ClamAV
ClamAV is an open-source antivirus engine for detecting trojans, viruses and other malware, maintained by Cisco Talos.
- GitHub stars
- 7.3k
- Last commit
- 1 mo ago
- Latest release
- clamav-1.5.4
- Licence
- GPL-2.0
- Self-hosted
- Yes

ClamAV is an open-source antivirus engine that detects trojans, viruses, malware and other malicious threats. It is written in C, released under GPL-2.0 and developed by Cisco Talos. It is used as an engine that other tools and servers can build on, for example scanning files or mail attachments, rather than as a polished desktop product.
Documentation and an FAQ are hosted at docs.clamav.net, and each release archive includes an offline copy. The project explains how to read and write ClamAV signatures through a signature writing manual, so anyone can create detection rules. News, release notes and a blog track new features, and documentation contributions go through a separate repository.
Installation options include official Docker images, distribution package managers, and downloadable installers: Debian and RPM packages for Linux, a universal PKG for macOS and MSI or portable ZIP packages for Windows. It can also be built from source for Unix, Linux, Mac and Windows. Upgrade notes describe moving from earlier versions.
Key features
- Open-source antivirus scanning engine
- Detects trojans, viruses and other malware
- Signature format with a writing manual
- Docker images and distro packages
- Installers for Linux, macOS and Windows
- Offline copy of documentation in each release
Pricing: Free and open source under the GPL-2.0 license.