Malware

Navigation:  Imunify360 User Interface > Settings >

Malware

Previous pageReturn to chapter overviewNext page

Go to Imunify360 → Settings → Malware. Here you can configure General and Malware Cleanup (available starting with Imunify360 version 3.7.1 Beta) Settings.

 

Note. Read CXS integration documentation carefully to make Malware Scanner work properly if you decided to use the former instead of Imunify360 anti-malware protection.

 

General

 

1.Automatically scan all modified files - enables real-time scanning for modified files using inotify library. The Scanner searches for modified files in user’s DocumentRoot directories. Note. It requires inotify to be installed and may put an additional load on a system.

2.Automatically scan any file uploaded using web - enables real-time scanning of all the files that were uploaded via http/https. Note. It requires ModSecurity to be installed.

3.Automatically scan any file uploaded using ftp - enables real-time scanning of all the files that were uploaded via ftp. Note. It requires Pure-FTPd to be used as FTP service.

4.Automatically send suspicious and malicious files for analysis —  malicious and suspicious files will be sent to the Imunify360 Team for analysis automatically.

5.Try to restore from backup first - allows to restore file as soon as it was detected as malicious from backup if a clean copy exists. If a clean copy does not exist or it is outdated, default action will be applied. See also CloudLinux Backup.

6.Use backups not older than (days) - allows to set the a maximum age of a clean file.

7.Default action on detect - configure Malware Scanner actions when detecting malicious activity.

Delete permanently.

Quarantine file in place.

Just display in dashboard.

Tick required checkboxes and click Save changes button.

 

Malware Cleanup

 

{Available starting with Imunify360 version 3.7.1 Beta}

 

Trim file instead of removal — do not remove infected file during cleanup but make the file zero-size (for malwares like web-shells);

Keep original files for … days — the original infected file is available for restore within the defined period. Default is 14 days.

Click Save changes button to apply all changes.

 

malwarescannersettings