Abort, anti virus scanner failed.

Locked
majorboobage
Posts: 37
Joined: Thu 26. Jul 2018, 08:51

Abort, anti virus scanner failed.

Post by majorboobage »

fresh server, Ubuntu 18.04

any ideas? :?

Total content of the log file

Code: Select all

[27-Jul-2018 01:00:02] INFO  --> start av scanner
[27-Jul-2018 01:00:22] ERROR --> av scanner failed: "Abort, anti virus scanner failed."
[27-Jul-2018 01:00:22] INFO  --> av scanner report: 
------------- AV SCAN --------------
Start: 2018-07-27 01:00:02

---------- SCAN LOCATIONS ----------
/home/users
/tmp
/var/tmp

------ UPDATE VIRUS DATABASE -------
Start: 2018-07-27 01:00:02
End: 2018-07-27 01:00:11
Status: Success

--------------- END ----------------
End: 2018-07-27 01:00:22
Status: Abort, anti virus scanner failed.
====

freshclam.log

Code: Select all

Fri Jul 27 01:00:02 2018 -> --------------------------------------
Fri Jul 27 01:00:02 2018 -> ClamAV update process started at Fri Jul 27 01:00:02 2018
Fri Jul 27 01:00:02 2018 -> main.cvd is up to date (version: 58, sigs: 4566249, f-level: 60, builder: sigmgr)
Fri Jul 27 01:00:02 2018 -> Downloading daily-24786.cdiff [100%]
Fri Jul 27 01:00:07 2018 -> daily.cld updated (version: 24786, sigs: 2027088, f-level: 63, builder: neo)
Can't query daily.24786.92.1.0.6810B98A.ping.clamav.net
Fri Jul 27 01:00:07 2018 -> bytecode.cld is up to date (version: 326, sigs: 93, f-level: 63, builder: neo)
Fri Jul 27 01:00:11 2018 -> Database updated (6593430 signatures) from db.local.clamav.net (IP: 104.16.185.138)
Fri Jul 27 01:00:11 2018 -> WARNING: Clamd was NOT notified: Can't connect to clamd through /var/run/clamav/clamd.ctl: No such file or directory
Fri Jul 27 04:17:02 2018 -> --------------------------------------
Fri Jul 27 04:17:02 2018 -> ClamAV update process started at Fri Jul 27 04:17:02 2018
Fri Jul 27 04:17:02 2018 -> main.cvd is up to date (version: 58, sigs: 4566249, f-level: 60, builder: sigmgr)
Fri Jul 27 04:17:02 2018 -> daily.cld is up to date (version: 24786, sigs: 2027088, f-level: 63, builder: neo)
Fri Jul 27 04:17:02 2018 -> bytecode.cld is up to date (version: 326, sigs: 93, f-level: 63, builder: neo)
Fri Jul 27 04:17:02 2018 -> --------------------------------------
Fri Jul 27 04:17:02 2018 -> ClamAV update process started at Fri Jul 27 04:17:02 2018
Fri Jul 27 04:17:02 2018 -> main.cvd is up to date (version: 58, sigs: 4566249, f-level: 60, builder: sigmgr)
Fri Jul 27 04:17:02 2018 -> daily.cld is up to date (version: 24786, sigs: 2027088, f-level: 63, builder: neo)
Fri Jul 27 04:17:02 2018 -> bytecode.cld is up to date (version: 326, sigs: 93, f-level: 63, builder: neo)

clamav.log

Code: Select all

Thu Jul 26 04:37:58 2018 -> +++ Started at Thu Jul 26 04:37:58 2018
Thu Jul 26 04:37:58 2018 -> Received 0 file descriptor(s) from systemd.
Thu Jul 26 04:37:58 2018 -> clamd daemon 0.100.1 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
Thu Jul 26 04:37:58 2018 -> Running as user clamav (UID 119, GID 123)
Thu Jul 26 04:37:58 2018 -> Log file size limited to 4294967295 bytes.
Thu Jul 26 04:37:58 2018 -> Reading databases from /var/lib/clamav
Thu Jul 26 04:37:58 2018 -> Not loading PUA signatures.
Thu Jul 26 04:37:58 2018 -> Bytecode: Security mode set to "TrustSigned".
Thu Jul 26 04:38:20 2018 -> ERROR: Malformed database
Thu Jul 26 04:39:59 2018 -> +++ Started at Thu Jul 26 04:39:59 2018
Thu Jul 26 04:39:59 2018 -> Received 0 file descriptor(s) from systemd.
Thu Jul 26 04:39:59 2018 -> clamd daemon 0.100.1 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
Thu Jul 26 04:39:59 2018 -> Running as user clamav (UID 119, GID 123)
Thu Jul 26 04:39:59 2018 -> Log file size limited to 4294967295 bytes.
Thu Jul 26 04:39:59 2018 -> Reading databases from /var/lib/clamav
Thu Jul 26 04:39:59 2018 -> Not loading PUA signatures.
Thu Jul 26 04:39:59 2018 -> Bytecode: Security mode set to "TrustSigned".
Thu Jul 26 04:40:22 2018 -> ERROR: Malformed database
Thu Jul 26 04:41:01 2018 -> +++ Started at Thu Jul 26 04:41:01 2018
Thu Jul 26 04:41:01 2018 -> Received 0 file descriptor(s) from systemd.
Thu Jul 26 04:41:01 2018 -> clamd daemon 0.100.1 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
Thu Jul 26 04:41:01 2018 -> Running as user clamav (UID 119, GID 123)
Thu Jul 26 04:41:01 2018 -> Log file size limited to 4294967295 bytes.
Thu Jul 26 04:41:01 2018 -> Reading databases from /var/lib/clamav
Thu Jul 26 04:41:01 2018 -> Not loading PUA signatures.
Thu Jul 26 04:41:01 2018 -> Bytecode: Security mode set to "TrustSigned".
Thu Jul 26 04:41:13 2018 -> ERROR: Malformed database
Thu Jul 26 04:42:02 2018 -> +++ Started at Thu Jul 26 04:42:02 2018
Thu Jul 26 04:42:02 2018 -> Received 0 file descriptor(s) from systemd.
Thu Jul 26 04:42:02 2018 -> clamd daemon 0.100.1 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
Thu Jul 26 04:42:02 2018 -> Running as user clamav (UID 119, GID 123)
Thu Jul 26 04:42:02 2018 -> Log file size limited to 4294967295 bytes.
Thu Jul 26 04:42:02 2018 -> Reading databases from /var/lib/clamav
Thu Jul 26 04:42:02 2018 -> Not loading PUA signatures.
Thu Jul 26 04:42:02 2018 -> Bytecode: Security mode set to "TrustSigned".
Thu Jul 26 04:42:15 2018 -> ERROR: Malformed database
Thu Jul 26 04:43:03 2018 -> +++ Started at Thu Jul 26 04:43:03 2018
Thu Jul 26 04:43:03 2018 -> Received 0 file descriptor(s) from systemd.
Thu Jul 26 04:43:03 2018 -> clamd daemon 0.100.1 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
Thu Jul 26 04:43:03 2018 -> Running as user clamav (UID 119, GID 123)
Thu Jul 26 04:43:03 2018 -> Log file size limited to 4294967295 bytes.
Thu Jul 26 04:43:03 2018 -> Reading databases from /var/lib/clamav
Thu Jul 26 04:43:03 2018 -> Not loading PUA signatures.
Thu Jul 26 04:43:03 2018 -> Bytecode: Security mode set to "TrustSigned".
Thu Jul 26 04:43:15 2018 -> ERROR: Malformed database
nikko
Posts: 914
Joined: Fri 15. Apr 2016, 16:11

Re: Abort, anti virus scanner failed.

Post by nikko »

In var/lib/clamav/ are 3 databases.
One or more are corrupt.
Pls rename this 3 files (not the mirror) and restart the service.
Now clamav connect and reload the databases. It should be done in an few minutes.
Hope, that helps.
The software said: Requires Win Vista®, 7®, 8® or better. And so I installed Linux.
nikko
Posts: 914
Joined: Fri 15. Apr 2016, 16:11

Re: Abort, anti virus scanner failed.

Post by nikko »

I have just seen it on my own servers: There is a problem with downloading the new databases from clamav. But all servers report this error, I think that is a problem of clamav.
The software said: Requires Win Vista®, 7®, 8® or better. And so I installed Linux.
derFu
Posts: 99
Joined: Sat 28. Apr 2018, 18:46

Re: Abort, anti virus scanner failed.

Post by derFu »

nikko wrote: Sat 28. Jul 2018, 01:22 I have just seen it on my own servers: There is a problem with downloading the new databases from clamav. But all servers report this error, I think that is a problem of clamav.
Did you make an update? There's a regression Update for all Ubuntus.
clamav regression 26 July 2018
USN-3722-1 fixed vulnerabilities in ClamAV. The updated ClamAV version removed some configuration options which caused the daemon to fail to start in environments where the ClamAV configuration file was manually edited.
Source
https://usn.ubuntu.com/3722-3/

Hope it helps...
prune
Posts: 85
Joined: Thu 14. Nov 2019, 11:22

Re: Abort, anti virus scanner failed.

Post by prune »

I have been getting this since April 4

[04-Apr-2020 01:00:03] INFO --> start av scanner
[04-Apr-2020 01:00:29] ERROR --> av scanner failed: "Abort, anti virus scanner failed."
[04-Apr-2020 01:00:29] INFO --> av scanner report:
------------- AV SCAN --------------
Start: 2020-04-04 01:00:03

---------- SCAN LOCATIONS ----------
/home/users
/tmp
/var/tmp

------ UPDATE VIRUS DATABASE -------
Start: 2020-04-04 01:00:03
End: 2020-04-04 01:00:03
Status: Success

--------------- END ----------------
End: 2020-04-04 01:00:29
Status: Abort, anti virus scanner failed.

====
[11-Apr-2020 01:00:02] INFO --> start av scanner
[11-Apr-2020 01:00:32] ERROR --> av scanner failed: "Abort, anti virus scanner failed."
[11-Apr-2020 01:00:32] INFO --> av scanner report:
------------- AV SCAN --------------
Start: 2020-04-11 01:00:03

---------- SCAN LOCATIONS ----------
/home/users
/tmp
/var/tmp

------ UPDATE VIRUS DATABASE -------
Start: 2020-04-11 01:00:03
End: 2020-04-11 01:00:03
Status: Success

--------------- END ----------------
End: 2020-04-11 01:00:32
Status: Abort, anti virus scanner failed.

Should I delete the clam sig db here var/lib/clamav/ ? But how to initiate scan after? Thanks!
tom83
Posts: 64
Joined: Thu 22. Aug 2019, 21:33

Re: Abort, anti virus scanner failed.

Post by tom83 »

Same problem. Any updates here?
User avatar
Alexander
Keyweb AG
Posts: 3810
Joined: Wed 20. Jan 2016, 02:23

Re: Abort, anti virus scanner failed.

Post by Alexander »

Hello,

please attach /var/log/clamav/clamav.log and /var/log/clamav/freshclam.log
Mit freundlichen Grüßen / Best regards
Alexander Mahr

**************************************************************
Keyweb AG - Die Hosting Marke
Neuwerkstr. 45/46, 99084 Erfurt / Germany
http://www.keyweb.de - http://www.keyhelp.de
**************************************************************
lmarcos
Posts: 78
Joined: Sun 26. Jan 2020, 12:55

Re: Abort, anti virus scanner failed.

Post by lmarcos »

Same case as prune.

Clamav.log

Code: Select all

Sun Aug 30 16:25:16 2020 -> SelfCheck: Database status OK.
Sun Aug 30 16:25:20 2020 -> Reading databases from /var/lib/clamav
Sun Aug 30 16:25:46 2020 -> Database correctly reloaded (8722731 signatures)
freshclam.log

Code: Select all

Fri Aug 28 20:26:21 2020 -> Received signal: wake up
Fri Aug 28 20:26:21 2020 -> ClamAV update process started at Fri Aug 28 20:26:21 2020
Fri Aug 28 20:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Fri Aug 28 20:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Fri Aug 28 20:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Fri Aug 28 20:26:21 2020 -> --------------------------------------
Fri Aug 28 21:26:21 2020 -> Received signal: wake up
Fri Aug 28 21:26:21 2020 -> ClamAV update process started at Fri Aug 28 21:26:21 2020
Fri Aug 28 21:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Fri Aug 28 21:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Fri Aug 28 21:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Fri Aug 28 21:26:21 2020 -> --------------------------------------
Fri Aug 28 22:26:21 2020 -> Received signal: wake up
Fri Aug 28 22:26:21 2020 -> ClamAV update process started at Fri Aug 28 22:26:21 2020
Fri Aug 28 22:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Fri Aug 28 22:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Fri Aug 28 22:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Fri Aug 28 22:26:21 2020 -> --------------------------------------
Fri Aug 28 23:26:21 2020 -> Received signal: wake up
Fri Aug 28 23:26:21 2020 -> ClamAV update process started at Fri Aug 28 23:26:21 2020
Fri Aug 28 23:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Fri Aug 28 23:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Fri Aug 28 23:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Fri Aug 28 23:26:21 2020 -> --------------------------------------
Sat Aug 29 00:26:21 2020 -> Received signal: wake up
Sat Aug 29 00:26:21 2020 -> ClamAV update process started at Sat Aug 29 00:26:21 2020
Sat Aug 29 00:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 00:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 00:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 00:26:21 2020 -> --------------------------------------
Sat Aug 29 01:26:21 2020 -> Received signal: wake up
Sat Aug 29 01:26:21 2020 -> ClamAV update process started at Sat Aug 29 01:26:21 2020
Sat Aug 29 01:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 01:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 01:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 01:26:21 2020 -> --------------------------------------
Sat Aug 29 02:26:21 2020 -> Received signal: wake up
Sat Aug 29 02:26:21 2020 -> ClamAV update process started at Sat Aug 29 02:26:21 2020
Sat Aug 29 02:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 02:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 02:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 02:26:21 2020 -> --------------------------------------
Sat Aug 29 03:26:21 2020 -> Received signal: wake up
Sat Aug 29 03:26:21 2020 -> ClamAV update process started at Sat Aug 29 03:26:21 2020
Sat Aug 29 03:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 03:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 03:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 03:26:21 2020 -> --------------------------------------
Sat Aug 29 04:26:21 2020 -> Received signal: wake up
Sat Aug 29 04:26:21 2020 -> ClamAV update process started at Sat Aug 29 04:26:21 2020
Sat Aug 29 04:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 04:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 04:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 04:26:21 2020 -> --------------------------------------
Sat Aug 29 05:26:21 2020 -> Received signal: wake up
Sat Aug 29 05:26:21 2020 -> ClamAV update process started at Sat Aug 29 05:26:21 2020
Sat Aug 29 05:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 05:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 05:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 05:26:21 2020 -> --------------------------------------
Sat Aug 29 06:26:21 2020 -> Received signal: wake up
Sat Aug 29 06:26:21 2020 -> ClamAV update process started at Sat Aug 29 06:26:21 2020
Sat Aug 29 06:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 06:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 06:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 06:26:21 2020 -> --------------------------------------
Sat Aug 29 07:26:21 2020 -> Received signal: wake up
Sat Aug 29 07:26:21 2020 -> ClamAV update process started at Sat Aug 29 07:26:21 2020
Sat Aug 29 07:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 07:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 07:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 07:26:21 2020 -> --------------------------------------
Sat Aug 29 08:26:21 2020 -> Received signal: wake up
Sat Aug 29 08:26:21 2020 -> ClamAV update process started at Sat Aug 29 08:26:21 2020
Sat Aug 29 08:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 08:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 08:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 08:26:21 2020 -> --------------------------------------
Sat Aug 29 09:26:21 2020 -> Received signal: wake up
Sat Aug 29 09:26:21 2020 -> ClamAV update process started at Sat Aug 29 09:26:21 2020
Sat Aug 29 09:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 09:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 09:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 09:26:21 2020 -> --------------------------------------
Sat Aug 29 10:26:21 2020 -> Received signal: wake up
Sat Aug 29 10:26:21 2020 -> ClamAV update process started at Sat Aug 29 10:26:21 2020
Sat Aug 29 10:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 10:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 10:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 10:26:21 2020 -> --------------------------------------
Sat Aug 29 11:26:21 2020 -> Received signal: wake up
Sat Aug 29 11:26:21 2020 -> ClamAV update process started at Sat Aug 29 11:26:21 2020
Sat Aug 29 11:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 11:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 11:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 11:26:21 2020 -> --------------------------------------
Sat Aug 29 12:26:21 2020 -> Received signal: wake up
Sat Aug 29 12:26:21 2020 -> ClamAV update process started at Sat Aug 29 12:26:21 2020
Sat Aug 29 12:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 12:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 12:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 12:26:21 2020 -> --------------------------------------
Sat Aug 29 13:26:21 2020 -> Received signal: wake up
Sat Aug 29 13:26:21 2020 -> ClamAV update process started at Sat Aug 29 13:26:21 2020
Sat Aug 29 13:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 13:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 13:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 13:26:21 2020 -> --------------------------------------
Sat Aug 29 14:26:21 2020 -> Received signal: wake up
Sat Aug 29 14:26:21 2020 -> ClamAV update process started at Sat Aug 29 14:26:21 2020
Sat Aug 29 14:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 14:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 14:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 14:26:21 2020 -> --------------------------------------
Sat Aug 29 15:26:21 2020 -> Received signal: wake up
Sat Aug 29 15:26:21 2020 -> ClamAV update process started at Sat Aug 29 15:26:21 2020
Sat Aug 29 15:26:21 2020 -> daily.cld database is up to date (version: 25913, sigs: 4103115, f-level: 63, builder: raynman)
Sat Aug 29 15:26:21 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 15:26:21 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 15:26:21 2020 -> --------------------------------------
Sat Aug 29 16:26:21 2020 -> Received signal: wake up
Sat Aug 29 16:26:21 2020 -> ClamAV update process started at Sat Aug 29 16:26:21 2020
Sat Aug 29 16:26:21 2020 -> daily database available for update (local version: 25913, remote version: 25914)
Sat Aug 29 16:26:24 2020 -> Testing database: '/var/lib/clamav/tmp.825af/clamav-5bd8956e8787adb7e0d1ba9065a319b0.tmp-daily.cld' ...
Sat Aug 29 16:26:37 2020 -> Database test passed.
Sat Aug 29 16:26:37 2020 -> daily.cld updated (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sat Aug 29 16:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 16:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 16:26:37 2020 -> Clamd successfully notified about the update.
Sat Aug 29 16:26:37 2020 -> --------------------------------------
Sat Aug 29 17:26:37 2020 -> Received signal: wake up
Sat Aug 29 17:26:37 2020 -> ClamAV update process started at Sat Aug 29 17:26:37 2020
Sat Aug 29 17:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sat Aug 29 17:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 17:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 17:26:37 2020 -> --------------------------------------
Sat Aug 29 18:26:37 2020 -> Received signal: wake up
Sat Aug 29 18:26:37 2020 -> ClamAV update process started at Sat Aug 29 18:26:37 2020
Sat Aug 29 18:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sat Aug 29 18:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 18:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 18:26:37 2020 -> --------------------------------------
Sat Aug 29 19:26:37 2020 -> Received signal: wake up
Sat Aug 29 19:26:37 2020 -> ClamAV update process started at Sat Aug 29 19:26:37 2020
Sat Aug 29 19:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sat Aug 29 19:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 19:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 19:26:37 2020 -> --------------------------------------
Sat Aug 29 20:26:37 2020 -> Received signal: wake up
Sat Aug 29 20:26:37 2020 -> ClamAV update process started at Sat Aug 29 20:26:37 2020
Sat Aug 29 20:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sat Aug 29 20:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 20:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 20:26:37 2020 -> --------------------------------------
Sat Aug 29 21:26:37 2020 -> Received signal: wake up
Sat Aug 29 21:26:37 2020 -> ClamAV update process started at Sat Aug 29 21:26:37 2020
Sat Aug 29 21:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sat Aug 29 21:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 21:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 21:26:37 2020 -> --------------------------------------
Sat Aug 29 22:26:37 2020 -> Received signal: wake up
Sat Aug 29 22:26:37 2020 -> ClamAV update process started at Sat Aug 29 22:26:37 2020
Sat Aug 29 22:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sat Aug 29 22:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 22:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 22:26:37 2020 -> --------------------------------------
Sat Aug 29 23:26:37 2020 -> Received signal: wake up
Sat Aug 29 23:26:37 2020 -> ClamAV update process started at Sat Aug 29 23:26:37 2020
Sat Aug 29 23:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sat Aug 29 23:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sat Aug 29 23:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sat Aug 29 23:26:37 2020 -> --------------------------------------
Sun Aug 30 00:26:37 2020 -> Received signal: wake up
Sun Aug 30 00:26:37 2020 -> ClamAV update process started at Sun Aug 30 00:26:37 2020
Sun Aug 30 00:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sun Aug 30 00:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sun Aug 30 00:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sun Aug 30 00:26:37 2020 -> --------------------------------------
Sun Aug 30 01:26:37 2020 -> Received signal: wake up
Sun Aug 30 01:26:37 2020 -> ClamAV update process started at Sun Aug 30 01:26:37 2020
Sun Aug 30 01:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sun Aug 30 01:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sun Aug 30 01:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sun Aug 30 01:26:37 2020 -> --------------------------------------
Sun Aug 30 02:26:37 2020 -> Received signal: wake up
Sun Aug 30 02:26:37 2020 -> ClamAV update process started at Sun Aug 30 02:26:37 2020
Sun Aug 30 02:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sun Aug 30 02:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sun Aug 30 02:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sun Aug 30 02:26:37 2020 -> --------------------------------------
Sun Aug 30 03:26:37 2020 -> Received signal: wake up
Sun Aug 30 03:26:37 2020 -> ClamAV update process started at Sun Aug 30 03:26:37 2020
Sun Aug 30 03:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sun Aug 30 03:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sun Aug 30 03:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sun Aug 30 03:26:37 2020 -> --------------------------------------
Sun Aug 30 04:26:37 2020 -> Received signal: wake up
Sun Aug 30 04:26:37 2020 -> ClamAV update process started at Sun Aug 30 04:26:37 2020
Sun Aug 30 04:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sun Aug 30 04:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sun Aug 30 04:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sun Aug 30 04:26:37 2020 -> --------------------------------------
Sun Aug 30 05:26:37 2020 -> Received signal: wake up
Sun Aug 30 05:26:37 2020 -> ClamAV update process started at Sun Aug 30 05:26:37 2020
Sun Aug 30 05:26:37 2020 -> daily.cld database is up to date (version: 25914, sigs: 4118019, f-level: 63, builder: raynman)
Sun Aug 30 05:26:37 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Sun Aug 30 05:26:37 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
Sun Aug 30 05:26:37 2020 -> --------------------------------------
Mon Aug 31 01:00:02 2020 -> --------------------------------------
Mon Aug 31 01:00:02 2020 -> ClamAV update process started at Mon Aug 31 01:00:02 2020
Mon Aug 31 01:00:02 2020 -> daily.cld database is up to date (version: 25915, sigs: 4136007, f-level: 63, builder: raynman)
Mon Aug 31 01:00:02 2020 -> main.cvd database is up to date (version: 59, sigs: 4564902, f-level: 60, builder: sigmgr)
Mon Aug 31 01:00:02 2020 -> bytecode.cvd database is up to date (version: 331, sigs: 94, f-level: 63, builder: anvilleg)
User avatar
Alexander
Keyweb AG
Posts: 3810
Joined: Wed 20. Jan 2016, 02:23

Re: Abort, anti virus scanner failed.

Post by Alexander »

Which OS, and which clamscan version you are using?

Code: Select all

clamscan --version
You can try to run clamscan manually and have a look, if there is any additional error output.

Code: Select all

clamscan --infected --recursive /path/to/a/directory/of/your/choice/
Pick a rather empty directory, to speed up execution time, or use one of the paths, which KeyHelp scans by default (/home/users, /tmp, /var/tmp)

Right after the command has finished, execute the following:

Code: Select all

echo $?
What are the outputs?
Mit freundlichen Grüßen / Best regards
Alexander Mahr

**************************************************************
Keyweb AG - Die Hosting Marke
Neuwerkstr. 45/46, 99084 Erfurt / Germany
http://www.keyweb.de - http://www.keyhelp.de
**************************************************************
User avatar
v3ng
Posts: 297
Joined: Wed 4. Jul 2018, 18:08

Re: Abort, anti virus scanner failed.

Post by v3ng »

Same issue here.

Code: Select all

root@zrh:~# clamscan --version
ClamAV 0.102.4/26007/Thu Dec  3 07:13:31 2020
root@zrh:~# clamscan --infected --recursive /var/www/html
Killed
root@zrh:~# echo $?
137
User avatar
Florian
Keyweb AG
Posts: 1243
Joined: Wed 20. Jan 2016, 02:28

Re: Abort, anti virus scanner failed.

Post by Florian »

Hallo,

check the output of dmesg. Maybe the process is killed by the OOM-Killer
Mit freundlichen Grüßen / Best regards
Florian Cheno

**************************************************************
Keyweb AG - Die Hosting Marke
Neuwerkstr. 45/46, 99084 Erfurt / Germany
http://www.keyweb.de - http://www.keyhelp.de
**************************************************************
lmarcos
Posts: 78
Joined: Sun 26. Jan 2020, 12:55

Re: Abort, anti virus scanner failed.

Post by lmarcos »

I've been able to run after a server restart and low CPU usage.
:~# clamscan --version
ClamAV 0.102.4/26039/Tue Jan 5 13:41:59 2021
:~# clamscan --infected --recursive /tmp

----------- SCAN SUMMARY -----------
Known viruses: 8834432
Engine version: 0.102.4
Scanned directories: 15
Scanned files: 0
Infected files: 0
Data scanned: 0.00 MB
Data read: 0.00 MB (ratio 0.00:1)
Time: 23.914 sec (0 m 23 s)
root@osapolar:~# echo $?
0

:~# clamscan --infected --recursive /home/users
LibClamAV Warning: cli_scangpt: detected a non-protective MBR

And it ended here
Locked