Hi,
I'm struggling with virus that come straight through clam av (i don't have cyren) and yesterday tried to make improvements using information found on here, I'm currently using version 15.3 and i have followed the guides to ensure the latest fixes/additional sigs are working
portal.smartertools.com/community/a86419/sm-14-clamsup-problems-and-how-to-fix-them-temporarily-at-least.aspx
All seems to be working fine, no errors, updating ok and automatically, but since i implemented the changes (adding the extra lines to ini file) although i now seem to have more sigs loaded in db according to freshclam.log , im suddenly detecting a lot less virus, i have already seen some .gz files go straight through which i cannot download as local virus scanner blocks straight away.
I'm concerned i have messed something up, but i see no indication of this - yesterday by 8am , there were already three pages of 'This message has been quarantined because a virus was found.' checking the same logs for today after the hoped improvement i have just 1/2 a page in logs.
I'm confused by the amount of loaded sigs, as there are various numbers listed for different list and im not entirely sure what the total to compare is - i have been going by the last number on the update logs though.
I upgraded from version 12 in September, at this point the log showed i had around 490k sigs with just a couple of sources listed , but after the upgrade it seem to go down to around 114k with quite a few new sources, now that i applied the ini updates new database files were added in and i'm up to around 525k sigs - but as i say the effect of this change seem to be the opposite in regard to detection and easily detected virus attachments are still going right through
scanner and updater are definitely running so thats something i guess :)
Can anyone offer any advice/insight to get this tightened up or is it just a given that you will get virus without a paid add on ?
Thanks