Antivirus Clamav perlu atau tidak?


Status
Not open for further replies.

sigmabisnis

Hosting Guru
Verified Provider
Ya, clamAV juga tidak menjamin itu trojan (iframe) kena deteksi scan-nya. Yang pernah saya alami waktu website ada yg terinfeksi, kemudian scan... memang terdeteksi itu trojan/iframe yg ada merasuki file-file PHP :)) dan dikira udah bersih.
eh, gak taunya... ketika saya coba pake AntiVirus Ka*per*ky itu baru keditek lagi itu trojan bersarang pada file2 Javascript... :D
 

Wien Dk

Apprentice 1.0
Pemakaian ClamAV paling tinggi.. bisa ampe 95Mb :mad:
padahal service yang lain
httpd menthog di 29Mb :D
sql anteng di 30 - 60Mb

walopun cuma berapa persen dari ram, liat nya risih..
 

Wien Dk

Apprentice 1.0
pernah juga 1 gb memory habis karena clamav... saya uninstall dah terpaksa... padahal maksudnya ingin web nya secure, tapi kok malah berat... :(.. ya sudah terima kasih atas jawabannya heheheh

walah tinggi bgt mas, config nya di centang semua ya? atau karena usernya yg banyak bgt ya?
 

robert

Beginner 2.0
ClamAV sangat penting!
berikut ini cara installnya, PASTIKAN ANDA TIDAK MENG-INSTALL ClamAV DARI CPANEL.
Installing ClamAV with MailScanner

These instructions will configure ClamAV to use the clamd daemon:

* Make sure clamavconnector is NOT installed in WHM > Manage Plugins as this will break MailScanner

* If you would like to verify ClamAV's digital signatures on the virus definition files as
they are updated through freshclam, you need to install GMP first:
START----------------------------------------
1.# /scripts/ensurerpm gmp gmp-devel
----------------------------------------
* Next you will need to create a user for clamav to use:
-----------------------
2.# useradd clamav
-----------------------
Some OS's require you to add the group as well:
--------------------
3.# groupadd clamav
--------------------
Don't worry if the user and/or group already exist.

* Download the latest stable ClamAV distribution from http://www.clamav.net
Note: If you are running Fedora Core 4 or earlier, you cannot install any version
of ClamAV later than 0.91.2 because of a broken gcc.
==> -------------------------------------------------------------------------------------------------
4.# wget http://sourceforge.net/projects/clamav/files/clamav/0.97/clamav-0.97.tar.gz/download
-------------------------------------------------------------------------------------------------
* Expand the distribution and cd into the resultant directory and build ClamAV using:
-----------------------
5.# tar -xzf clamav-0.97.tar.gz
-----------------------
6.# cd clamav-0.97
------------------------------------
7.# ./configure --disable-zlib-vcheck
--------
8.# make
--------
9.# make install
========================
10* pico -w /usr/local/etc/freshclam.conf
Comment out the line (put a # as the first character on the line) near the top that says simply:
Example

11* pico -w /usr/local/etc/clamd.conf
Comment out the line (put a # as the first character on the line) near the top that says simply:
Example

12* pico -w /usr/local/etc/clamd.conf
Change the following line:
#LocalSocket /tmp/clamd.socket
to this:
LocalSocket /tmp/clamd

13* Run ldconfig to create the necessary links and cache to most recent shared libraries
# ldconfig

14* Run freshclam to download the latest definitions:
# freshclam
 

tokohosting

Expert 1.0
kalau pakai cpanel mudah sih, yang direct admin agak susah.. tetapi sudah terselesaikan kok... pakai yum aja udah keinstal :o
 

Wien Dk

Apprentice 1.0
ClamAV sangat penting!
berikut ini cara installnya, PASTIKAN ANDA TIDAK MENG-INSTALL ClamAV DARI CPANEL.
Installing ClamAV with MailScanner

These instructions will configure ClamAV to use the clamd daemon:

* Make sure clamavconnector is NOT installed in WHM > Manage Plugins as this will break MailScanner

* If you would like to verify ClamAV's digital signatures on the virus definition files as
they are updated through freshclam, you need to install GMP first:
START----------------------------------------
1.# /scripts/ensurerpm gmp gmp-devel
----------------------------------------
* Next you will need to create a user for clamav to use:
-----------------------
2.# useradd clamav
-----------------------
Some OS's require you to add the group as well:
--------------------
3.# groupadd clamav
--------------------
Don't worry if the user and/or group already exist.

* Download the latest stable ClamAV distribution from http://www.clamav.net
Note: If you are running Fedora Core 4 or earlier, you cannot install any version
of ClamAV later than 0.91.2 because of a broken gcc.
==> -------------------------------------------------------------------------------------------------
4.# wget http://sourceforge.net/projects/clamav/files/clamav/0.97/clamav-0.97.tar.gz/download
-------------------------------------------------------------------------------------------------
* Expand the distribution and cd into the resultant directory and build ClamAV using:
-----------------------
5.# tar -xzf clamav-0.97.tar.gz
-----------------------
6.# cd clamav-0.97
------------------------------------
7.# ./configure --disable-zlib-vcheck
--------
8.# make
--------
9.# make install
========================
10* pico -w /usr/local/etc/freshclam.conf
Comment out the line (put a # as the first character on the line) near the top that says simply:
Example

11* pico -w /usr/local/etc/clamd.conf
Comment out the line (put a # as the first character on the line) near the top that says simply:
Example

12* pico -w /usr/local/etc/clamd.conf
Change the following line:
#LocalSocket /tmp/clamd.socket
to this:
LocalSocket /tmp/clamd

13* Run ldconfig to create the necessary links and cache to most recent shared libraries
# ldconfig

14* Run freshclam to download the latest definitions:
# freshclam

Bedanya apa ya dgn yg di cpanel ?
 

kotakomputer

New Member
Sedapat mungkin av wajib jalan, kecuali kondisi cpu dan memory mem tidak memungkinkan. Yg perlu diperhatikan adalah bagaimana agar av tidak dipaksa kerja keras:
- aktifkan juga spamd dan bl, sehingga sebagian sudah tersaring
- user jangan boleh scan ke semua folder, cukup folder2 penting saja. folder yg lain cukup admin saja yg scanning. "Scan Entire Home Directory = Disable"
- jika scan email enable, mk pada level user: "Scan Mail = Disable", shg email2 yg sudah di-scan tidak perlu di-scan lagi
- limit smtp speed pada svr atau ip yang teridentifikasi virus/spam. "Ratelimit suspicious SMTP servers = Enable"

Sebenarnya sebagian besar virus menyerang Windows, jadi server Linux aman2 saja. Pada svr yang terinstall clamav maupun tidak maka tidak ada perbedaan yg significant pada level server, perbedaan hanya terasa di level user (tetapi user umumnya sudah memiliki av di local pc).
 
Status
Not open for further replies.

Top