Cisco released the free antivirus package ClamAV 0.102

Cisco introduced a significant new release of the free antivirus package ClamAV 0.102.0. It should be noted that the project passed into the hands of Cisco in 2013 after the acquisition the Sourcefire company, which developed ClamAV and Snort. The project code is distributed is licensed under GPLv2.

Key Improvements:

  • The functionality of on-access scanning has been moved from clamd to a separate process clamonacc, implemented similarly to clamdscan and clamav-milter. This change has allowed clamd to operate under a regular user without needing root privileges. Additionally, clamonacc has been enhanced to allow for the deletion, copying, or replacement of problematic files, scanning of newly created and moved files has been established, and support for VirusEvent handlers in on-access mode has been provided;
  • The freshclam program has been significantly reworked, adding support for HTTPS and the ability to work with mirrors that process requests on network ports other than 80. Basic operations for database management have been moved to a separate library, libfreshclam;
  • Support has been added for extracting data from egg archives (ESTsoft), not requiring the installation of the proprietary UnEgg library;
  • A time limit for scanning has been introduced, which is set to 120 seconds by default. This limit can be changed through the MaxScanTime directive in clamd.conf or the "—max-scantime" parameter in the clamscan utility;
  • Improved handling of executable files that are digitally signed Authenticode. The ability to create whitelists and blacklists for certificates has been added. The parsing of the PE format has been improved;
  • The ability to create bytecode signatures for unpacking Mach-O and ELF executable files has been introduced;
  • A reformatting of the entire codebase was carried out using the clang-format utility;
  • Automated testing of ClamAV has been established in the Google OSS-Fuzz service;
  • Efforts have been made to eliminate compiler warnings when building with the "-Wall" and "-Wextra" options;
  • For the Windows platform, the clamsubmit utility and metadata extraction mode in clamscan (—gen-json) have been ported;
  • Documentation has been moved to a special section on the website and is now available online, in addition to being supplied within the archive in the docs/html directory.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster