一、yum安装
这种方法安装后,病毒库默认地址是/var/lib/clamav。 二、编译安装
2.1:下载软件包#官网地址: http://www./downloads #Linux中下载地址: wget http://www./downloads/production/clamav-0.100.0.tar.gz 2.2:创建clamav用户和存放病毒库目录 #clamav用户和用户组
groupadd clamav && useradd -g clamav clamav && id clamav #日志存放目录 2.3:解压安装包tar xf clamav-0.100.0.tar.gz 2.4:安装依赖yum install gcc openssl openssl-devel -y 2.5:编译安装cd clamav-0.100.0/ 2.6:配置clamavcd /usr/local/clamav/etc
cp clamd.conf.sample clamd.conf cp freshclam.conf.sample freshclam.conf vim clamd.conf #Example 注释掉这一行. 添加下面三行: LogFile /usr/local/clamav/logs/clamd.log PidFile /usr/local/clamav/updata/clamd.pid DatabaseDirectory /usr/local/clamav/updata vim freshclam.conf
#Example 注释掉这一行.
添加下面三行
DatabaseDirectory /usr/local/clamav/updata
UpdateLogFile /usr/local/clamav/logs/freshclam.log
PidFile /usr/local/clamav/updata/freshclam.pid
2.7:启动clamavchown -R clamav.clamav /usr/local/clamav/
systemctl start clamav-freshclam.service 2.8:更新病毒库#先停止freshclam
systemctl stop clamav-freshclam.service #再更新 #更新完成启动
systemctl start clamav-freshclam.service
说明:如果在手动更新病毒库的时候遇到错误,此时就要删除掉旧的镜像地址文件#rm -f /var/lib/clamav/mirrors.dat,再手动更新一次病毒库。
2.9:扫描杀毒clamdscan:
clamdscan /usr clamscan:
扫描参数:
#扫描所有文件并且显示有问题的文件的扫描结果
clamscan -r --bell -i / #只显示找到的病毒信息 clamscan --no-summary -ri /tmp #扫描home clamscan --infected --remove --recursive /home 2.10:定时杀毒#让服务器每天晚上定时更新和杀毒,保存杀毒日志,crontab文件如下: 1 3 * * * /usr/local/clamav/bin/freshclam --quiet 20 3 * * * /usr/local/clamav/bin/clamscan -r /home --remove -l /var/log/clamscan.log |
|