[SOLVED] ClamaV did not catch virus

CyberGuy

Member
Dec 20, 2021
24
3
8
29
Hi Guys,

We use proxmox mail gateway but seems like clamaV did not catch the virus:
Code:
MIME type: application/octet-stream File name: RFQ#1180004562&1180004538.gz File size: 187.80 kB Virus name: VIRUS: Trojan.Zmutzy.867 Antivirus: Kerio Antivirus engine version/Signature count: (AVCORE v2.2 Windows/x86_64 11.0.1.19 (March 15, 2021)/9244659)

Current configuration:
1661182281264.png


Logs show nothing.

So my question is this normal for you guys?

Patryk
 
Hi,

I have few questions? If anyone could reply? I would be grateful!

I might use multiple database signature or only one? I can replace the url in the Confguration -> Virust Detector -> ClamAV -> Database Mirror.
What would be the best database from this link: https://sanesecurity.com/usage/signatures/ ?

To match viruses, malware ? For example i can you use : hackingteam.hsb ? in Database Mirror?

What about Avast process installation when ClamAV is still active:
1) Stop service of ClamAV service? and disable enable?
2) Install Avast using: https://pmg.proxmox.com/wiki/index.php/Install_Avast
3) What would be another thing to do ? expect that, any tune up?


Thank you for info @hata_ph !