Questions tagged [clamav]

Antivirus for UNIX-like systems primarily for mailserver integration.

Clam AntiVirus is an open source (GPL) anti-virus toolkit for UNIX, designed especially for e-mail scanning on mail gateways. It provides a number of utilities including a flexible and scalable multi-threaded daemon, a command line scanner and advanced tool for automatic database updates. The core of the package is an anti-virus engine available in a form of shared library.

  • command-line scanner
  • fast, multi-threaded daemon with support for on-access scanning
  • milter interface for sendmail
  • advanced database updater with support for scripted updates and digital signatures
  • virus scanner C library
  • on-access scanning (Linux® and FreeBSD®)
  • virus database updated multiple times per day (see home page for total number of signatures)
  • built-in support for various archive formats, including Zip, RAR, Tar, Gzip, Bzip2, OLE2, Cabinet, CHM, BinHex, SIS and others
  • built-in support for almost all mail file formats
  • built-in support for ELF executables and Portable Executable files compressed with UPX, FSG, Petite, NsPack, wwpack32, MEW, Upack and obfuscated with SUE, Y0da Cryptor and others

Official site: www.clamav.net

158 questions
0
votes
1 answer

iRedMail problem with amavis, clamav and freshclam

I have installed iRedMail on Centos and have problem with starting freshclam (after service freshclam start system says that freshclam is already started but service freshclam status says that freshclam is stopped). Freshclam log file is…
B14D3
  • 5,188
  • 15
  • 64
  • 83
0
votes
1 answer

CLAMAV Issue after i removed it

Here is my issue: I removed clamav, spamassasin, and amavis and now I am getting this in my Citadel email box every day from some cron job that is searching for Clamav. How do I amend the Cron job to stop checking for Clamav? Where is the cron job…
Ubuntu User
  • 71
  • 2
  • 3
  • 11
0
votes
1 answer

Enable Google Safe Browsing in ClamAV

I'm trying to enable Google Safe Browsing anti phishing/malware filtering on my mail server using ClamAV. I enabled it in freshclam.conf, and I got a fresh new safebrowsing.cld file in my datadir. But when I run a scan, through clamscan or…
Antares
  • 191
  • 1
  • 2
  • 14
0
votes
2 answers

Zimbra, how to turn off spamassasin and clamAV

We are using Zimbra 5.0.18 and I like to know how permanetly disable spamassasin and clamav. We have ironport so no wories about spam and malware.
user55792
0
votes
2 answers

Add Clamd as a service to CentOS?

As I understand I think I need to add something to init.d, but I am not sure what to add. At the moment to start clamav I have to do clamd start. I would like it as a service so I can start it on run level 3 as a service. I realize I could probably…
Joshua Enfield
  • 3,454
  • 8
  • 42
  • 59
0
votes
2 answers

ClamAV eating up all available disk space

Today I found that my Redhat server has run out of hard disk space. The culprit seems to be a program called Clamav that fills /tmp directory with thousands of subfolders with names like clamav-004adb870cd79534. All these folders contain this: …
Ra.
  • 217
  • 5
  • 11
0
votes
1 answer

Postfix/ClamAV not stopping viruses under Virtualmin

I am using Virtualmin and have it set up to have Postfix scan incoming emails with ClamAV (using clamdscan) and delete any emails which contain a virus. However when I email myself the EICAR test string, it comes through just fine. I know ClamAV…
Josh
  • 9,190
  • 28
  • 80
  • 128
0
votes
0 answers

ClamAV didn't see virus inside an Archive

/home/folder/clam_daily.sh: OK /home/folder/.sudo_as_admin_successful: Empty file /home/folder/.selected_editor: OK /home/folder/PROTECTAgentInstaller.tar.gz: OK /home/folder/.bash_logout: OK /home/folder/report.html: OK /home/folder/.profile:…
0
votes
1 answer

Completely disable temp files/temp directory in ClamAV via clamd.conf

Is there a way to fully disable the temp files/temp directory feature in ClamAV via clamd.conf such that no files are written to disk, even transiently?
A X
  • 469
  • 4
  • 10
  • 31
0
votes
1 answer

Large test virus file for ClamAV

I need a test file larger than 10K that will trigger ClamAV As per Large Virus File with EICAR-Test-Signature not identified by the clamav library , ClamAV will not detect the EICAR test virus when it is embedded inside a larger file (even though…
Rich
  • 704
  • 14
  • 30
0
votes
1 answer

Why does status says it's dead and subsys locked, but it still running without issue?

Whenever I start Amavisd, the reports starting OK, but a status check says it's dead. $ service amavisd start Starting amavisd: [ OK ] $ service amavisd status amavisd dead but subsys locked But Amavisd…
dandan
  • 158
  • 7
0
votes
0 answers

Amavis Configuration on Ubuntu 20.04 / Port 10025 already in use

i try to configure amavis on my ubuntu 20.04 with working postfix and kopano. Postfix crashes with the following error: Jan 10 11:23:52 mail postfix/postfix-script[143585]: fatal: cannot execute /usr/sbin/postconf! Jan 10 11:24:32 mail…
nils50122
  • 21
  • 1
  • 7
0
votes
0 answers

Clamav is very slow with tcp

I'm using clamonacc on my desktop computer and servers. I use a raspberry pi as clamd server. The clamd process only uses ~25% of all 4 cores so with htop I see it's using like ~100% and 400% is the maximum a process could use because the raspberry…
france1
  • 23
  • 9
0
votes
1 answer

clamav - clamd error when setup as daemon (mac osx)

Issue: Setting up clamav as a daemon process in mac osx throws some cumbersome errors and warnings while doing the setup and the documentation is good, but not perfect. I ran into some permission issues, file location issues, etc. Things that are…
codelinx
  • 1
  • 1
0
votes
1 answer

SELinux prevent connection clamd_port_t:tcp_socket

We have API Server (tomcat) which has clamAV configuration to scan any uploaded file to the system. clamAV configuration will require the API server to connect to clamAV server. SELinux is enabled on both servers and whenever we try to upload files…