[clamav-users] Difficult malwarefiles - signature too short

Kris Deugau kdeugau at vianet.ca
Mon Nov 2 18:08:42 UTC 2015


G.W. Haywood wrote:
> Hi there,
> 
> On Mon, 2 Nov 2015, Hajo Locke wrote:
> 
>> ... It seems to be so easy for a php-programmer to generate infinite
>> number of malwarefiles ...
> 
> That's correct.
> 
> Any .php file sent here goes straight to /dev/null without inspection.

I can't say I've seen PHP randomly splattered around by email (unlike
Javascript or Windows executables, very little will even recognize it
never mind auto-execute it);  I'm guessing the OP is scanning customer
webhosting content.

Customers will get very unhappy if you blindly delete all PHP files from
their webhosting account...

-kgd



More information about the clamav-users mailing list