CoCalc provides the best real-time collaborative environment for Jupyter Notebooks, LaTeX documents, and SageMath, scalable from individual users to large groups and classes!
CoCalc provides the best real-time collaborative environment for Jupyter Notebooks, LaTeX documents, and SageMath, scalable from individual users to large groups and classes!
Path: blob/master/documentation/modules/post/linux/manage/disable_clamav.md
Views: 1904
Description
This module will cause the ClamAV service to be shutoff on Linux hosts. ClamAV uses a Unix socket that allows non-privileged users to interact with the ClamAV daemon via utilities like "clamscan". However, no additional checks are required to trigger ClamAV's shutdown.
Verification Steps
Shutting off ClamAV
Launch
msfconsole
Get a Meterpreter shell on a Linux host that's also running ClamAV.
Do:
use post/linux/manage/disable_clamav
Do:
set SESSION <session number on the Linux host>
Do:
exploit -j
The daemon should be shutoff.