Protect your S3 bucket data with ease using our API server, powered by ClamAV Antivirus. Seamlessly integrate our robust and reliable solution into your data processing workflows to ensure that your files are thoroughly scanned and protected against malicious threats, providing peace of mind and maintaining the integrity of your data.
This is a repackaged open source software product wherein additional charges apply for support by Elm Computing.
Disclaimer: All trademarks referenced in this listing belong to their respective owners. Their use does not imply any affiliation with or endorsement by the trademark holders.
Our API server, powered by ClamAV Antivirus, offers a comprehensive solution for protecting your valuable data stored in S3 buckets. With its powerful scanning capabilities, our server efficiently detects viruses, malware, and other malicious content, safeguarding your files from potential threats.
Key Features:
Easy Integration: Integrate our API server seamlessly into your existing data processing workflows.
Robust Virus Detection: Leverage the powerful scanning engine of ClamAV to detect a wide range of viruses, trojans, worms, and other malware with high accuracy and efficiency.
Regularly updated malware database: Continuous updates to the malware database ensure that you are protected from the most recent threats.
The ClamAV-based API server provided by Elm Computing is designed solely to facilitate the use of ClamAV for virus scanning. The scanning functionality, detection accuracy, and results are entirely dependent on ClamAV and its virus definitions. Elm Computing does not modify or enhance the core functionality of ClamAV and does not guarantee the accuracy, completeness, or reliability of any scanning results.
Elm Computing provides support for the proper use and configuration of the API server but is not responsible for any consequences resulting from the use of the service, including but not limited to false positives, false negatives, system security breaches, or data integrity issues. Users are advised to implement additional security measures as appropriate for their use case.
By using this API server, you acknowledge and accept that Elm Computing is not liable for any direct, indirect, incidental, or consequential damages arising from the use of ClamAV through this API.
Highlights
ClamAV Antivirus Engine
Scan Amazon S3 Objects, Uploaded Files, and Server-Local Files
Easy Integration with API Endpoints and code Examples
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Try this product free for 14 days according to the free trial terms set by the vendor. Usage-based pricing is in effect for usage beyond the free trial terms. Your free trial gets automatically converted to a paid subscription when the trial ends, but may be canceled any time before that.
ClamAV API Server: S3 Antivirus, File Upload, and Local Scanning
You pay by the hour based on the EC2 instance type you choose to run the ClamAV API Server. All 16 options bill the same software per running hour, so your cost scales with instance size and how long you run it. The t3 and t3a families are burstable general-purpose instances, offered in medium, large, xlarge, and 2xlarge sizes. The m5 and m6a families are general-purpose instances with steadier performance, offered in large, xlarge, 2xlarge, and 4xlarge sizes. Larger instances carry more compute and memory. You select one based on your scanning workload.
Top-of-mind questions for buyers
Am I charged for the software when the EC2 instance is stopped?
The software meters running hours only. When you stop the instance, software charges stop too. Powered-off instances do not accrue hourly software fees. Note that stopped instances may still incur AWS storage charges for attached volumes, but those are separate from this listing's per-hour software cost.
What does the hourly rate cover, and what do I still pay AWS separately?
The hourly rate covers the ClamAV API Server software packaged by the vendor, billed per running hour of your chosen instance. You pay standard AWS infrastructure costs, such as compute, storage, and data transfer, separately. The listing bundles open source antivirus scanning with vendor support.
How do I choose an instance size, and can I switch later?
You pick one instance type based on your scanning workload and file volume. Larger sizes offer more compute and memory. You can stop the instance and relaunch on a different size; billing follows whichever type is running. Your cost changes to match the new instance's hourly rate.
www.elmcomputing.io+1
Helpful?
Vendor refund policy
We do not currently support refunds, but you can cancel at any time.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Updated to ClamAV 1.4.4 on Ubuntu 26.04. Updated the API server to the current /api/v1 routes: /api/v1/aws/scan, /api/v1/scan/upload, /api/v1/scan, /api/v1/health, and /api/v1/livez. The server-local scan route is confined to LOCAL_SCAN_DIR.
Additional details
Usage instructions
Accessing the API Server
After the EC2 instance starts, access the API server through the instance private IP address on port 8080. For security, deploy the instance in a private subnet or restrict inbound access to trusted networks instead of exposing it directly to the internet.
The server-local scan route is enabled on this AMI and is confined to /var/lib/elm-virus-scan/scan-drop through LOCAL_SCAN_DIR. Put files in that directory before calling POST /api/v1/scan. For arbitrary client-provided bytes, use POST /api/v1/scan/upload instead.
IAM role requirement for S3 scans
Attach an IAM role to the EC2 instance with read access to the S3 buckets and objects you want to scan. The AWS route uses the instance role and the instance region.
A completed scan returns HTTP 200 for both clean and infected files. Inspect the JSON response: code 0 means clean, and code 1 means malware was found. Invalid requests return 400 or 403, oversized uploads return 413, and scanner/provider failures return 5xx.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
ClamAV Antivirus engine for detecting viruses, trojans, worms, and malware
Malware Database Updates
Regularly updated malware database to protect against recent threats
Multi-Source File Scanning
Capability to scan Amazon S3 objects, uploaded files, and server-local files
Threat Detection Accuracy
High accuracy and efficiency in detecting a wide range of malicious content and threats
Malware Detection Engine
Open-source ClamAV antivirus engine for detecting viruses, worms, trojans, and latest malware threats
Scanning Modes
Real-time, scheduled, on-demand, on-access, and API-based virus scanning capabilities
Automated Threat Response
Automatic tagging, deletion, or quarantine of infected files with immediate notifications via email, Slack, Microsoft Teams, AWS Security Hub, Systems Manager OpsCenter, or Amazon SNS
File Processing Capacity
Support for scanning files up to 2 GB in size across multiple AWS accounts and S3 buckets
Malware Database Updates
Continuous updates to malware signatures to protect against latest and emerging threats
Multi-Storage Platform Support
Malware scanning across Amazon S3, Amazon EBS, Amazon EFS, and Amazon FSx for object, block, and file storage environments.
Multiple Scanning Engines
Support for Sophos, CSS Premium, and CSS Secure engines that can be used individually or simultaneously to optimize detection accuracy and performance.
Flexible Scanning Models
Event-based scanning on upload, retroactive scanning on-demand or scheduled, and API-based scanning before write operations for migrations and application workflows.
In-Tenant Deployment Architecture
Installation and operation within customer AWS accounts with data remaining in the specified region, supporting private VPC endpoints and linked account management.
Automated Response and Remediation
Automated quarantine, tagging, and deletion of detected malware with integration to downstream workflows, alerts, and enforcement policies through object tagging.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.