{"id":61,"date":"2013-05-15T20:30:00","date_gmt":"2013-05-15T11:30:00","guid":{"rendered":"http:\/\/yokensaka.com\/centos\/?p=61"},"modified":"2014-07-19T20:09:37","modified_gmt":"2014-07-19T11:09:37","slug":"clamav-version-0-97-3%e3%81%ab%e3%82%a2%e3%83%83%e3%83%97%e3%83%87%e3%83%bc%e3%83%88","status":"publish","type":"post","link":"http:\/\/yokensaka.com\/centos\/?p=61","title":{"rendered":"ClamAV version: 0.97.3\u306b\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8"},"content":{"rendered":"<p>\u4eca\u307e\u3067\u306f\u3001ClamAV\u306e\u6700\u65b0\u7248\u304c\u51fa\u308b\u3068\u305d\u306e\u90fd\u5ea6wget\u3067\u30bd\u30fc\u30b9\u304b\u3089\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3057\u3066\u305f\u304c\u3001yum\u3067\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3059\u308b\u3053\u3068\u306b\u3057\u305f\u3002<br \/>\n<b>\u25a0\u53e4\u3044\u30d0\u30fc\u30b8\u30e7\u30f3\u306eclamav\u304c\u3042\u308b\u5834\u5408\u306f\u30a2\u30f3\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3057\u3066\u304a\u304f<\/b><\/p>\n<pre>\r\n\u30a2\u30f3\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u7528\u306b\u30d0\u30c3\u30af\u30a2\u30c3\u30d7\u3057\u3066\u3042\u3063\u305f\u30e2\u30b8\u30e5\u30fc\u30eb\u3092\u5c55\u958b\u3002\r\n[root@server1 ~]# tar zxvf clamav-0.97.2_self.tar.gz\r\nclamav-0.97.2\u306e\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3078\u79fb\u52d5\r\n[root@server1 ~]# cd clamav-0.97.2\r\nclamav-0.97.2\u306e\u30a2\u30f3\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\r\n[root@server1 clamav-0.97.2]# make uninstall\r\nclamav-0.97.2\u306e\u30d5\u30a1\u30a4\u30eb\u3068\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u30fc\u3092\u524a\u9664\r\n[root@server1 clamav-0.97.2]# cd\r\n[root@server1 ~]# rm -f clamav-0.97.2_self.tar.gz\r\n[root@server1 ~]# rm -rf clamav-0.97.2\r\n\u53e4\u3044\u30d0\u30fc\u30b8\u30e7\u30f3\u306e\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u30fc\u306e\u524a\u9664\r\n[root@server1 ~]# rm -rf \/usr\/local\/clamav\r\n<\/pre>\n<p><b>\u25a0Clam AntiVirus\u306e\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb<\/b><br \/>\nyum\u3067\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3059\u308b\u5834\u5408\u3001<a href=\"http:\/\/yokensaka.com\/centos\/index.php?catid=4&#038;blogid=1\">\u30ec\u30dd\u30b8\u30c8\u30ea\u306bEPEL\u3092\u8ffd\u52a0<\/a>\u3057\u3066\u304a\u304f\u5fc5\u8981\u304c\u3042\u308b<\/p>\n<pre>\r\n[root@server1 ~]# yum -y install clamd\r\nLoaded plugins: fastestmirror, refresh-packagekit\r\nLoading mirror speeds from cached hostfile\r\n* base: rsync.atworks.co.jp\r\n* centosplus: centos.tt.co.kr\r\n* epel: ftp.yz.yamagata-u.ac.jp\r\n* extras: rsync.atworks.co.jp\r\n* updates: centos.tt.co.kr\r\nSetting up Install Process\r\nResolving Dependencies\r\n--> Running transaction check\r\n---> Package clamd.i686 0:0.97.3-3.el6 will be installed\r\n--> Finished Dependency Resolution\r\nDependencies Resolved\r\n====================================================================================================\r\nPackage               Arch                 Version                      Repository            Size\r\n====================================================================================================\r\nInstalling:\r\nclamd                 i686                 0.97.3-3.el6                 epel                 128 k\r\nTransaction Summary\r\n====================================================================================================\r\nInstall       1 Package(s)\r\nTotal download size: 128 k\r\nInstalled size: 380 k\r\nDownloading Packages:\r\nclamd-0.97.3-3.el6.i686.rpm                                                  | 128 kB     00:00\r\nRunning rpm_check_debug\r\nRunning Transaction Test\r\nTransaction Test Succeeded\r\nRunning Transaction\r\nInstalling : clamd-0.97.3-3.el6.i686                                                          1\/1\r\nInstalled:\r\nclamd.i686 0:0.97.3-3.el6\r\nComplete!\r\n<\/pre>\n<p><b>\u25a0\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb\u5909\u66f4<\/b><br \/>\n\u30eb\u30fc\u30c8\u3067\u52d5\u4f5c\u3059\u308b\u3088\u3046\u306b\u5909\u66f4<\/p>\n<pre>\r\n[root@server\uff11 ~]# vi \/etc\/clamd.conf\r\nUser clam\r\n\u2193\r\n#User clam\r\n<\/pre>\n<p><b>\u25a0Clam AntiVirus\u306e\u8d77\u52d5<\/b><\/p>\n<pre>\r\n[root@server1 ~]# \/etc\/rc.d\/init.d\/clamd start\r\nStarting Clam AntiVirus Daemon:                            [  OK  ]\r\nclamd\u306e\u81ea\u52d5\u8d77\u52d5\u8a2d\u5b9a\r\n[root@server1 ~]# chkconfig clamd on\r\n[root@server1 ~]# chkconfig --list clamd\r\nclamd           0:off   1:off   2:on    3:on    4:on    5:on    6:off\r\n<\/pre>\n<p><b>\u25a0\u300cfreshclam\u300d\u3092\u4f7f\u7528\u3057\u3066VirusDB\u3092\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8<\/b><\/p>\n<pre>\r\n\u30a6\u30a3\u30eb\u30b9\u5b9a\u7fa9\u30d5\u30a1\u30a4\u30eb\u306e\u66f4\u65b0\u6a5f\u80fd\u3092\u6709\u52b9\u5316\r\n[root@server1 ~]# sed -i 's\/Example\/#Example\/g' \/etc\/freshclam.conf\r\nVirusDB\u3092\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\r\n[root@server1 ~]# freshclam\r\nClamAV update process started at Wed Feb 15 20:23:11 2012\r\nmain.cvd is up to date (version: 54, sigs: 1044387, f-level: 60, builder: sven)\r\nDownloading daily-14460.cdiff [100%]\r\ndaily.cld updated (version: 14460, sigs: 97288, f-level: 63, builder: ccordes)\r\nbytecode.cld is up to date (version: 167, sigs: 40, f-level: 63, builder: edwin)\r\nDatabase updated (1141715 signatures) from db.jp.clamav.net (IP: 203.178.137.175)\r\n<\/pre>\n<p><b>\u25a0\u30a6\u30a3\u30eb\u30b9\u30b9\u30ad\u30e3\u30f3\u78ba\u8a8d\uff08\/etc\/passwd\u3092\u30b9\u30ad\u30e3\u30f3\u3057\u3066\u307f\u308b\uff09<\/b><\/p>\n<pre>\r\n[root@server1 ~]# clamscan --infected --remove --recursive \/etc\/passwd\r\n----------- SCAN SUMMARY -----------\r\nKnown viruses: 1140422\r\nEngine version: 0.97.3\r\nScanned directories: 0\r\nScanned files: 1\r\nInfected files: 0\r\nData scanned: 0.00 MB\r\nData read: 0.00 MB (ratio 0.00:1)\r\nTime: 8.730 sec (0 m 8 s)\r\nversion: 0.97.3\u3067\u30b9\u30ad\u30e3\u30f3\u3055\u308c\u3066\u308b\u3053\u3068\u3092\u78ba\u8a8d\r\n<\/pre>\n<p><b>\u25a0Clam AntiVirus\u306e\u5b9a\u671f\u81ea\u52d5\u5b9f\u884c\u8a2d\u5b9a<\/b><\/p>\n<pre>\r\n\u6bce\u65e5\u81ea\u52d5\u7684\u306b\u30a6\u30a3\u30eb\u30b9\u5b9a\u7fa9\u30d5\u30a1\u30a4\u30eb\u6700\u65b0\u5316\u3057\u3066\u3001\u5168\u3066\u306e\u30d5\u30a1\u30a4\u30eb\u306e\u30a6\u30a3\u30eb\u30b9\u30b9\u30ad\u30e3\u30f3\u3092\u884c\u3046\u30b9\u30d7\u30ea\u30af\u30c8\u306e\u4f5c\u6210\r\n[root@server1 ~]# vi clamscan\r\n#!\/bin\/bash\r\nPATH=\/usr\/bin:\/bin\r\n# clamd update\r\nyum -y update clamd > \/dev\/null 2>&1\r\n# excludelist\r\nexcludelist=\/root\/clamscan.exclude\r\nif [ -s $excludelist ]; then\r\nfor i in `cat $excludelist`\r\ndo\r\nif [ $(echo \"$i\"|grep \\\/$) ]; then\r\ni=`echo $i|sed -e 's\/^\\([^ ]*\\)\\\/$\/\\1\/p' -e d`\r\nexcludeopt=\"${excludeopt} --exclude-dir=^$i\"\r\nelse\r\nexcludeopt=\"${excludeopt} --exclude=^$i\"\r\nfi\r\ndone\r\nfi\r\n# scan\r\nCLAMSCANTMP=`mktemp`\r\nclamscan --recursive --remove ${excludeopt} \/ > $CLAMSCANTMP 2>&1\r\n[ ! -z \"$(grep FOUND$ $CLAMSCANTMP)\" ] && \\\r\n# report\r\ngrep FOUND$ $CLAMSCANTMP | mail -s \"Virus Found in `hostname`\" root\r\nrm -f $CLAMSCANTMP\r\n<\/pre>\n<p><b>\u25a0Clam AntiVirus\u5b9a\u671f\u81ea\u52d5\u5b9f\u884c\u30b9\u30af\u30ea\u30d7\u30c8\u306b\u5b9f\u884c\u6a29\u9650\u4ed8\u52a0<\/b><\/p>\n<pre>\r\n[root@server1 ~]# chmod +x clamscan\r\n<\/pre>\n<p><b>\u25a0\u30a6\u30a3\u30eb\u30b9\u30b9\u30ad\u30e3\u30f3\u5b9f\u884c\u30b9\u30af\u30ea\u30d7\u30c8\u3092\u6bce\u65e5\u81ea\u52d5\u5b9f\u884c\u3055\u308c\u308b\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3078\u79fb\u52d5<\/b><\/p>\n<pre>\r\n[root@server1 ~]# mv clamscan \/etc\/cron.daily\/\r\n<\/pre>\n<p><b>\u25a0\u30b9\u30ad\u30e3\u30f3\u9664\u5916\u8a2d\u5b9a<\/b><\/p>\n<pre>\/backup\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3068\/sys\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3092\u30b9\u30ad\u30e3\u30f3\u5bfe\u8c61\u5916\u306b\u3059\u308b\u3088\u3046\u306b\u8a2d\u5b9a\r\n[root@server1 ~]# echo \"\/backup\/\" &gt;&gt; clamscan.exclude\r\n[root@server1 ~]# echo \"\/sys\/\" &gt;&gt; clamscan.exclude\r\n<\/pre>\n<div align=right><a href=\"#\">\u25b2 \u30da\u30fc\u30b8\u30c8\u30c3\u30d7\u3078<\/a><\/div>\n","protected":false},"excerpt":{"rendered":"<p>\u4eca\u307e\u3067\u306f\u3001ClamAV\u306e\u6700\u65b0\u7248\u304c\u51fa\u308b\u3068\u305d\u306e\u90fd\u5ea6wget\u3067\u30bd\u30fc\u30b9\u304b\u3089\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3057 &hellip; <a href=\"http:\/\/yokensaka.com\/centos\/?p=61\">\u7d9a\u304d\u3092\u8aad\u3080 <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[],"class_list":["post-61","post","type-post","status-publish","format-standard","hentry","category-clam-antivirus"],"_links":{"self":[{"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=\/wp\/v2\/posts\/61","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=61"}],"version-history":[{"count":1,"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=\/wp\/v2\/posts\/61\/revisions"}],"predecessor-version":[{"id":228,"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=\/wp\/v2\/posts\/61\/revisions\/228"}],"wp:attachment":[{"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=61"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=61"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/yokensaka.com\/centos\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=61"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}