[clamav-users] Bad detection rate

Walter Bürger walter.buerger at arscons.de
Wed Jun 25 08:23:16 UTC 2014


Hi dear ClamAV team,

a few minutes ago I submitted 2 files
bestellung_074B5277.exe
bestellung_9AF6AAE4.exe
to virustotal.com

bestellung_074B5277.exe
(MD5 1da7c04ac540e4e02ef12cdcab7cffe3)
14 out of 53 scanners detected a trojan
(F-Secure named it Trojan.Injector.AWD)
but ClamAV did not detect it.

bestellung_9AF6AAE4.exe
(MD5 186a1745b54467fa168309da93960df4)
18 out of 54 scanners detected a trojan
(F-Secure named it Trojan.Injector.AWD)
but ClamAV did not detect it.

I submitted both files to
http://www.clamav.net/lang/en/sendvirus/submit-malware

And I submitted the same file as yesterday and the day before yesterday 
to virustotal.com<http://virustotal.com/>:

Rechnung_23_14_06_198630274520031_telekom_deutschland_GmbH.exe
(MD5 ad690be247dda635781e20887fcac0e7)

32 out of 54 scanners detected a virus
(NOD32 named it Win32/Emotet.AA)
but ClamAV did not detect it.

Alain said:
"We received your sample for the first time today and will be analyzing it
for coverage in the ClamAV signature set. Thanks for your submission."

Has Rechnung_23_14_06_198630274520031_telekom_deutschland_GmbH.exe
not yet been analyzed ?

Best regards,
Walter.



-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 258 bytes
Desc: OpenPGP digital signature
URL: <https://lists.clamav.net/pipermail/clamav-users/attachments/20140625/320aa39f/attachment.sig>


More information about the clamav-users mailing list