[clamav-users] How can Clam/Cisco be so irresponsibly reckless and nonchalant to Windows users?

Groach groachmail-stopspammingme at yahoo.com
Wed Feb 17 17:15:43 UTC 2016


Hello Joel

I mentioned the Clamwin forum moderators to show that loyal people are 
equally dismayed.  I am well aware that you guys do not view the forum 
and probably only view this mailing list but (to my own cost - as I am 
about to find out with this post) this is not the easiest platform to 
view and use and the world is more used to a BBS-type forum; 
consequently people go to those for advice and often things can be seen 
there more than what you would find in this mailing-list thingy.  I am 
also aware thatg it is multi-platform and that was the whole thing that 
prompted my 'enquiry': the muti-platform consciousness seem to have 
forgotten the impact that can be felt on Wiondows platform if you dont 
take care.

Quote:  "So when FPs are found, they are remediated as fast as we can 
get to them."

An interesting response after Ive pointed out 3 examples of FPs not 
being remedied despite me sending them to you - one of them 17 months 
old.  Could you qualify the term "as fast as we get them..." ?  I 
REGULARLY upload FP's to CLamAV portal and it takes TOO long.  Sure you 
might have internal reasons as to why it takes longer but at the same 
time people need to be given an expectation of what to expect in order 
they can make a reasonable consideration as to risk (or inconvenience) 
to their own systems.

Quote: "Not to say that your concerns aren’t noted, but generating 
ClamAV detection is takes longer."
And this is the point of my mentioning it taking too long

Quote:  "ClamAV should trust the certificate of the file (if you have it 
installed correctly) and ignore those files "
Yes, but you cant.  Clearly ASSUMING such 'safety measures' doesnt work 
which brought peoples machines to their knees last week.  An 
alternative, safer approach is needed.

And the comedy value:
Quote: " would love to have more contributions from the community in 
order to increase coverage."
You are not going to increase coverage whilst you ignore the workings of 
windows, its flaws, its popularity and the sensitivity it has to your 
signatures.  Only by accepting these elements, and modifying the focus 
on to them such as....:

* better testing before release of signatures
* not assume all windows files are signed (genuine programs dont 
necessarily come from Microsoft)
* SPEEDIER response to FP's
* change of Focus on developement:  get the existing products currently 
in use more stable (which includes ClamAV) rather than concetrate on 
fancy websites and rewrites of products that dont currently have so many 
problems.

.....will make it more popular instead of losing coverage.

Im not sure from what I have read that there really is a gasp of the 
situation and consequently that anything will change, just 
acknowledgements and explanations why it is to be so.

For sure nothing will change for disgruntled users that have lowered 
their reliance or moved away from Clam flavours.

Suggestion:  given that there is a Clamwin flavour, and forum, then 
maybe someone would like to signup and occasionally pop in day to day to 
see what people are saying or thinking.  How about it?





More information about the clamav-users mailing list