positives we will publish it. Thanks again, Shaun Hurley ClamAV Malware Team On Tue, Jul 28, 2015 at 10:54 AM, P K pkopen...@gmail.com wrote: worked properly after enabling PUA. Cheers, --PK On Tue, Jul 28, 2015 at 8:14 PM

Re: [clamav-users] Unable to detect pdf virus

2015-07-28 Thread P K
Hi Guys, Still waiting for an answer. On Thu, Jul 23, 2015 at 8:21 PM, P K pkopen...@gmail.com wrote: Hi Guys, I am testing clamav in my local system to detect POST data's from network. I am newbie in ClamAv and want to test with real time signatures. I tested with Eicher Test Signature

Re: [clamav-users] Fwd: Unable to detect pdf virus

2015-07-28 Thread P K
AM, P K pkopen...@gmail.commailto: pkopen...@gmail.com wrote: Sure. I uploaded same. I wanted someone else to try to make sure its issue with clamav. Can you point me any other real virus(except eicar) to try to make sure my clamAv working properly. I want to try clamav by sending real virus

Re: [clamav-users] Fwd: Unable to detect pdf virus

2015-07-28 Thread P K
So how to detect same in my clamAv? On Tue, Jul 28, 2015 at 8:08 PM, Steve Basford steveb_cla...@sanesecurity.com wrote: On Tue, July 28, 2015 3:27 pm, P K wrote: a3e8a7602797c69f6320225e8137d063 exploit.pdf ClamAV isn't showing detection here: https://www.virustotal.com/en/file

Re: [clamav-users] Fwd: Unable to detect pdf virus

2015-07-28 Thread P K
worked properly after enabling PUA. Cheers, --PK On Tue, Jul 28, 2015 at 8:14 PM, Steve Basford steveb_cla...@sanesecurity.com wrote: On Tue, July 28, 2015 3:41 pm, P K wrote: So how to detect same in my clamAv? Until a proper sig is added, you could try clamscan --detect-pua=yes

Re: [clamav-users] Unable to detect pdf virus

2015-07-28 Thread P K
(null)” whereas the signature is looking for “this.” in front of it. Submit your document for possible addition of new or revised signature. -Al- On Tue, Jul 28, 2015 at 03:01 AM, P K wrote: Hi Guys, Still waiting for an answer. On Thu, Jul 23, 2015 at 8:21 PM, P K pkopen

Re: [clamav-users] Unable to detect pdf virus

2015-07-28 Thread P K
. -Al- On Tue, Jul 28, 2015 at 03:01 AM, P K wrote: Hi Guys, Still waiting for an answer. On Thu, Jul 23, 2015 at 8:21 PM, P K pkopen...@gmail.com wrote: Hi Guys, I am testing clamav in my local system to detect POST data's from network. I am newbie

[clamav-users] Fwd: Unable to detect pdf virus

2015-07-28 Thread P K
and it's evading detecting through our current signature (Exploit.PDF.CVE_2009_4324), our your sample isn't attempting exploit CVE-2009-4324. Either way, your sample would be helpful in order to determine that. Thanks, - Alain On Tue, Jul 28, 2015 at 11:32 AM, P K pkopen...@gmail.com wrote

[clamav-users] Unable to detect pdf virus

2015-07-23 Thread P K
Hi Guys, I am testing clamav in my local system to detect POST data's from network. I am newbie in ClamAv and want to test with real time signatures. I tested with Eicher Test Signature and it works fine. *But ClamAv is unable to detect CVE-2009-4324 with pdf.* I see signature is present in

Re: [clamav-users] clamav-users Digest, Vol 130, Issue 2

2015-07-20 Thread P K
...@lists.clamav.net When replying, please edit your Subject line so it is more specific than Re: Contents of clamav-users digest... Today's Topics: 1. Re: Streaming support in ClamD (P K) 2. Re: Streaming support in ClamD (Henrik K

Re: [clamav-users] Streaming support in ClamD

2015-07-02 Thread P K
? Thanks On Tue, Jun 30, 2015 at 12:28 PM, P K pkopen...@gmail.com wrote: Hi Guys, I am new to Clamd and was trying to use it for virus scanning. I used squid + icap + clamAv. But i seen once all data is recieved clamAv INSTREAM is called and data is passed to it. Is it issue with icap

[clamav-users] Streaming support in ClamD

2015-06-30 Thread P K
Hi Guys, I am new to Clamd and was trying to use it for virus scanning. I used squid + icap + clamAv. But i seen once all data is recieved clamAv INSTREAM is called and data is passed to it. Is it issue with icap server or Clamd doesn't support streaming support? Any guidance will be helpful