1
|
yum install clamav clamav-server clamav-data clamav-update clamav-filesystem clamav-scanner-systemd clamav-devel clamav-lib clamav-server-systemd pcre* gcc zlib zlib-devel libssl-devel libssl openssl |
這種方法安裝后,病毒庫默認地址是/var/lib/clamav。
#官網(wǎng)地址: http://www.clamav.net/downloads #Linux中下載地址: wget http://www.clamav.net/downloads/production/clamav-0.100.0.tar.gz#參考文檔:
https://github.com/vrtadmin/clamav-faq/raw/master/manual/clamdoc.pdf
groupadd clamav && useradd -g clamav clamav && id clamav
#日志存放目錄
mkdir -p /usr/local/clamav/logs
touch /usr/local/clamav/logs/clamd.log
touch /usr/local/clamav/logs/freshclam.log
chown clamav.clamav /usr/local/clamav/logs/clamd.log
chown clamav.clamav /usr/local/clamav/logs/freshclam.log
#病毒存放目錄
mkdir -p /usr/local/clamav/updata
chown -R root.clamav /usr/local/clamav/
chown -R clamav.clamav /usr/local/clamav/updata/
tar xf clamav-0.100.0.tar.gz
yum install gcc openssl openssl-devel -y
cd clamav-0.100.0/
./configure --prefix=/usr/local/clamav --with-pcre
make && make install
echo $?
cp clamd.conf.sample clamd.conf cp freshclam.conf.sample freshclam.conf vim clamd.conf #Example 注釋掉這一行. 添加下面三行: LogFile /usr/local/clamav/logs/clamd.log PidFile /usr/local/clamav/updata/clamd.pid DatabaseDirectory /usr/local/clamav/updata
vim freshclam.conf
#Example 注釋掉這一行.
添加下面三行
DatabaseDirectory /usr/local/clamav/updata
UpdateLogFile /usr/local/clamav/logs/freshclam.log
PidFile /usr/local/clamav/updata/freshclam.pid
systemctl start clamav-freshclam.service
systemctl enable clamav-freshclam.service
systemctl status clamav-freshclam.service
systemctl stop clamav-freshclam.service
#再更新
/usr/local/clamav/bin/freshclam (根據(jù)網(wǎng)絡質量確定更新時長)
或者
cd /usr/local/clamav/share/clamav wget http://database.clamav.net/main.cvd wget http://database.clamav.net/daily.cvd wget http://database.clamav.net/bytecode.cvd
systemctl start clamav-freshclam.service
systemctl status clamav-freshclam.service
#創(chuàng)建軟鏈接
ln -s /usr/local/clamav/bin/clamscan /usr/local/sbin/clamscan
說明:如果在手動更新病毒庫的時候遇到錯誤,此時就要刪除掉舊的鏡像地址文件#rm -f /var/lib/clamav/mirrors.dat,再手動更新一次病毒庫。
clamdscan:
clamdscan /usr
clamscan:
掃描參數(shù):
clamscan -r --bell -i / #只顯示找到的病毒信息 clamscan --no-summary -ri /tmp #掃描home clamscan --infected --remove --recursive /home
#讓服務器每天晚上定時更新和殺毒,保存殺毒日志,crontab文件如下: 1 3 * * * /usr/local/clamav/bin/freshclam --quiet 20 3 * * * /usr/local/clamav/bin/clamscan -r /home --remove -l /var/log/clamscan.log