Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ClamAV DB: Add TwinClams #6653

Closed
filippocarletti opened this issue Apr 7, 2022 · 4 comments
Closed

ClamAV DB: Add TwinClams #6653

filippocarletti opened this issue Apr 7, 2022 · 4 comments
Labels
verified All test cases were verified successfully

Comments

@filippocarletti
Copy link
Member

Add TwinClams signature to ClamAV.

TwinWave maintains some ClamAV signatures to detect "Macro virus".

@nethbot
Copy link
Member

nethbot commented Apr 8, 2022

in 7.9.2009/testing:

@filippocarletti
Copy link
Member Author

filippocarletti commented Apr 8, 2022

Testing:

  1. Update: yum --enablerepo=nethserver-testing update nethserver-antivirus
  2. Force signature download: clamav-unofficial-sigs.sh -F
  3. Verify sigs: ls -1 /var/lib/clamav/twin*
/var/lib/clamav/twinclams.ldb
/var/lib/clamav/twinwave.ign2
  1. Test clamav
f97412f5ddac8351f3d6efdb6982cb05aafa4f96bbdd7f85add14a7b4f850f01.doc: TwinWave.EvilDoc.DOCXSTRGOOD.RTFSTR.SCRIPTLET.200421.UNOFFICIAL FOUND

@filippocarletti filippocarletti added the testing Packages are available from testing repositories label Apr 8, 2022
@lucagasparini
Copy link

Testing passed successfully

~]# clamscan ./f97412f5ddac8351f3d6efdb6982cb05aafa4f96bbdd7f85add14a7b4f850f01.doc
/root/f97412f5ddac8351f3d6efdb6982cb05aafa4f96bbdd7f85add14a7b4f850f01.doc:
TwinWave.EvilDoc.DOCXSTRGOOD.RTFSTR.SCRIPTLET.200421.UNOFFICIAL FOUND

@lucagasparini lucagasparini added verified All test cases were verified successfully and removed testing Packages are available from testing repositories labels Apr 12, 2022
@lucagasparini lucagasparini removed their assignment Apr 12, 2022
@nethbot
Copy link
Member

nethbot commented Apr 13, 2022

in 7.9.2009/updates:

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
verified All test cases were verified successfully
Projects
None yet
Development

No branches or pull requests

4 participants