Re: [clamav-users] PUA and file descriptions

2015-05-28 Thread Al Varnell
ClamAV does not produce any such explanations. There is no requirement that the same name be used for a given malware sample by all A-V scanners, so there is no guarantee that the description you found at Symantec will match the infected file you found. If the sample ClamAV received already

[clamav-users] PUA and file descriptions

2015-05-28 Thread Steven Pine
Hi, In a mostly OS X environment running gruntworks on client machines, clamav scans are finding things like ‘hacktool.crack.someprogram’. Would this be considered a PUA by the clamav team or is it just a naming convention for something more malicious? More generally is there anywhere I could