{"id":8365,"date":"2021-09-28T14:00:06","date_gmt":"2021-09-28T05:00:06","guid":{"rendered":"http:\/\/www.k-in.co.jp\/niwakan\/?p=8365"},"modified":"2024-11-12T15:58:54","modified_gmt":"2024-11-12T06:58:54","slug":"server%e3%81%ae%e7%a7%bb%e8%a1%8c%ef%bc%88clamav-%e3%81%9d%e3%81%ae3%ef%bc%89","status":"publish","type":"post","link":"https:\/\/www.k-in.co.jp\/niwakan\/archives\/2021\/09\/8365\/","title":{"rendered":"Server\u306e\u79fb\u884c\uff08ClamAV \u305d\u306e3\uff09"},"content":{"rendered":"<p>\u7740\u3005\uff08\uff1f\uff09\u3068ClamAV\u306e\u8a2d\u5b9a\u304c\u9032\u3093\u3067\u3044\u308b\u3002<br \/>\n\u3068\u601d\u3044\u305f\u3044\u3002<br \/>\n<!--more--><\/p>\n<p>\u73fe\u6642\u70b9\u3067\u306f\u30b9\u30b1\u30b8\u30e5\u30fc\u30eb\u304c\u3069\u3046\u306a\u3063\u3066\u3044\u308b\u306e\u304b\u5224\u3089\u306a\u3044\u3002<br \/>\n\u3057\u304b\u3057\u3001<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"shell\">-rw-r--r-- 1 root _clamav 393942 9 28 13:18 ClamavScanOnAccess.log\r\n-rw-r--r-- 1 root _clamav 0 3 8 2021 clamav.log\r\n-rw-r--r-- 1 root _clamav 785260 9 28 13:12 clamd.log\r\n-rw-r--r-- 1 _clamav _clamav 5276 9 28 12:59 freshclam.log<\/pre>\n<p>clams.log\u3068freshclam.log\u306f\u4e00\u822c\u306e\u8aad\u307f\u8fbc\u307f\u4e0d\u53ef\u3060\u3063\u305f\u304c\u3001\u4e00\u3005sudo less\u3068\u5165\u529b\u3059\u308b\u306e\u304c\u9762\u5012\u306a\u306e\u3067\uff08\u305f\u3063\u305f4\u5b57\u306a\u306e\u306b\u2026\u2026\uff09\u30d1\u30fc\u30df\u30c3\u30b7\u30e7\u30f3\u3092\u5909\u66f4\u3057\u305f\u3002<br \/>\nfreshclam.log\u4ee5\u5916\u3001\u5c0f\u52c7\u8005\u304croot\u306a\u306e\u306f\u554f\u984c\u3042\u308b\u306e\u304b\u7121\u3044\u306e\u304b\u3002\u66f8\u304d\u8fbc\u307f\u306f\u3055\u308c\u3066\u3044\u308b\u304b\u3089\u653e\u3063\u3066\u3044\u3044\u306e\u304b\u60aa\u3044\u306e\u304b\u3002\u4e00\u5fdc_clamav\u306b\u5909\u66f4\u3057\u3088\u3046\u3002\u305d\u3046\u3057\u3088\u3046\u3002<\/p>\n<p>\u4e00\u3064\u76ee\u3002ClamavScanOnAccess.log\u3002<br \/>\nUser\/***\/Dexktop\u3068Download\u306b\u30d5\u30a1\u30a4\u30eb\u3092\u7f6e\u304f\u3068\u3001\u901f\u653b\u3067\u30b9\u30ad\u30e3\u30f3\u3057\u3066\u3044\u308b\u306e\u304cLog\u3067\u5224\u3063\u305f\u3002ClamavScanOnAccess\u306f\u52d5\u3044\u3066\u3044\u308b\u3089\u3057\u3044\u3002<br \/>\nServer\u5074\u306e\u5834\u5408\u3001\u516c\u958b\u3057\u3066\u3044\u308b\u30d5\u30a9\u30eb\u30c0\u3092\u542b\u3081\u308b\u8a2d\u5b9a\u304c\u3069\u3053\u304b\u306b\u3042\u308b\u7b48\u3002<br \/>\n\u591a\u5206\u3001clamd.conf\u3068\u898b\u5f53\u3092\u3064\u3051\u308b\u3002<br \/>\n\u304c\u3001\u9055\u3063\u305f\u3002<strong>OnAccessIncludePath<\/strong>\u3092\u8ffd\u52a0\u3057\u3066\u3082\uff08\u305d\u3082\u305d\u3082\/Users\u304c\u7121\u304b\u3063\u305f\uff09\u4e00\u5411\u306b\u78ba\u8a8d\u306b\u884c\u304b\u306a\u3044\u3002<br \/>\n\/opt\/local\/etc\/LaunchDaemon\/\u3092\u63a2\u3059\u3068ClamavScanOnAccess.wrapper\u3068\u3044\u3046\u306e\u304c\u3042\u3063\u305f\u3002<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"shell\">USER_HOMEDIRS=($(\/usr\/bin\/dscacheutil -q user | \/usr\/bin\/grep -A 3 -B 2 -E -e '^uid: (?:\\d*5\\d\\d|\\d{4,})' | ${prefix}\/bin\/pcregrep -B 5 -e '^shell: (?!\/usr\/bin\/false).*' | ${prefix}\/bin\/pcregrep -A 5 -e '^name: (?!_).*' | \/usr\/bin\/grep -e '^dir: .*\/Users\/' | \/usr\/bin\/sed -e 's\/^dir: \/\/'))\r\nUSER_DOWNLOADSDIRS=($(for d in ${USER_HOMEDIRS[@]}; do echo \"${d}\/Downloads\" ; done))\r\nUSER_DESKTOPDIRS=($(for d in ${USER_HOMEDIRS[@]}; do echo \"${d}\/Desktop\" ; done))<\/pre>\n<p>\u3053\u306e\u8fba\u304c\u975e\u5e38\u306b\u6c17\u306b\u306a\u308b\u3002<br \/>\n\u6700\u521d\u304b\u3089\u3001\/Users\u4e0b\u306eDownload\u3068Desktop\u3057\u304b\u8208\u5473\u304c\u7121\u3044\u3088\u3046\u3060\u3002\u3069\u3046\u3059\u308a\u3083\u3048\u3048\u306e\u3093\uff08\u6d99\uff09<\/p>\n<p>\u4e8c\u3064\u76ee\u3002clamav.log\u3002<br \/>\n\u66f8\u304d\u8fbc\u307f\u304c\u306a\u3044\u306e\u3067\u52d5\u4f5c\u3057\u3066\u3044\u308b\u306e\u304b\u3069\u3046\u304b\u5224\u3089\u3093\u3002<\/p>\n<p>\u4e09\u3064\u76ee\u3002clamd.log\u3002<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"shell\">+++ Started at Tue Sep 28 00:11:12 2021\r\nReceived 0 file descriptor(s) from systemd.\r\nclamd daemon 0.104.0 (OS: Darwin, ARCH: x86_64, CPU: x86_64)\r\nLog file size limited to 2097152 bytes.\r\nReading databases from \/opt\/local\/share\/clamav\r\nIncluded PUA categories: RAT Spy Server Script\r\nBytecode: Security mode set to \"TrustSigned\".\r\nERROR: Can't open file or directory<\/pre>\n<p>\u3046\u3049\u3046\u300110\u5206\u3054\u3068\u306b\u30a8\u30e9\u30fc\u3092\u5410\u3044\u3066\u3044\u305f\u301c\u3002<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"shell\">sudo freshclam<\/pre>\n<p>\u3067\u3001\u30c7\u30fc\u30bf\u30d9\u30fc\u30b9\u3092\u65b0\u898f\u4f5c\u6210\u3057\u305f\u3089\u30a8\u30e9\u30fc\u304c\u51fa\u306a\u304f\u306a\u3063\u305f\u3002<br \/>\n\u4f55\u6642\u306e\u3053\u3068\u3060\u304b\u826f\u304f\u5224\u3089\u306a\u3044\u306e\u3067\u3001clamd.conf\u3092\u7de8\u96c6\u3059\u308b\u3002<\/p>\n<pre class=\"EnlighterJSRAW\" data-enlighter-language=\"shell\"># Enable verbose logging.\r\n# Default: no\r\nLogVerbose yes<\/pre>\n<p>\u3068\u8a00\u3063\u3066\u3082\u3001<strong>LogVerbose<\/strong>\u306e\u30b3\u30e1\u30f3\u30c8\u3092\u5916\u3057\u305f\u3060\u3051\u3002<\/p>\n<p>\u56db\u3064\u76ee\u3002freshclam.log\u3002<br \/>\nlog\u3092\u898b\u308b\u3068\u3001\u591c\u4e2d\u306e0\u6642\u3068\u304b\u3001\u671d6\u6642\u3068\u304b\u306b\u66f4\u65b0\u3092\u3057\u3066\u3044\u308b\u3002<br \/>\n\u304d\u3063\u3068\u81ea\u52d5\u3067\u3084\u3063\u3066\u304f\u308c\u3066\u3044\u308b\u306e\u3060\u308d\u3046\u3002\u305d\u3046\u306b\u9055\u3044\u306a\u3044\u3002\u305d\u3046\u601d\u3046\u3053\u3068\u306b\u3057\u3088\u3046\u3002<\/p>\n<p>\u8ffd\u4f38\uff09<br \/>\n\u4eca\u307e\u3067\uff08php\u306eversion\u554f\u984c\u3067\uff09\u4f7f\u3048\u306a\u304b\u3063\u305f<a href=\"https:\/\/ja.wordpress.org\/plugins\/crayon-syntax-highlighter\/\">Crayon Syntax Highlighter<\/a>\u3092\u6709\u52b9\u5316\u3057\u305f\u3089\u3001\u30da\u30fc\u30b8\u306e\u30ec\u30a4\u30a2\u30a6\u30c8\u304c\u5d29\u308c\u308b\u4ed6\u3001\u30da\u30fc\u30b8\u306e\u8aad\u307f\u8fbc\u307f\u306b\u3082\u5931\u6557\u3059\u308b\u59cb\u672b\u3002\u6ce3\u304f\u6ce3\u304f\u5916\u3057\u3066\u4ee3\u308f\u308a\u306b\u306a\u308b\u3082\u306e\u3092\u63a2\u3057\u307e\u3057\u305f\u3002\uff08\u304a\u307e\u74b0\u306a\u3093\u3067\u3057\u3087\u3046\u3051\u3069\u306d\u3047(^_^;;\uff09<br \/>\n<a href=\"https:\/\/ja.wordpress.org\/plugins\/enlighter\/\">Enlighter \u2013 Customizable Syntax Highlighter<\/a>\u304c\u4f3c\u305f\u611f\u3058\u3060\u3063\u305f\u306e\u3067\u4e57\u308a\u63db\u3048\u3002<br \/>\n\u4eca\u56de\u4f7f\u3063\u3066\u307f\u307e\u3057\u305f\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u7740\u3005\uff08\uff1f\uff09\u3068ClamAV\u306e\u8a2d\u5b9a\u304c\u9032\u3093\u3067\u3044\u308b\u3002 \u3068\u601d\u3044\u305f\u3044\u3002<\/p>\n","protected":false},"author":1,"featured_media":8355,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_crdt_document":"","footnotes":""},"categories":[115],"tags":[225,161,46,24],"class_list":["post-8365","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-software","tag-clamav","tag-macports","tag-software","tag-system"],"jetpack_featured_media_url":"https:\/\/i0.wp.com\/www.k-in.co.jp\/niwakan\/wp-content\/uploads\/2021\/09\/clamav-trademark.png?fit=305%2C248&ssl=1","_links":{"self":[{"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/posts\/8365","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/comments?post=8365"}],"version-history":[{"count":0,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/posts\/8365\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/media\/8355"}],"wp:attachment":[{"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/media?parent=8365"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/categories?post=8365"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/tags?post=8365"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}