ããã¯ãUbuntu OnlineãFedora OnlineãWindows ãªã³ã©ã€ã³ ãšãã¥ã¬ãŒã¿ãŒããŸã㯠MAC OS ãªã³ã©ã€ã³ ãšãã¥ã¬ãŒã¿ãŒãªã©ã®è€æ°ã®ç¡æãªã³ã©ã€ã³ ã¯ãŒã¯ã¹ããŒã·ã§ã³ã® XNUMX ã€ã䜿çšããŠãOnWorks ç¡æãã¹ãã£ã³ã° ãããã€ããŒã§å®è¡ã§ããã³ãã³ã clamscan ã§ãã
ããã°ã©ã ïŒ
NAME
clamscan - ãã¡ã€ã«ãšãã£ã¬ã¯ããªã®ãŠã€ã«ã¹ãã¹ãã£ã³ããŸãã
SYNOPSIS
clamscan [ãªãã·ã§ã³] [ãã¡ã€ã«/ãã£ã¬ã¯ããª/-]
DESCRIPTION
clamscan ã¯ã³ãã³ã ã©ã€ã³ã®ãŠã€ã«ã¹å¯Ÿçã¹ãã£ãã§ãã
OPTIONS
ã»ãšãã©ã®ãªãã·ã§ã³ã¯ãäžéšã®æ©èœãæå¹ãŸãã¯ç¡å¹ã«ããåçŽãªã¹ã€ããã§ãã ãªãã·ã§ã³
[=yes/no(*)] ã§ããŒã¯ããããã£ãŒã«ãã®åŸã«ã¯ããªãã·ã§ã³ã§ =yes/=no ãç¶ããããšãã§ããŸãã 圌ããåŒã°ããã
ããŒã«åŒæ°ããªããšãã¹ãã£ãã¯ãã¯ãããšã¿ãªããŸãã ã¢ã¹ã¿ãªã¹ã¯ã¯ããã©ã«ãã瀺ããŸã
ç¹å®ã®ãªãã·ã§ã³ã®å éšèšå®ã
-NSã - å©ããŠ
ãã«ãæ å ±ãå°å·ããŠçµäºããŸãã
-Vã - ããŒãžã§ã³
ããŒãžã§ã³çªå·ãåºåããŠçµäºããŸãã
-vã -詳现
åé·ã«ãªããŸãã
-aã --ã¢ãŒã«ã€ã-詳现
ã¹ãã£ã³ãããã¢ãŒã«ã€ãå ã®ãã¡ã€ã«åã衚瀺ãã
- ãããã°
libclamav ããã®ãããã° ã¡ãã»ãŒãžã衚瀺ããŸãã
- éããª
éãã«ããŠãã ãã (ãšã©ãŒã¡ãã»ãŒãžã®ã¿ãåºåããŠãã ãã)ã
--stdout
ãã¹ãŠã®ã¡ãã»ãŒãžïŒlibclamavåºåãé€ãïŒãæšæºåºåïŒstdoutïŒã«æžã蟌ã¿ãŸãã
-èŠçŽãªã
ã¹ãã£ã³ã®æåŸã«èŠçŽã衚瀺ããªãã§ãã ããã
-ç§ã - ææãã
ææãããã¡ã€ã«ã®ã¿ãå°å·ããŸãã
-oã --ok-çµæãæå¶
OKãã¡ã€ã«ã®å°å·ãã¹ããããã
- ãã« ãŠã€ã«ã¹æ€åºæã«ãã«ã鳎ãããŸãã
--tempdir=ãã£ã¬ã¯ããª
DIRECTORY ã«äžæãã¡ã€ã«ãäœæããŸãã ãã£ã¬ã¯ããªã¯ '' ãŠãŒã¶ãŒãæžã蟌ã¿å¯èœã§ããå¿ èŠããããŸãããŸãã¯
ç¹æš©ã®ãªããŠãŒã¶ãŒã clamscan ãå®è¡ããŠããŸãã
--äžæéåº
äžæãã¡ã€ã«ã¯åé€ããªãã§ãã ããã
-d ãã¡ã€ã«/ãã£ã¬ã¯ããªã --database=ãã¡ã€ã«/ãã£ã¬ã¯ããª
FILE ãããŠã€ã«ã¹ ããŒã¿ããŒã¹ãããŒãããããDIR ãããã¹ãŠã®ãŠã€ã«ã¹ ããŒã¿ããŒã¹ ãã¡ã€ã«ãããŒãããŸãã
--official-db-only=[ã¯ã/ããã(*)]
ClamAV ãããžã§ã¯ãã«ãã£ãŠå ¬éãããå ¬åŒçœ²åã®ã¿ãããŒãããŠãã ããã
-l ãã¡ã€ã«ã --log = FILE
ã¹ãã£ã³ã¬ããŒãããã¡ã€ã«ã«ä¿åããŸãã
-NSã -ååž°ç
ãã£ã¬ã¯ããªãååž°çã«ã¹ãã£ã³ããŸãã æå®ããããã£ã¬ã¯ããªå ã®ãã¹ãŠã®ãµããã£ã¬ã¯ããªã¯ã
ã¹ãã£ã³ããã
-zã --allmatch
äžèŽããåŸããã¡ã€ã«å ã§ã¹ãã£ã³ãç¶è¡ããŠãè¿œå ã®äžèŽãæ¢ããŸãã
--cross-fs=[ã¯ã(*)/ããã]
ä»ã®ãã¡ã€ã«ã·ã¹ãã äžã®ãã¡ã€ã«ãšãã£ã¬ã¯ããªãã¹ãã£ã³ããŸãã
--follow-dir-symlinks=[0/1(*)/2]
ãã£ã¬ã¯ããªã®ã·ã³ããªãã¯ãªã³ã¯ããã©ããŸãã 3 ã€ã®ãªãã·ã§ã³ããããŸã: 0 - ãã£ã¬ã¯ããªããã©ããŒããŸãã
symlinksã1 (ããã©ã«ã) - çŽæ¥ãšããŠæž¡ããããã£ã¬ã¯ããªã®ã·ã³ããªãã¯ãªã³ã¯ã®ã¿ããã©ããŸãã
ã¯ã©ã ã¹ãã£ã³ãžã®åŒæ°ã 2 - åžžã«ãã£ã¬ã¯ããªã®ã·ã³ããªãã¯ãªã³ã¯ã«åŸããŸãã
--follow-file-symlinks=[0/1(*)/2]
ãã¡ã€ã«ã®ã·ã³ããªãã¯ãªã³ã¯ããã©ããŸãã 3 ã€ã®ãªãã·ã§ã³ããããŸã: 0 - ãã¡ã€ã«ã®ã·ã³ããªãã¯ãªã³ã¯ããã©ããªãã1
(ããã©ã«ã) - çŽæ¥åŒæ°ãšããŠæž¡ããããã¡ã€ã«ã®ã·ã³ããªãã¯ãªã³ã¯ã®ã¿ã«åŸããŸãã
ã¯ã©ã ã¹ãã£ã³ã 2 - åžžã«ãã¡ã€ã«ã®ã·ã³ããªãã¯ãªã³ã¯ããã©ããŸãã
-f ãã¡ã€ã«ã --file-list = FILE
FILEã«XNUMXè¡ãã€ãªã¹ããããŠãããã¡ã€ã«ãã¹ãã£ã³ããŸãã
--remove[=ã¯ã/ããã(*)]
ææãããã¡ã€ã«ãåé€ããŸãã Be æ°ãã€ããïŒ
--move = DIRECTORY
ææãããã¡ã€ã«ã DIRECTORY ã«ç§»åããŸãã ãã£ã¬ã¯ããªã¯ '' ãŠãŒã¶ãŒãæžã蟌ã¿å¯èœã§ããå¿ èŠããããŸãããŸãã¯
ç¹æš©ã®ãªããŠãŒã¶ãŒã clamscan ãå®è¡ããŠããŸãã
--copy=ãã£ã¬ã¯ããª
ææãããã¡ã€ã«ã DIRECTORY ã«ã³ããŒããŸãã ãã£ã¬ã¯ããªã¯ '' ãŠãŒã¶ãŒãæžã蟌ã¿å¯èœã§ããå¿ èŠããããŸãããŸãã¯
ç¹æš©ã®ãªããŠãŒã¶ãŒã clamscan ãå®è¡ããŠããŸãã
--exclude=æ£èŠè¡šçŸã --exclude-dir=REGEX
æ£èŠè¡šçŸã«äžèŽãããã¡ã€ã«/ãã£ã¬ã¯ããªåãã¹ãã£ã³ããŸããã ãããã®ãªãã·ã§ã³ã¯æ¬¡ã®ãšããã§ãã
è€æ°å䜿çšã
--include=æ£èŠè¡šçŸã --include-dir=REGEX
æ£èŠè¡šçŸã«äžèŽãããã¡ã€ã«/ãã£ã¬ã¯ããªã®ã¿ãã¹ãã£ã³ããŸãã ãããã®ãªãã·ã§ã³ã䜿çšã§ããŸã
è€æ°åã
--bytecode[=ã¯ã(*)/ããã]
ãã®ãªãã·ã§ã³ãæå¹ã«ãããšãClamAV ã¯ããŒã¿ããŒã¹ãããã€ãã³ãŒããããŒãããŸãã éåžžã«é«ãã§ã
ãã®ãªãã·ã§ã³ããªã³ã®ãŸãŸã«ããããšããå§ãããŸããããããªããšã
å€ãã®æ°ãããŠã€ã«ã¹ã
--bytecode-unsigned[=ã¯ã/ããã(*)]
ããžã¿ã«çœ²åããã .c[lv]d ãã¡ã€ã«ã®å€éšãããã€ãã³ãŒããããŒãã§ããããã«ããŸãã
--ãã€ãã³ãŒãã¿ã€ã ã¢ãŠã=N
ãã€ãã³ãŒãã®ã¿ã€ã ã¢ãŠããããªç§åäœã§èšå®ããŸã (ããã©ã«ã: 60000 = 60 ç§)
--statistics[=none(*)/ãã€ãã³ãŒã/pcre]
å®è¡çµ±èšãåéããŠåºåããŸãã
--detect-pua[=ã¯ã/ããã(*)]
æãŸãããªãå¯èœæ§ã®ããã¢ããªã±ãŒã·ã§ã³ãæ€åºããŸãã
--exclude-pua=ã«ããŽãªãŒ
ç¹å®ã® PUA ã«ããŽãªãé€å€ããŸãã ãã®ãªãã·ã§ã³ã¯è€æ°å䜿çšã§ããŸãã èŠã
http://www.clamav.net/doc/pua.html PUA ã®å®å šãªãªã¹ãã«ã€ããŠã¯ã
--include-pua=ã«ããŽãªãŒ
ç¹å®ã® PUA ã«ããŽãªã®ã¿ãå«ããŸãã ãã®ãªãã·ã§ã³ã¯è€æ°å䜿çšã§ããŸãã èŠã
http://www.clamav.net/doc/pua.html PUA ã®å®å šãªãªã¹ãã«ã€ããŠã¯ã
--detect-structed[=ã¯ã/ããã(*)]
DLP (ããŒã¿æ倱é²æ¢) ã¢ãžã¥ãŒã«ã䜿çšã㊠SSN ãšã¯ã¬ãžãã ã«ãŒãçªå·ãæ€åºãã
ããã¥ã¡ã³ã/ããã¹ã ãã¡ã€ã«å ã
--structed-ssn-format=X
X=0: xxx-yy-zzzz 圢åŒã®æå¹ãª SSN ãæ€çŽ¢ããŸã (éåžž)ã X=1: æå¹ãªãã®ãæ€çŽ¢ããŸã
SSN 㯠xxxyyzzzz (åé€) ãšããŠãã©ãŒããããããŸãã X=2: äž¡æ¹ã®åœ¢åŒãæ€çŽ¢ããŸãã ããã©ã«ã㯠0 ã§ãã
--structed-ssn-count=#n
ãã®ãªãã·ã§ã³ã¯ããã¡ã€ã«å ã§èŠã€ãã£ã瀟äŒä¿éçªå·ã®æå°æ°ã次ã®ããã«èšå®ããŸãã
æ€åºãçæããŸã (ããã©ã«ã: 3)ã
--structed-cc-count=#n
ãã®ãªãã·ã§ã³ã¯ããã¡ã€ã«å ã§èŠã€ãã£ãã¯ã¬ãžãã ã«ãŒãçªå·ã®æå°æ°ã次ã®ããã«èšå®ããŸãã
æ€åºãçæããŸã (ããã©ã«ã: 3)ã
--scan-mail[=ã¯ã(*)/ããã]
ã¡ãŒã«ãã¡ã€ã«ãã¹ãã£ã³ããŸãã ãã®ãªãã·ã§ã³ããªãã«ããŠããå ã®ãã¡ã€ã«ã¯ãã®ãŸãŸæ®ããŸãã
ã¹ãã£ã³ãããŸããããåã ã®ã¡ãã»ãŒãž/æ·»ä»ãã¡ã€ã«ã¯è§£æãããŸããã§ããã
--phishing-sigs[=ã¯ã(*)/ããã]
ã·ã°ããã£ããŒã¹ã®ãã£ãã·ã³ã°æ€åºã䜿çšããŸãã
--phishing-scan-urls[=ã¯ã(*)/ããã]
URL ããŒã¹ã®ãã¥ãŒãªã¹ãã£ã㯠ãã£ãã·ã³ã°æ€åº (Phishing.Heuristics.Email.*) ã䜿çšããŸãã
--ãã¥ãŒãªã¹ãã£ãã¯ã¹ãã£ã³ã®åªå é äœ[=ã¯ã/ããã(*)]
ãã¥ãŒãªã¹ãã£ãã¯äžèŽãåªå ãããŸãã æå¹ã«ãããšããã¥ãŒãªã¹ãã£ã㯠ã¹ãã£ã³ (
phishingScan) ã¯ãŠã€ã«ã¹/ãã£ãã·ã³ã°ã®å¯èœæ§ãæ€åºããã¹ãã£ã³ãçŽã¡ã«åæ¢ããŸãã
æšå¥šãCPU ã¹ãã£ã³æéãç¯çŽããŸãã ç¡å¹ã«ãããšããã¥ãŒãªã¹ãã£ãã¯ã«ãã£ãŠãŠã€ã«ã¹/ãã£ãã·ã³ã°ãæ€åºãããŸã
ã¹ãã£ã³ã¯ã¹ãã£ã³ã®çµäºæã«ã®ã¿å ±åãããŸãã ã¢ãŒã«ã€ãã«äž¡æ¹ãå«ãŸããŠããå Žåã
ãã¥ãŒãªã¹ãã£ãã¯ã«æ€åºããããŠã€ã«ã¹/ãã£ãã·ã³ã°ãšå®éã®ãã«ãŠã§ã¢ãå®éã®ãã«ãŠã§ã¢ã¯
ã*.Heuristics.*ããŠã€ã«ã¹ãåŠçããå Žåã¯ããããç¡å¹ã«ããŠãã ããã
ãæ¬ç©ã®ããã«ãŠã§ã¢ãšã¯ç°ãªããŸãã ãã¥ãŒãªã¹ãã£ãã¯ã«æ€åºãããªãã£ããŠã€ã«ã¹ (ã·ã°ããã£
based) ãæåã«èŠã€ãã£ãå Žåãããã«é¢ä¿ãªããã¹ãã£ã³ã¯çŽã¡ã«äžæãããŸãã
æ§æãªãã·ã§ã³ã
--phishing-ssl[=ã¯ã/ããã(*)]
URL å ã® SSL äžäžèŽããããã¯ããŸã (誀æ€ç¥ã«ã€ãªããå¯èœæ§ããããŸã!)ã
--phishing-cloak[=ã¯ã/ããã(*)]
ã¯ããŒãã³ã°ããã URL ããããã¯ããŸã (誀æ€ç¥ãçºçããå¯èœæ§ããããŸã)ã
--partition-intersection[=ã¯ã/ããã(*)]
ãã¥ãŒãªã¹ãã£ãã¯ã䜿çšããŠãRAW ãã£ã¹ã¯ ã€ã¡ãŒãžå ã®ããŒãã£ã·ã§ã³ã®äº€å·®ãæ€åºããŸãã
--algorithmic-detection[=ã¯ã(*)/ããã]
å Žåã«ãã£ãŠã¯ (è€éãªãã«ãŠã§ã¢ãã°ã©ãã£ã㯠ãã¡ã€ã«ã®ãšã¯ã¹ããã€ããªã©)ãClamAV
ç¹å¥ãªã¢ã«ãŽãªãºã ã䜿çšããŠæ£ç¢ºãªæ€åºãæäŸããŸãã ãã®ãªãã·ã§ã³ã¯æ¬¡ã®ç®çã§äœ¿çšã§ããŸãã
ã¢ã«ãŽãªãºã ã«ããæ€åºãå¶åŸ¡ããŸãã
--scan-pe[=ã¯ã(*)/ããã]
PE ã¯ãPortable Executable ã®ç¥ã§ãããããç°å¢ã§äœ¿çšãããå®è¡å¯èœãã¡ã€ã«åœ¢åŒã§ãã
32 ããã ããŒãžã§ã³ã® Windows ãªãã¬ãŒãã£ã³ã° ã·ã¹ãã ã ããã©ã«ãã§ã¯ãClamAV ã¯ããé«åºŠãªããã©ãŒãã³ã¹ãçºæ®ããŸã
å®è¡å¯èœãã¡ã€ã«ã®åæãšãäžè¬çãªå®è¡å¯èœããã«ãŒã®è§£åã®è©Šã¿
UPXããããFSG ãªã©ã ãã®ãªãã·ã§ã³ããªãã«ãããšãå ã®ãã¡ã€ã«ã¯
ã¹ãã£ã³ã¯å¯èœã§ãããè¿œå ã®åŠçã¯è¡ãããŸããã
--scan-elf[=ã¯ã(*)/ããã]
å®è¡å¯èœãã¡ã€ã«ããã³ãªã³ã¯åœ¢åŒã¯ãUN*X å®è¡å¯èœãã¡ã€ã«ã®æšæºåœ¢åŒã§ãã ãã
ãªãã·ã§ã³ã¯ ELF ãµããŒããå¶åŸ¡ããŸãã ãªãã«ããŠããå ã®ãã¡ã€ã«ã¯æ®ããŸãã
è¿œå ã®åŠçãè¡ããã«ã¹ãã£ã³ã§ããŸãã
--scan-ole2[=ã¯ã(*)/ããã]
Microsoft Office ããã¥ã¡ã³ããš .msi ãã¡ã€ã«ãã¹ãã£ã³ããŸãã ãã®ãªãã·ã§ã³ããªãã«ãããšã
å ã®ãã¡ã€ã«ã¯åŒãç¶ãã¹ãã£ã³ãããŸãããè¿œå ã®åŠçã¯è¡ãããŸããã
--scan-pdf[=ã¯ã(*)/ããã]
PDF ãã¡ã€ã«å ãã¹ãã£ã³ããŸãã ãã®ãªãã·ã§ã³ããªãã«ããŠããå ã®ãã¡ã€ã«ã¯ãã®ãŸãŸæ®ããŸãã
ãã ãããã³ãŒããè¿œå ã®åŠçã¯å¿ èŠãããŸããã
--scan-swf[=ã¯ã(*)/ããã]
SWF ãã¡ã€ã«ãã¹ãã£ã³ããŸãã ãã®ãªãã·ã§ã³ããªãã«ããŠããå ã®ãã¡ã€ã«ã¯ãã®ãŸãŸæ®ããŸãã
ã¹ãã£ã³ãããŸããããè¿œå ã®åŠçã¯è¡ãããŠããŸããã
--scan-html[=ã¯ã(*)/ããã]
HTML ãã¡ã€ã«ãšåã蟌ã¿ã¹ã¯ãªãããæ€åºãæ£èŠå/埩å·åãã¹ãã£ã³ããŸãã ãªãã«ããå Žå
ãã®ãªãã·ã§ã³ãéžæãããšãå ã®ãã¡ã€ã«ã¯åŒãç¶ãã¹ãã£ã³ãããŸãããè¿œå ã®ã¹ãã£ã³ã¯è¡ãããŸããã
åŠçã
--scan-archive[=ã¯ã(*)/ããã]
libclamav ã§ãµããŒããããŠããã¢ãŒã«ã€ããã¹ãã£ã³ããŸãã ãã®ãªãã·ã§ã³ããªãã«ãããšãå ã®
ãã¡ã€ã«ã¯åŒãç¶ãã¹ãã£ã³ãããŸããã解åãè¿œå ã®åŠçã¯è¡ãããŸããã
--detect-broken[=ã¯ã/ããã(*)]
å£ããå®è¡å¯èœãã¡ã€ã«ããŠã€ã«ã¹ãšããŠããŒã¯ããŸã (Broken.Executable)ã
--block-encrypted[=ã¯ã/ããã(*)]
æå·åãããã¢ãŒã«ã€ãããŠã€ã«ã¹ãšããŠããŒã¯ããŸã (Encrypted.ZipãEncrypted.RAR)ã
--max-filesize=#n
åã¢ãŒã«ã€ãããæ倧 #n ãã€ããæœåºããŠã¹ãã£ã³ããŸãã å€ãæž¡ãããšãã§ããŸã
xK ãŸã㯠xk 圢åŒã®ãããã€ãããŸã㯠xM ãŸã㯠xm 圢åŒã®ã¡ã¬ãã€ã (x ã¯æ°å)ã
ãã®ãªãã·ã§ã³ã¯ãã·ã¹ãã ã DoS æ»æããä¿è·ããŸã (ããã©ã«ã: 25 MBãæ倧: <4 GB)
--max-scansize=#n
åã¢ãŒã«ã€ãããæ倧 #n ãã€ããæœåºããŠã¹ãã£ã³ããŸãã ã¢ãŒã«ã€ãã®ãµã€ãºã«ã
ã¢ãŒã«ã€ãå ã®ãã¹ãŠã®ãã¡ã€ã«ã®ãµã€ãºã®åèšãã¹ãã£ã³ ãµã€ãºã«ã«ãŠã³ããããŸãã ã®ããã«
ããšãã°ãåäžã® 1M å éšãã¡ã€ã«ãå«ã 1M ã®éå§çž®ã¢ãŒã«ã€ã㯠2M ãšããŠã«ãŠã³ããããŸãã
æ倧ã¹ãã£ã³ãµã€ãºã«åããŠã xK ãŸã㯠xk 圢åŒã§å€ããããã€ãåäœã§æž¡ãããšãã§ããŸãããŸãã¯ã
xM ãŸã㯠xm 圢åŒã®ã¡ã¬ãã€ã (x ã¯æ°å€)ã ãã®ãªãã·ã§ã³ã¯ã·ã¹ãã ãä¿è·ããŸã
DoS æ»æã«å¯Ÿããé²åŸ¡ (ããã©ã«ã: 100 MBãæ倧: <4 GB)
--max-files=#n
ã¹ãã£ã³ãããåãã¡ã€ã«ããæ倧 #n åã®ãã¡ã€ã«ãæœåºããŸã (ãããã¢ãŒã«ã€ãã®å Žåã
ããã¥ã¡ã³ããŸãã¯å¥ã®çš®é¡ã®ã³ã³ãã)ã ãã®ãªãã·ã§ã³ã¯ãã·ã¹ãã ã以äžããä¿è·ããŸãã
DoS æ»æ (ããã©ã«ã: 10000)
--max-recursion=#n
ã¢ãŒã«ã€ãã®ååž°ã¬ãã«å¶éãèšå®ããŸãã ãã®ãªãã·ã§ã³ã¯ã·ã¹ãã ã DoS ããä¿è·ããŸã
æ»æåæ° (ããã©ã«ã: 16)ã
--max-dir-recursion=#n
ãã£ã¬ã¯ããªã®æ倧深ãã¯ã¹ãã£ã³ãããŸã (ããã©ã«ã: 15)ã
--max-embeddedpe=#n
åã蟌㿠PE ããã§ãã¯ãããã¡ã€ã«ã®æ倧ãµã€ãºã å€ããããã€ãåäœã§æž¡ãããšãã§ããŸãã
xK ãŸã㯠xk 圢åŒããŸã㯠xM ãŸã㯠xm 圢åŒã®ã¡ã¬ãã€ã (x ã¯æ°å€) (ããã©ã«ã: 10)
MBãæ倧: <4 GB)ã
--max-htmlnormalize=#n
æ£èŠåãã HTML ãã¡ã€ã«ã®æ倧ãµã€ãºã å€ããããã€ãåäœã§æž¡ãããšãã§ããŸãã
xK ãŸã㯠xk 圢åŒããŸã㯠xM ãŸã㯠xm 圢åŒã®ã¡ã¬ãã€ã (x ã¯æ°å€) (ããã©ã«ã: 10)
MBãæ倧: <4 GB)ã
--max-htmlnotags=#n
ã¹ãã£ã³ããæ£èŠåããã HTML ãã¡ã€ã«ã®æ倧ãµã€ãºã å€ããããã€ãåäœã§æž¡ãããšãã§ããŸã
xK ãŸã㯠xk 圢åŒããŸã㯠xM ãŸã㯠xm 圢åŒã®ã¡ã¬ãã€ã (x ã¯æ°å€)
2 MBãæ倧: <4 GB)ã
--max-scriptnormalize=#n
æ£èŠåããã¹ã¯ãªãã ãã¡ã€ã«ã®æ倧ãµã€ãºã å€ããããã€ãåäœã§æž¡ãããšãã§ããŸãã
xK ãŸã㯠xk 圢åŒããŸã㯠xM ãŸã㯠xm 圢åŒã®ã¡ã¬ãã€ã (x ã¯æ°å€) (ããã©ã«ã: 5)
MBãæ倧: <4 GB)ã
--max-ziptypercg=#n
åãååæããæ倧ãµã€ãºã® zipã å€ããããã€ãåäœã§æ¬¡ã®åœ¢åŒã§æž¡ãããšãã§ããŸãã
xK ãŸã㯠xkããŸã㯠xM ãŸã㯠xm 圢åŒã®ã¡ã¬ãã€ã (x ã¯æ°å€) (ããã©ã«ã: 1 MBãæ倧:
4 GB æªæºïŒã
--max-partitions=#n
ãã®ãªãã·ã§ã³ã¯ãRAW ãã£ã¹ã¯ ã€ã¡ãŒãžã®ããŒãã£ã·ã§ã³ã®æ倧æ°ã次ã®ããã«èšå®ããŸãã
ã¹ãã£ã³ãããã ããã¯æ£ã®æŽæ°ã§ããå¿ èŠããããŸã (ããã©ã«ã: 50)ã
--max-iconspe=#n
ãã®ãªãã·ã§ã³ã¯ãã¹ãã£ã³ãã PE å ã®ã¢ã€ã³ã³ã®æ倧æ°ãèšå®ããŸãã ããã¯å¿ ã
æ£ã®æŽæ° (ããã©ã«ã: 100) ã«ããŠãã ããã
--pcre-match-limit=#n
PCRE äžèŽé¢æ°ã®æ倧åŒã³åºãæ° (ããã©ã«ã: 10000)ã
--pcre-recmatch-limit=#n
PCRE äžèŽé¢æ°ãžã®ååž°åŒã³åºãã®æå€§æ° (ããã©ã«ã: 5000)ã
--pcre-max-filesize=#n
PCRE ãµãã·ã°äžèŽãå®è¡ãããã¡ã€ã«ã®æ倧ãµã€ãº (ããã©ã«ã: 25 MBãæ倧: <4 GB)ã
--enable-stats
ãã®ãªãã·ã§ã³ã«ãããçµ±èšããŒã¿ã®éä¿¡ãå¯èœã«ãªããŸãã (ããã©ã«ã: çµ±èšã®éä¿¡
ç¡å¹ïŒ
--çµ±èšãã¹ãID
ãã®ãªãã·ã§ã³ã¯ãéä¿¡æã«äœ¿çšãããã¹ã ID ã UUID ã®åœ¢åŒã§èšå®ããŸãã
çµ±èšæ å ±ã
--disable-pe-stats
ãã®ãªãã·ã§ã³ã¯ãPE ã»ã¯ã·ã§ã³ ããŒã¿ã®éä¿¡ãç¡å¹ã«ããŸãã (ããã©ã«ã: PE ã®éä¿¡
çµ±èšã®éä¿¡ãå šäœãšããŠæå¹ã«ãªã£ãŠããå Žåãã»ã¯ã·ã§ã³ ããŒã¿ãæå¹ã«ãªããŸã)ã
--stats-timeout=#n
ãã®ãªãã·ã§ã³ã¯ããµãŒããŒããã®éä¿¡ãåŸ æ©ããã¿ã€ã ã¢ãŠããç§åäœã§èšå®ããŸãã
çµ±èšãµãŒããŒã (ããã©ã«ã: 10)ã
äŸ
(0) åäžã®ãã¡ã€ã«ãã¹ãã£ã³ããŸãã
ã¯ã©ã ã¹ãã£ã³ file
(1) çŸåšã®äœæ¥ãã£ã¬ã¯ããªãã¹ãã£ã³ããŸãã
ã¯ã©ã ã¹ãã£ã³
(2) ãã¹ãŠã®ãã¡ã€ã« (ããã³ãµããã£ã¬ã¯ããª) ãã¹ãã£ã³ããŸãã /ããŒã :
ã¯ã©ã ã¹ãã£ã³ -r /ããŒã
(3) ãã¡ã€ã«ããããŒã¿ããŒã¹ãããŒãããŸãã
ã¯ã©ã ã¹ãã£ã³ -d /tmp/newclamdb -r / tmpã«
(4) ããŒã¿ ã¹ããªãŒã ãã¹ãã£ã³ããŸãã
cat ãã¹ããã¡ã€ã« | ã¯ã©ã ã¹ãã£ã³ -
(5) ã¡ãŒã«ã®ã¹ããŒã« ãã£ã¬ã¯ããªãã¹ãã£ã³ããŸãã
ã¯ã©ã ã¹ãã£ã³ -r /var/ã¹ããŒã«/ã¡ãŒã«
ãªã¿ãŒã³ ã³ãŒã
0ïŒãŠã€ã«ã¹ã¯èŠã€ãããŸããã§ããã
1ïŒãŠã€ã«ã¹ãèŠã€ãããŸããã
2 : äœããã®ãšã©ãŒãçºçããŸããã
CREDITS
ã¯ã¬ãžããã«ã€ããŠã¯ãå®å šãªããã¥ã¡ã³ãã確èªããŠãã ããã
onworks.net ãµãŒãã¹ã䜿çšããŠãªã³ã©ã€ã³ã§ clamscan ã䜿çšãã