[clamav-users] Scan log parsing

Eliya Voldman evoldman at gmail.com
Mon Feb 21 14:30:15 UTC 2022


Well I did a test scan and found this line in the log:

C:\Windows\SysWOW64\sechost.dll: Win.Trojan.Pemalform-9786579-0 FOUND
Does it mean that I could/should rely on 'FOUND' or it should be something
'more specific'?
Thanks again ..

On Mon, Feb 21, 2022 at 4:06 AM Eliya Voldman <evoldman at gmail.com> wrote:

> Some more clarification:
> The scan will be done daily on a laptop located in VLAN without internet
> access. Nevertheless database will be updated daily via another server
> hence it'll be up today
> Log will be stored locally.
> I want to be notified by the end of the day if any infected file was
> found.
> Hence I will 'grep' the log daily and search for string 'FOUND'
> Email should notify me
> That's my plan
> Thanks
>
> On Mon, Feb 21, 2022 at 3:37 AM G.W. Haywood via clamav-users <
> clamav-users at lists.clamav.net> wrote:
>
>> Hi there,
>>
>> On Sun, 20 Feb 2022, Eliya Voldman via clamav-users wrote:
>>
>> > I'm completely new to ClamAV
>> > I am setting up ClamAV on one laptop located behind VLAN and I don't
>> have
>> > the option to monitor result.
>>
>> Please provide more information.  Try to make me less suspicious.
>>
>> --
>>
>> 73,
>> Ged.
>>
>> _______________________________________________
>>
>> clamav-users mailing list
>> clamav-users at lists.clamav.net
>> https://lists.clamav.net/mailman/listinfo/clamav-users
>>
>>
>> Help us build a comprehensive ClamAV guide:
>> https://github.com/vrtadmin/clamav-faq
>>
>> http://www.clamav.net/contact.html#ml
>>
>
>
> --
>
> <https://mail.google.com/mail/u/0/?ui=2&ik=d3981d59f9&view=att&th=136febab6da21f8f&attid=0.0.1&disp=emb&realattid=ii_136d59273e294831&zw&atsh=1>
> Eliya Voldman
>
>

-- 
<https://mail.google.com/mail/u/0/?ui=2&ik=d3981d59f9&view=att&th=136febab6da21f8f&attid=0.0.1&disp=emb&realattid=ii_136d59273e294831&zw&atsh=1>
Eliya Voldman
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.clamav.net/pipermail/clamav-users/attachments/20220221/db9a8361/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: me.bmp
Type: image/bmp
Size: 30054 bytes
Desc: not available
URL: <https://lists.clamav.net/pipermail/clamav-users/attachments/20220221/db9a8361/attachment.bin>


More information about the clamav-users mailing list