Yay!
Thu Nov 24 00:55:29 2016 -> /var/spool/MailScanner/incoming/2880/72DF31238E5.A1A3B/nreceipt_shuaburman.zip: Sanesecurity.Malware.26490.JsHeur.UNOFFICIAL FOUND
Thu Nov 24 00:55:56 2016 -> /var/spool/MailScanner/incoming/2431/B8D131238E5.AE917/nreceipt_kcox.zip: Sanesecurity.Malware.26490.JsHeur ...
Search found 4 matches
- 24 Nov 2016 00:00
- Forum: 3.x Bugs
- Topic: Virus detection
- Replies: 4
- Views: 4725
- 23 Nov 2016 23:30
- Forum: 3.x Bugs
- Topic: Virus detection
- Replies: 4
- Views: 4725
Re: Virus detection
Seems like it's still not catching all messages.
According to clamd.log it detects the viruses:
Thu Nov 24 00:11:09 2016 -> /var/spool/MailScanner/incoming/17061/A020D123C45.A4433/nreceipt_graduates.zip: Sanesecurity.Foxhole.Zip_JsNum.v2.UNOFFICIAL FOUND
Thu Nov 24 00:15:55 2016 -> /var/spool ...
According to clamd.log it detects the viruses:
Thu Nov 24 00:11:09 2016 -> /var/spool/MailScanner/incoming/17061/A020D123C45.A4433/nreceipt_graduates.zip: Sanesecurity.Foxhole.Zip_JsNum.v2.UNOFFICIAL FOUND
Thu Nov 24 00:15:55 2016 -> /var/spool ...
- 23 Nov 2016 08:33
- Forum: 3.x Bugs
- Topic: Virus detection
- Replies: 4
- Views: 4725
Re: Virus detection
Seems like this was related to the sticky topic above, viewtopic.php?f=13&t=1817
Solution was:
Not sure if both commands was needed, but it seems like it sorted out the problem.
Solution was:
Code: Select all
usermod clam -G mtagroup
usermod clamav -G mtagroup
- 23 Nov 2016 00:12
- Forum: 3.x Bugs
- Topic: Virus detection
- Replies: 4
- Views: 4725
Virus detection
I have some issues with the virus detection, running latest EFA version, EFA-3.0.1.5.
According to /var/log/clamav/clamd.log it detects viruses:
Wed Nov 23 00:51:10 2016 -> /var/spool/MailScanner/incoming/2551/6A1E5120251.A64CF/ntax_sokieffe.zip: Sanesecurity.Malware.26461.JsHeur.UNOFFICIAL FOUND ...
According to /var/log/clamav/clamd.log it detects viruses:
Wed Nov 23 00:51:10 2016 -> /var/spool/MailScanner/incoming/2551/6A1E5120251.A64CF/ntax_sokieffe.zip: Sanesecurity.Malware.26461.JsHeur.UNOFFICIAL FOUND ...