Linux - SecurityThis forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.
Notices
Welcome to LinuxQuestions.org, a friendly and active Linux Community.
You are currently viewing LQ as a guest. By joining our community you will have the ability to post topics, receive our newsletter, use the advanced search, subscribe to threads and access many other special features. Registration is quick, simple and absolutely free. Join our community today!
Note that registered members see fewer ads, and ContentLink is completely disabled once you log in.
If you have any problems with the registration process or your account login, please contact us. If you need to reset your password, click here.
Having a problem logging in? Please visit this page to clear all LQ-related cookies.
Get a virtual cloud desktop with the Linux distro that you want in less than five minutes with Shells! With over 10 pre-installed distros to choose from, the worry-free installation life is here! Whether you are a digital nomad or just looking for flexibility, Shells can put your Linux machine on the device that you want to use.
Exclusive for LQ members, get up to 45% off per month. Click here for more info.
Distribution: Dabble, but latest used are Fedora 13 and Ubuntu 10.4.1
Posts: 425
Rep:
ClamAV hangs on reaching virtual devices?
I'm noodling around with Ubuntu 10.4.1, latest updates and kernel (2.6.32.24?).
Anyway, I run ClamAv as root and it goes fine through almost all of my system (huge amount of it), including several virtual devices, where it hangs on pan0, which has some association with my network (eth0 would be for wired connection, and wlan0 for wireless, and pan0 is listed also, but I'm not at that machine right now, so I can't tell why it shows up. wlan0 is what I use to connect to the internet).
Is there an issue for clamAV with virtual devices? Any workaround? I had to terminate the scan after it stayed hung for over 5 minutes on pan0.
I don't know if there's issues with ClamAV and device files as I notified BitDefender of the same about two years ago. Maybe it depends on your engine version because for any /dev/* entry my ClamAV returns "ERROR: Not supported file type".
Distribution: Dabble, but latest used are Fedora 13 and Ubuntu 10.4.1
Posts: 425
Original Poster
Rep:
Quote:
Originally Posted by unSpawn
I don't know if there's issues with ClamAV and device files as I notified BitDefender of the same about two years ago. Maybe it depends on your engine version because for any /dev/* entry my ClamAV returns "ERROR: Not supported file type".
I downloaded, installed, and ran, ClamAV yesterday (6 Sept.), so I'm thinking it should be the latest engine version available. It ran fine, and even handled several virtual devices, hanging only on pan0.
Is there any particular argument syntax I should pass to ClamAV at the command line when starting it so that it will bypass /dev in its entirety?
I downloaded, installed, and ran, ClamAV yesterday (6 Sept.), so I'm thinking it should be the latest engine version available. It ran fine, and even handled several virtual devices, hanging only on pan0.
Is there any particular argument syntax I should pass to ClamAV at the command line when starting it so that it will bypass /dev in its entirety?
While I do not know the correct answer to this problem, I have seen hackers create directories in /dev/ to hide back doors running on the server. Though I would say it is very rare and not something a kid using pre-made scripts would know how to do.
Distribution: Dabble, but latest used are Fedora 13 and Ubuntu 10.4.1
Posts: 425
Original Poster
Rep:
Found out that Pan0 is my bluetooth service, and by stopping the service i should eliminate that particular hang. I have found other hangs, in /sys/devices/virtual, so I will probably have to exclude the entire folder.
LinuxQuestions.org is looking for people interested in writing
Editorials, Articles, Reviews, and more. If you'd like to contribute
content, let us know.