Difference between revisions of "Clamav"

From UVOO Tech Wiki
Jump to navigation Jump to search
Line 1: Line 1:
 +
 +
# Install on Ubuntu/Debian
 +
 +
install-clamav.sh
 
```
 
```
apt-get install -y clamav clamav-daemon
+
test_dir=/tmp/test
 +
sudo apt-get install -y clamav clamav-daemon
 
systemctl stop clamav-freshclam
 
systemctl stop clamav-freshclam
freshclam
+
sudo freshclam
systemctl start clamav-freshclam
+
sudo systemctl start clamav-freshclam
systemctl enable clamav-freshclam
+
sudo systemctl enable clamav-freshclam
 
ls /var/lib/clamav/
 
ls /var/lib/clamav/
mkdir /test
+
mkdir $test_dir
echo "X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*" > /test/malware-sig-test-eicar.txt
+
echo 'X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*' > $test_dir/malware-sig-test-eicar.txt
# clamscan --infected --recursive /test | tee clamscan.log # --remove
+
sudo clamscan --infected --remove --recursive $test_dir | tee -a /var/log/clamscan.log
clamscan --infected --recursive /test
 
 
```
 
```
  

Revision as of 22:52, 9 November 2021

Install on Ubuntu/Debian

install-clamav.sh

test_dir=/tmp/test
sudo apt-get install -y clamav clamav-daemon
systemctl stop clamav-freshclam
sudo freshclam
sudo systemctl start clamav-freshclam
sudo systemctl enable clamav-freshclam
ls /var/lib/clamav/
mkdir $test_dir
echo 'X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*' > $test_dir/malware-sig-test-eicar.txt
sudo clamscan --infected --remove --recursive $test_dir | tee -a /var/log/clamscan.log

vim /etc/clamav/freshclam.conf

# Check for new database 24 times a day
Checks 24

Run every night at 3am

/etc/cron.d/clamscan

 0 3 * * * root scandir=/; sudo clamscan --infected --remove --recursive $scandir | tee -a /var/log/clamscan.log

Ref: