[clamav-users] Difficult malwarefiles - signature too short
Kris Deugau
kdeugau at vianet.ca
Mon Nov 2 18:08:42 UTC 2015
G.W. Haywood wrote:
> Hi there,
>
> On Mon, 2 Nov 2015, Hajo Locke wrote:
>
>> ... It seems to be so easy for a php-programmer to generate infinite
>> number of malwarefiles ...
>
> That's correct.
>
> Any .php file sent here goes straight to /dev/null without inspection.
I can't say I've seen PHP randomly splattered around by email (unlike
Javascript or Windows executables, very little will even recognize it
never mind auto-execute it); I'm guessing the OP is scanning customer
webhosting content.
Customers will get very unhappy if you blindly delete all PHP files from
their webhosting account...
-kgd
More information about the clamav-users
mailing list