this post was submitted on 20 Apr 2025
626 points (92.3% liked)

linuxmemes

24579 readers
2806 users here now

Hint: :q!


Sister communities:


Community rules (click to expand)

1. Follow the site-wide rules

2. Be civil
  • Understand the difference between a joke and an insult.
  • Do not harrass or attack users for any reason. This includes using blanket terms, like "every user of thing".
  • Don't get baited into back-and-forth insults. We are not animals.
  • Leave remarks of "peasantry" to the PCMR community. If you dislike an OS/service/application, attack the thing you dislike, not the individuals who use it. Some people may not have a choice.
  • Bigotry will not be tolerated.
  • 3. Post Linux-related content
  • Including Unix and BSD.
  • Non-Linux content is acceptable as long as it makes a reference to Linux. For example, the poorly made mockery of sudo in Windows.
  • No porn, no politics, no trolling or ragebaiting.
  • 4. No recent reposts
  • Everybody uses Arch btw, can't quit Vim, <loves/tolerates/hates> systemd, and wants to interject for a moment. You can stop now.
  • 5. πŸ‡¬πŸ‡§ Language/язык/Sprache
  • This is primarily an English-speaking community. πŸ‡¬πŸ‡§πŸ‡¦πŸ‡ΊπŸ‡ΊπŸ‡Έ
  • Comments written in other languages are allowed.
  • The substance of a post should be comprehensible for people who only speak English.
  • Titles and post bodies written in other languages will be allowed, but only as long as the above rule is observed.
  • 6. (NEW!) Regarding public figuresWe all have our opinions, and certain public figures can be divisive. Keep in mind that this is a community for memes and light-hearted fun, not for airing grievances or leveling accusations.
  • Keep discussions polite and free of disparagement.
  • We are never in possession of all of the facts. Defamatory comments will not be tolerated.
  • Discussions that get too heated will be locked and offending comments removed.
  • Β 

    Please report posts and comments that break these rules!


    Important: never execute code or follow advice that you don't understand or can't verify, especially here. The word of the day is credibility. This is a meme community -- even the most helpful comments might just be shitposts that can damage your system. Be aware, be smart, don't remove France.

    founded 2 years ago
    MODERATORS
     
    (page 2) 46 comments
    sorted by: hot top controversial new old
    [–] [email protected] 24 points 1 day ago (3 children)

    An antivirus is mostly just a blacklist of known malware. Sometimes heuristics are used such as 'this piece of software isn't installed on many PCs, and it appears to be doing shady stuff like, monitoring keystrokes or listening to your microphone'. But unless your antivirus is actually sentient there's no way for it to really distinguish between a chat application that listens to your microphone so you can talk to your friends / monitor your keystrokes to know when you've hit the push-to-talk key, and a piece of actual malware that intends to spy on you and blackmail you.

    What you have with a package manager is a whitelist of programs that have been selected by your distro maintainers. Is it completely impossible for someone to sneak malware into a distro's repository? No, but its a lot easier to maintain a list of known good software than it is to maintain a list of known bad software. And in that situation your antivirus isn't going to help you anyway, since the people maintaining its malware list aren't going to magically know that something is malware before the distro maintainers do.

    So, generally, just using your package manager instead of running random shit you find online is going to be a lot better than any antivirus. With things like Wayland and Flatseal becoming more common we're heading towards a situation where fine-grained per-package permissions will become the standard way distros do things, making antivirus even more unnecessary.

    We should have done that a long time ago, as the security model of 'any program you run can do anything you can by default', then blacklist the ones that inevitability abuse that privilege, is completely backwards.

    load more comments (3 replies)
    [–] [email protected] 1 points 1 day ago

    SElinux is what you want

    [–] [email protected] 4 points 1 day ago (6 children)

    I was just wondering, would immutable distros be even less affected than Unix systems in general?

    load more comments (6 replies)
    [–] [email protected] 17 points 1 day ago (5 children)

    I just switched to linux and totally forgot about this. Do I really not need one? 99% of what I do is steam gaming anyway so I'm not too worried, worst case I just format and reinstall, but still...

    [–] [email protected] 1 points 1 day ago

    better be safe than sorry so get Clamav and scan your system frequently

    [–] [email protected] 16 points 1 day ago (6 children)

    Most malware is not Linux compatible. However the stuff that is will fuck you over very hard. Get clamav set a cron

    load more comments (6 replies)
    load more comments (3 replies)
    [–] [email protected] 27 points 1 day ago (1 children)

    As someone who may obtain games and shows/movies through less than rights holder approved methods, ClamAV is a necessity.

    [–] [email protected] 18 points 1 day ago

    Not just for the pirate though. If you share any files between nix and win OS's. I wouldn't want to share any computer std with those I care for, friend, family or business.

    There are also cool tools like chkrootkit and rkhunter that might come in handy.

    [–] [email protected] 2 points 1 day ago

    What anti-virus sudo you use?

    [–] [email protected] 20 points 1 day ago (1 children)

    Not having inter-distro binary compatibility is a blessing in disguise.

    [–] [email protected] 13 points 1 day ago (1 children)

    Y'all just have too many dependencies

    [–] [email protected] 10 points 1 day ago (1 children)

    Different glibc version says hello.

    [–] [email protected] 4 points 1 day ago (3 children)
    load more comments (3 replies)
    [–] [email protected] 10 points 1 day ago* (last edited 1 day ago) (2 children)

    Does anyone have an idea what would happen if one runs a Windows virus with Wine ?

    [–] [email protected] 6 points 1 day ago* (last edited 1 day ago)
    [–] [email protected] 8 points 1 day ago (3 children)

    Can only access Wine's directory not your actual Linux files

    [–] [email protected] 12 points 1 day ago

    That's just not true in many cases. It can usually access your home directory.

    [–] [email protected] 4 points 1 day ago* (last edited 1 day ago) (2 children)

    And the viruses that write themselves to the boot sectors of the hard drive?

    [–] [email protected] 5 points 1 day ago

    I suppose if there was a wine config that had an appropriate dosdevice setup for the boot sector then it'd be able to write to it, but wine doesn't need to boot so I don't think that would do anything.

    [–] [email protected] 3 points 1 day ago

    They simply can't because its designed to do that on windows not on Linux because they are different. Plus use ClamAV and you should be good. (I am not an expert in this)

    load more comments (1 replies)
    [–] [email protected] 1 points 1 day ago

    When you get to server levels it's about making sure the firewall rules are filtering correctly. Need external access for support, while blocking script kiddies attempts to gain ssh access. (Figuratively speaking)

    [–] [email protected] 4 points 1 day ago
    [–] [email protected] 104 points 1 day ago (1 children)

    ClamAV in the corner, visibly annoyed

    [–] [email protected] 18 points 1 day ago (1 children)

    Its powerful but sadly not realtime

    [–] [email protected] 6 points 1 day ago (1 children)

    Microsoft Defender 😊

    [–] [email protected] -1 points 1 day ago (1 children)
    [–] [email protected] 3 points 1 day ago (3 children)

    That was 5 years ago, it's actually pretty decent now..

    Btw, I was just trolling..

    [–] [email protected] 1 points 1 day ago (1 children)

    i dont know I still dont trust microsoft

    load more comments (1 replies)
    [–] [email protected] 3 points 1 day ago (1 children)

    It keeps trying to tell me that FileZilla is a Trojan.

    [–] [email protected] 6 points 1 day ago (1 children)

    Probably because FileZilla requires special access to personal files and WD probably knows It'll try to send them elsewhere

    The things that trigger antivirus software aren't just hashes anymore, it's the behavior of the software on your machine.. That's why I said it's better now..

    [–] [email protected] 2 points 1 day ago (1 children)

    Weird how that doesn't happen for other FTP or file transfer apps.

    [–] [email protected] 3 points 1 day ago (1 children)

    Oh, wait... I just remembered... users have reported that Filezilla does by itself install malware/bundleware, unless you're very careful to untick some boxes during the installation... IT IS malicious that they install other stuff on your machine and it's hard for you to find what exactly they installed..

    See the Negative reviews on Alternativeto

    [–] [email protected] 1 points 1 day ago (2 children)

    The detection happens with the update download, which does not have any bundled software. It also detects the installer that specifically does not have the option for installing bundled software.

    load more comments (2 replies)
    load more comments (1 replies)
    [–] [email protected] 4 points 1 day ago (2 children)
    [–] [email protected] 9 points 1 day ago

    bash: /usr/bin/brain: No such file or directory

    :(

    [–] [email protected] 68 points 1 day ago (4 children)

    A few years ago I found a text (probably as image) where somebody β€˜tried’ to run a virus on linux. It went something like this:

    Wanted to install a virus on Ubuntu, but it was only available as an aur package. Tried converting. Didn’t work … Tried make virus, but didn’t work. Upgraded cmake, tried again, but some libraries were missing.

    Tried installing libraries, but they were very outdated and I couldn’t find proper versions.

    Checked the source to see what the libs were doing and replaced them.

    and so on.

    Does someone know what I’m talking about and possibly has the source?

    [–] [email protected] 1 points 1 day ago

    I think I also remember somebody ran Wannacry under Wine with completely expected results.

    [–] [email protected] 20 points 1 day ago (1 children)

    https://preview.redd.it/therealreasonwhylinuxissaferthanotheros-v0-dwprcgitkejb1.png?auto=webp&s=2d0165184ffac435b7dec0c5b46c5e5b152b4870

    Not sure how to actually post an image, but this I think is one.

    Gripping the bitcoin wallet and paying $5 out of pity is my favorite part :)

    [–] [email protected] 9 points 1 day ago

    Image in post or comment:

    ![](https://preview.redd.it/therealreasonwhylinuxissaferthanotheros-v0-dwprcgitkejb1.png?auto=webp&s=2d0165184ffac435b7dec0c5b46c5e5b152b4870)
    

    You can add alt text in the square brackets, but many apps won't show it.

    This then renders as

    [–] [email protected] 6 points 1 day ago
    load more comments
    view more: β€Ή prev next β€Ί