Questions tagged [clamav]

Antivirus for UNIX-like systems primarily for mailserver integration.

Clam AntiVirus is an open source (GPL) anti-virus toolkit for UNIX, designed especially for e-mail scanning on mail gateways. It provides a number of utilities including a flexible and scalable multi-threaded daemon, a command line scanner and advanced tool for automatic database updates. The core of the package is an anti-virus engine available in a form of shared library.

  • command-line scanner
  • fast, multi-threaded daemon with support for on-access scanning
  • milter interface for sendmail
  • advanced database updater with support for scripted updates and digital signatures
  • virus scanner C library
  • on-access scanning (Linux® and FreeBSD®)
  • virus database updated multiple times per day (see home page for total number of signatures)
  • built-in support for various archive formats, including Zip, RAR, Tar, Gzip, Bzip2, OLE2, Cabinet, CHM, BinHex, SIS and others
  • built-in support for almost all mail file formats
  • built-in support for ELF executables and Portable Executable files compressed with UPX, FSG, Petite, NsPack, wwpack32, MEW, Upack and obfuscated with SUE, Y0da Cryptor and others

Official site: www.clamav.net

158 questions
0
votes
1 answer

Postfix (Maia Mailguard) relayhost update ignored

I have a postfix mail server used in conjunction with Maia Mailguard, Amavis, and clamav for spam. I've upgraded the primary mail server and it has a new IP address. I change main.cf and transport to point to the new server 172.17.2.9 in…
W.Jackson
  • 113
  • 5
0
votes
0 answers

ClamAV can't open/parse

I installed clamAV on an EC2 instance running CentOS, i made the install and when I go to run 'sudo freshclam' i get ERROR: Can't open/parse the config file /usr/local/etc/freshclam.conf However if I try to navigate to that file it does not exist…
blau
  • 3
  • 3
0
votes
0 answers

ClamAV Anti-Virus not Classifying Virus Emails as Virus

I have installed Sendmail as my SMTP mail server, SpamAssassin as Spam Classifier and ClamAV Anti-Virus. I tested out sending my server a virus email eicar.txt Now I am receiving the virus email in my mail and not in the quarantine folder. To find…
0
votes
2 answers

clamd socket error in conjunction with amavisd (used for postfix) on CentOS 7

I can't seem to figure out a problem after a few hours of trouble-shooting and looking for similar cases. Like ohter email servers in the exact same configuration, the affected one is based on CentOS 7 running Postfix with Amavisd-new and ClamAV…
cora
  • 182
  • 6
0
votes
1 answer

Should `clamav-devel`, ` clamav-server-systemd`,`clamav-server` be installed if I only manual scan folder in one server?

In lots of how to install clamav in centos 7tutorial, all modules are installed,such like yum install clamav-server clamav-data clamav-update clamav-filesystem clamav clamav-scanner-systemd clamav-devel clamav-lib clamav-server-systemd. I want to…
kittygirl
  • 945
  • 5
  • 13
  • 33
0
votes
1 answer

MailScanner error "Cannot find Socket"

CentOS 7, mail server. Messages stopped going in and out. Tried to debug, saw this in /var/log/maillog: MailScanner[4786]: Cannot find Socket (/var/run/clamd.scan/clamd.sock) Exiting! But the socket has correct permissions: srw-rw-rw- 1 clamscan…
real_sm
  • 112
  • 2
  • 14
0
votes
1 answer

(Can't load main.ndb) ClamAV Deamon Virus signature DB Error

I installed ClamAV as a "normal" application and inside the daemon mode. After the installation, the daemon status says the following part. clamd[7425]: LibClamAV Error: cli_parseadd(): Problem adding signature (1b). clamd[7425]: LibClamAV Error:…
ZPascal
  • 143
  • 1
  • 1
  • 7
0
votes
1 answer

clamd: When has a signature reload completed?

One can send SIGUSR2 to a running clamd instance to reload the signatures. But how can I (from a script) determine, if the signatures have been reloaded? I can of course try "sleep 30" which will suffice in most cases (from my experience) but is…
Ralf Hildebrandt
  • 489
  • 1
  • 3
  • 12
0
votes
1 answer

Clam Unknown OSSEC Warning

There is a problem with Clam antivirus on my server. I am getting this notification from OSSEC once per day. I am not sure where to look or what the problem actually is. Could anyone point to the right direction? Received From:->/var/log/syslog …
JoaMika
  • 499
  • 2
  • 9
  • 21
0
votes
1 answer

postfix fails sending mails with clamav

I have a problem on my server running postfix with ClamAV, it doesn't send nor receives mails since yesterday, which is a really big deal for us.. So I checked the mail.log file and found out that all log lines were about ClamAV, so I tried to stop…
ovesco
  • 101
  • 2
0
votes
2 answers

CenOS: Is clamAV scanning files of a compressed archive attachment inside emails?

Is clamAV scanning files insides compressed archive inside emails? I was looking around to found an answer about this question. Somebody wrote that on some ubuntu distribution this is the default behaviour. However many forums says you have to…
Max Cuttins
  • 143
  • 1
  • 7
0
votes
1 answer

Limit ClamAV resources on scan or alternative solution

Environment Centos 6 Cpanel 32GB Ram 512gb SSD drive / about half used Took on managing a server and installed ClamAV. Used CRON to schedule a scan @ 1am. I notice that sites on the host stopped responding. Things like slow response to no…
techpad
  • 91
  • 1
  • 4
0
votes
0 answers

Postfix not sending, LibClamAV Error: mpool_malloc

This question is closely related this this one. However, in this case, clamav is going crazy and filling up boot.log, writing to it every second (and getting huge). Furthermore, postfix is totally dead. Postfix doesn't even write to mail.log or…
0
votes
1 answer

Clamav Error Internal Logger

I am running this cron job 30 01 * * * /usr/bin/freshclam --quiet; /usr/bin/clamscan --recursive --no-summary --infected / 2>/dev/null but i am receiving a daily email with error: ERROR: Problem with internal logger (UpdateLogFile =…
JoaMika
  • 499
  • 2
  • 9
  • 21
0
votes
1 answer

Most simple, easy to service and update DIY spam/virus filtering SMTP gateway

I run email for several companies, and I want to set up my own SMTP gateway to migrate their domains off hosted spam filtering services. I wanted an opinion from someone who actually runs email operations, what's to your mind the best setup I could…
galets
  • 806
  • 3
  • 7
  • 18