sudo systemctl enable --now clamav-daemon
No threats detected
The objection is familiar: Linux does not get viruses. Mostly true, and mostly beside the point. A public server is not defending its own binaries, it is defending the directory where users upload files. Web shells dropped through a vulnerable upload form, malicious attachments passing through a mail server, and payloads staged in a writable temp directory are all things ClamAV recognises, and all things that arrive on Linux hosts constantly.
This page shows when the last scan ran, what it found, and — the field that matters most — how old the signature database is. ClamAV with stale signatures gives the appearance of protection and none of the substance. If freshclam has not run in a week, the scan results below it mean very little.
Linux Malware Detect is shown alongside, where installed. The two complement each other: ClamAV brings the broad signature set, LMD brings signatures for web-facing malware that general antivirus tends to miss.