Cisco has released the free antivirus package ClamAV 0.103.

Cisco introduced a significant new release of the free antivirus package ClamAV 0.103.0. It should be noted that the project passed into the hands of Cisco in 2013 after the acquisition the Sourcefire company, which developed ClamAV and Snort. The project code is distributed is licensed under GPLv2.

Key Improvements:

  • clamd now supports reloading signature databases in a separate thread without blocking scans. The database reload in a separate thread is performed by default and leads to a doubling of memory consumption during the operation. For systems with limited RAM, the ConcurrentDatabaseReload setting allows disabling the database reload in a separate thread.
  • The DLP (data-loss prevention) module has been expanded to block credit card number leaks. Support for additional ranges of credit card numbers has been added, along with an option to issue warnings only for actual credit cards, ignoring gift card numbers.
  • Support for PDF files encrypted in Adobe Reader X has been added. The tool for detecting exploits using PNG images has been revamped. GIF file parsing has been significantly improved, enhanced handling of corrupted files, and support for scanning layers has been added.
  • For Windows users, a utility clamdtop.exe has been provided, offering a reduced functionality compared to the Linux utility clamdtop.
  • The phishing detection module now displays the warning 'Suspicious link found!' with the actual and visible URL when triggered.
  • Experimental support for building using CMake has been added. In the future, CMake is planned to be used for building instead of autotools and Visual Studio utilities.
  • The clamdscan and clamonacc applications have been enhanced with the options '--ping' and '--wait'. The '--ping' option performs a check on the clamd process and returns 0 if there is a response and 21 if a timeout occurs. The '--wait' option waits for clamd to be ready for a specified number of seconds before launching. For example, the command 'clamdscan -p 30:2 -w ' will wait up to 60 seconds for readiness, sending check requests. These options can be used when starting clamd and clamonacc during system boot to ensure clamd is ready to handle requests before clamonacc starts.
  • Support for detecting and extracting Excel 4.0 macros has been added. The detection and extraction of VBA scripts have been significantly improved.
  • Improved accessibility for analyzing temporary files and JSON metadata generated during the scanning process. You can use the command "clamscan --tempdir= --leave-temps --gen-json " to review such files.
  • In freshclam and clamsubmit, the ability to override the default set of OpenSSL CA (certificate authority) has been added. To specify your own set of certificate authorities, you can use the environment variable CURL_CA_BUNDLE.
  • In clamscan and clamdscan, the start and end times of the scanning process are now included in the scan summary. Freshclam has improved the operation's progress indicator. Clamdtop has improved line alignment and truncation during rendering.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster