yum安裝
wget -O /etc/yum.repos.d/epel.repo http://mirrors.aliyun.com/repo/epel-7.repo ##epel源 yum install -y clamav
編譯安裝
1.安裝依賴環境
yum install -y zlib openssl-devel yum groupinstall -y "Development Tools"
apt install -y zlib1g zlib1g.dev openssl vim build-essential libssl-dev #ubuntu/debian安裝
2.安裝clamav軟件包
wget http://www.clamav.net/downloads/production/clamav-0.101.0.tar.gz tar zxvf clamav-0.101.0.tar.gz cd clamav-0.101.0 ./configure --prefix=/usr/local/clamav make && make install
3.修改配置文件
cp /usr/local/clamav/etc/clamd.conf.sample /usr/local/clamav/etc/clamd.conf sed -i '8s/Example/#Example/g' /usr/local/clamav/etc/clamd.conf echo 'LogFile /usr/local/clamav/logs/clamd.log' >> /usr/local/clamav/etc/clamd.conf echo 'PidFile /usr/local/clamav/updata/clamd.pid' >> /usr/local/clamav/etc/clamd.conf echo 'DatabaseDirectory /usr/local/clamav/updata/clamav' >> /usr/local/clamav/etc/clamd.conf
cp /usr/local/clamav/etc/freshclam.conf.sample /usr/local/clamav/etc/freshclam.conf sed -i '8s/Example/#Example/g' /usr/local/clamav/etc/freshclam.conf echo 'DatabaseDirectory /usr/local/clamav/updata' >> /usr/local/clamav/etc/freshclam.conf echo 'UpdateLogFile /usr/local/clamav/logs/freshclam.log' >> /usr/local/clamav/etc/freshclam.conf echo 'PidFile /usr/local/clamav/updata/freshclam.pid' >> /usr/local/clamav/etc/freshclam.conf
4.創建用戶
groupadd clamav
useradd -g clamav clamav
5.創建目錄文件
mkdir /usr/local/clamav/logs mkdir /usr/local/clamav/updata
touch /usr/local/clamav/logs/freshclam.log chown clamav:clamav /usr/local/clamav/logs/freshclam.log touch /usr/local/clamav/logs/clamd.log chown clamav:clamav /usr/local/clamav/logs/clamd.log chown clamav:clamav /usr/local/clamav/updata
6.升級病毒庫(需要服務器連通外網)
/usr/local/clamav/bin/freshclam
7.掃描病毒
/usr/local/clamav/bin/clamscan -r --bell -i /
clamscan常用參數
| -r/--recursive[=yes/no] | 所有文件 |
| --log=FILE/-l FILE | 增加掃描報告 |
| clamscan -l /var/log/clamscan.log / | |
| --move [路徑] | 移動病毒文件至 |
| --remove [路徑] | 刪除病毒文件 |
| --quiet | 只輸出錯誤消息 |
| --infected/-i | 只輸出感染文件 |
| --suppress-ok-results/-o | 跳過掃描OK的文件 |
| --bell | 掃描到病毒文件發出警報聲音 |
| --unzip(unrar) | 解壓壓縮文件掃描 |
