Code: Select all
# clamdscan -c /etc/clamd.d/scan.conf --fdpass --no-summary --infected --multiscan /data /etc
/data/eicar.com: Eicar-Test-Signature FOUND
Code: Select all
#!/bin/sh
DIR_LIST="/data /etc /blah /blah2"
if systemctl is-active --quiet clamd@scan.service ; then
clamdscan -c /etc/clamd.d/scan.conf --fdpass --no-summary --infected --multiscan ${DIR_LIST} 2>/dev/null
else
echo "WARNING: clamd service not active. aborting scan."
fi
Code: Select all
/etc/cron.weekly/runclamdscan:
/data/eicar.com: Eicar-Test-Signature FOUND
/etc/gshadow-: Access denied. ERROR
/etc/shadow-: Access denied. ERROR
/etc/shadow: Access denied. ERROR
/etc/gshadow: Access denied. ERROR
Code: Select all
# getsebool -a |grep antivirus
antivirus_can_scan_system --> on
antivirus_use_jit --> on