ClamAV clalcon无法扫描存档文件中存在的受感染文件



我正在测试ClamAV以检测机器上的病毒。

我在跑步clamscan -r -i "Path to folder containing archive that has infected file"

它无法检测到存档文件中存在的受感染文件。如果受感染的文件在zip之外,则它正在检测该文件。

我在scanner文件夹中创建了clamd.conf/clamav.conf,该文件夹已将scan archive设置为yes。

您的zip文件可能大于默认值。添加这些选项以运行扫描。

--max-filesize=#n
Extract and scan at most #n bytes from each archive. You may pass the value in kilobytes in format xK or xk, or megabytes in format xM or xm, where x is a number. This option protects your system against DoS attacks (default: 25 MB, max: <4 GB)
--max-scansize=#n
Extract and scan at most #n bytes from each archive. The size the archive plus the sum of the sizes of all files within archive count toward the scan size. For example, a 1M uncompressed archive containing a single 1M inner file counts as 2M toward max-scansize. You may pass the value in kilobytes in format xK or xk, or megabytes in format xM or xm, where x is a number. This option protects your system against DoS attacks (default: 100 MB, max: <4 GB)
--max-files=#n
Extract at most #n files from each scanned file (when this is an archive, a document or another kind of container). This option protects your system against DoS attacks (default: 10000)

参考文献:https://manpages.ubuntu.com/manpages/xenial/man1/clamscan.1.html

最新更新