ClamAv oddity

Ralf Mardorf silver.bullet at zoho.com
Fri Dec 11 10:45:29 UTC 2015


On Thu, 10 Dec 2015 20:17:52 -0000, Grizzly wrote:
>/usr/share/mime/mime.cache
>PUA.Win.Exploit.CVE_2012_0110

http://lmgtfy.com/?q=mime.cache+PUA.Win.Exploit.CVE_2012_0110

In my experiences ClamAV is crap. When I needed antivir software on a
Linux install, IIRC I only got one time a false positive and it was
fixed after I reported it, when using
https://www.avira.com/en/support-for-home-knowledgebase-detail/kbid/1491 .
This false positive was caused by scanning a complete Linux install ;).

Perhaps the data base of other antivir software is just to care about
email on Linux servers, but fails when checking a faked windows install
or a complete Linux install.

Since avira is discontinued, you could test avast and what ever else
might be available for Linux. Assumed you experiences with ClamAV
should be good, excepted of this issue, contact ClamAV and report those
files as possible false positives.




More information about the ubuntu-users mailing list