Questions tagged [clamav]

Antivirus for UNIX-like systems primarily for mailserver integration.

Clam AntiVirus is an open source (GPL) anti-virus toolkit for UNIX, designed especially for e-mail scanning on mail gateways. It provides a number of utilities including a flexible and scalable multi-threaded daemon, a command line scanner and advanced tool for automatic database updates. The core of the package is an anti-virus engine available in a form of shared library.

  • command-line scanner
  • fast, multi-threaded daemon with support for on-access scanning
  • milter interface for sendmail
  • advanced database updater with support for scripted updates and digital signatures
  • virus scanner C library
  • on-access scanning (Linux® and FreeBSD®)
  • virus database updated multiple times per day (see home page for total number of signatures)
  • built-in support for various archive formats, including Zip, RAR, Tar, Gzip, Bzip2, OLE2, Cabinet, CHM, BinHex, SIS and others
  • built-in support for almost all mail file formats
  • built-in support for ELF executables and Portable Executable files compressed with UPX, FSG, Petite, NsPack, wwpack32, MEW, Upack and obfuscated with SUE, Y0da Cryptor and others

Official site: www.clamav.net

158 questions
0
votes
1 answer

ClamAV cannot access files

I've a server (CentOS 7) with ClamAV installed. clamdscan is running every 12 hours and for some files, I'm always getting the following message: ClamAV has failed to run. The return error message was: An error occurred. WARNING:…
Nrgyzer
  • 123
  • 4
0
votes
0 answers

How does ClamAV secure its updates online?

Two questions, the second related to the first... How does ClamAV secure its update virus definition operations from its online servers? I will assume (?) that it uses HTTPS for security, but a security specialist has posed the thoughtful question:…
0
votes
1 answer

How it works content_filter in Postfix using spamassassin and clamav ( filtering order )?

How it works content_filter in case where is used spamassassin and clamav ? Here is example for one content_filter: http://www.postfix.org/FILTER_README.html And I see that sendmail command cant use the same content_filter otherwise it would be a…
Macsurf
  • 41
  • 5
0
votes
1 answer

xlsx extension file blocked in zimbra

So the issue is that i have been trying to send a mail from my server with xlsx file extension attachment but zimbra rejects the mail giving a message content is band BANNED CONTENTS ALERT Our content checker found banned name:…
ram khanal
  • 23
  • 1
  • 4
0
votes
1 answer

ClamD: cannot change socket location

Ubuntu 20.04.2 ClamAV 0.102.4 I want to use a different value for ClamD's LocalSocket directive but keep getting the following error: !LOCAL: Socket file /var/run/clamd.scan/clamd.sock could not be bound: Permission denied The defaults in…
0
votes
1 answer

Cloud bucket malware security

I have implemented an antivirus system using ClamAV on one of my apps which uses Google cloud storage for uploading files. Currently what I am doing is, listening to bucket upload, download it on one of my servers, scan it using ClamAV, and deleting…
0
votes
0 answers

Clamd using +1GB of memory

I've searched around and few similar questions where it was said that a few 100MB memory is normal for clamd. Now actually I see it using more than 1GB and recently I have frequently that my system starts using swap and in a few instances that I…
0
votes
1 answer

ClamAv + Microsoft Azure VM: Cannot connect to daemon from other VM

I got two VMs on Azure that are in the same subnet. One VM (10.1.0.6) has clamav daemon running, the other runs a Java Wildfly Application (10.1.0.5). I would like to send files from Java Application to the clam av daemon. I checked that Clamav is…
0
votes
1 answer

CLAMAV hangs while reading database

I restart clamav and review logs and see this Mon Jan 11 11:14:49 2010 -> +++ Started at Mon Jan 11 11:14:49 2010 Mon Jan 11 11:14:49 2010 -> clamd daemon 0.90.1 (OS: linux-gnu, ARCH: i386, CPU: i486) Mon Jan 11 11:14:49 2010 -> Log file size limit…
PeterMmm
  • 895
  • 16
  • 28
0
votes
1 answer

ubuntu 18.04: clamav running, tomcat dying

Ubuntu 18.04. 2Gb RAM + 512mb swap. When running clamav, it consumes 800+mb of memory because it loads all the signatures into the memory. Because of that, I set it to run every day at 3am instead of ongoing. So far, tomcat and clamav got along very…
Amos
  • 257
  • 3
  • 4
  • 10
0
votes
3 answers

Can I use Ansible to get a version number from clamAV

I am new to Ansible and googleing around i see how to install ClamAV using Ansible , but is there a way to just get the current version , I know I could just run it remotely via ssh
R.Merritt
  • 127
  • 1
  • 3
-1
votes
1 answer

CentOS 6 ClamAV scan unexpected results

I am trying to scan whole server with below command using clamav. However I already installed Malware detector. The server scans for upto a minute or two and found some unexpected scanning results where I am unable to find any solution while…
Akram
  • 3
  • 1
-1
votes
1 answer

Ubuntu Mysql stop working after outofmemory in a clamscan, mysqld.sock

I'm having daily problems with postman with autentification througth mysql on my Ubuntu14LTS Server. I think the problem arrise after a clamscan scron that breaks in an Out of Memory. In some way mysql socket gets break and I can't read my emails…
-1
votes
1 answer

Clamd cannot start

I am using Centos 6 and clamd (clamav daemon) cannot start: Here is the error message: Starting Clam AntiVirus Daemon: LibClamAV Error: cli_load(): Can't open file /var/clamav/lmd.user.hdb LibClamAV Error: cli_loaddbdir(): error loading database…
tonytz
  • 153
  • 1
  • 5
  • 11
-1
votes
2 answers

run_av (ClamAV-clamd) and ClamAV-clamd av-scanner FAILED - unexpected

I get a strange error when scanning email. Sep 17 15:13:26 mail amavis[616]: (00616-02) (!)run_av (ClamAV-clamd) FAILED - unexpected , output="/var/lib/amavis/tmp/amavis-20140917T141903-00616-Vqttx7KO/parts: lstat() failed: Permission denied.…
Max Muster
  • 337
  • 2
  • 6
  • 27
1 2 3
10
11