Changelog ZAV
1.3.0 January 2011 Jaromir Smrcek   jaromir.smrcek@zoner.com- Added LiveThreat reporting (see REPORT_STATS in zavd.conf)
- Added zavthreats binary and manual page - infection statistics
- ZAVd now logs the first virus name in the main scanner log (zavdscan.log), which is used by zavthreats by default
- ZAVD_LOG_STATS (and ZAVLD_LOG_STATS, ZAVLMTP_LOG_STATS) added, along with -i (--scan-info) for zavcli; logging scan statistics
- few minor bugs
- ZAVLD_FLOCK field in zavd.conf, changes the behaviour for scanned filedescriptors that have been previous locked by the watched application in LD_PRELOAD
- Optimized LD_PRELOAD module's filedescriptor queue
- LD_PRELOAD module now logs originating PIDs
- SCAN_DEEP option in scan configuration sections forces the scanner to scan deeper than first few MB of a file
- Optimized filedescriptor limits
- ZAVd now ships with both libzavld32.so and libzavld64.so
- zavcli does not end on opendir() or stat() failure
- LD_PRELOAD module has a workaround for kernels <2.6.22
- LOG_STATS option in zavd.conf (more verbose scan logging)
- Results are logged in a slightly different format
- (This version is for internal use only)
- ZAVDScan now not reporting SIGBUS errors for truncated files
- 'zavd --short' and 'zavd --reset' arguments added, used by zavdwatch.sh script, which can be used for daemon monitoring
- Localized ZAVd output
- Localized man pages
- Added a module for LD_PRELOAD library
- Zoner AntiVirus for GNU/Linux completely rewritten (new maintainer - Jaromir Smrcek). Few incompatibilities (e.g. command-line flags and return codes)
- ZAVLMTP joined with ZAVd
- ICAP and iNotify modules added
Current Virus Activity
| Heuristics | 13.0% |
|---|---|
| I-Worm.Runouce.b | 7.7% |
| Dropper.Generic2.ANED | 7.3% |
| Trojan.Poison-1462 | 5.4% |
| Trojan.Injector.CK | 2.5% |
Current Version
Zoner Sandbox
If you suspect that a file might be infected and you thus want to determine what a given program is doing, you can send a file for us to analyze. We will evaluate the given program's behavior and send you back detailed results.