Command line AV scanners - Which do you use? Anyone Use Panda CL scanner?

tankman1989

Active Member
Reaction score
5
I've decided to look for a CL AV scanner and malware/spyware scanner so I can write some batch files to automate some procedures.

In my search for a good CL scanner I've come across the following options:
ClamAV (but after install I'm having a difficult time figuring out what the CL commands are), Sophos, F-prot Panda CL.

I know there has to be some techs that have a good CL that they like and trust, maybe even malware or spyware programs that run CL.

I basically want to run one command and have it do all the checks/scans one after the other without "user" input. If anyone can suggest other scans to do that would be great as well! I'm thinking making a switch to defrag or not. I think I will output all to a file and screen and add detailed system information.

So, do any of you have a program you like?
 
re: panda
http://www.technibble.com/forums/showthread.php?t=21720
It's good but you need a valid license to use the update and they've stopped working on it to concentrate on the live cd. Be sure to set the scan settings correctly, the full scan (default settings) takes over 2 hours but never finds much more than a 20 minute custom scan. This is by far and away the best CLI scanner i've found for detection rates.

Trend do one (sysclean if I remember correctly)
A squared.
You would be best of checking TRK as it contains 5 CLI scanners in there as well.
The hardest bit with CLI scanners is that they often don't include update functionality but keterin/wget should solve most of those.
 
re: panda
http://www.technibble.com/forums/showthread.php?t=21720
It's good but you need a valid license to use the update and they've stopped working on it to concentrate on the live cd. Be sure to set the scan settings correctly, the full scan (default settings) takes over 2 hours but never finds much more than a 20 minute custom scan. This is by far and away the best CLI scanner i've found for detection rates.

Trend do one (sysclean if I remember correctly)
A squared.
You would be best of checking TRK as it contains 5 CLI scanners in there as well.
The hardest bit with CLI scanners is that they often don't include update functionality but keterin/wget should solve most of those.

Thanks for the reply. That is too bad about panda not working on it anymore.

What is TRK?

Also, what is keterin?
 
Personally, I like the ones that come with the UBCD utilities, like Avira. I also do a scan using Kaspersky's recovery cd as well because it has picked up a few that Antivir didn't. However, I don't run any of them from a CD because you aren't able to do the live update feature if you do.
 
Although I use TRK for other purposes, such as password recovery, I don't care much for the AV scanners, due to problems I have encountered with the updates. I have found that unless the system you are working on is obtaining it's IP address from a local DHCP server, such as a router, it won't connect to the internet properly. For example: I am connecting to the internet via cable modem, which does not have a built in DHCP server, then I am out of luck with using the updates. The only reason I mentioned this is I have both DSL and cable and ran into this problem the other day.
 
Although I use TRK for other purposes, such as password recovery, I don't care much for the AV scanners, due to problems I have encountered with the updates. I have found that unless the system you are working on is obtaining it's IP address from a local DHCP server, such as a router, it won't connect to the internet properly. For example: I am connecting to the internet via cable modem, which does not have a built in DHCP server, then I am out of luck with using the updates. The only reason I mentioned this is I have both DSL and cable and ran into this problem the other day.

You can set a manual ip to get around the dhcp issue easily enough in it. The scans take forever so I rarely if ever use them but I agree, the rest is brilliant. Sharing the entire drive with full permissions in one button press is v useful if you're having issues removing a hard drive on a none booting system.
 
Back
Top