9.1.5.1. Malicious Code ProtectionΒΆ

SIMP installs and configures ClamAV. ClamAV is a command line malicious code detection tool.

ClamAV is scheduled to run once per day and scans /tmp, /var/tmp, and /dev/shm.

References: SI-3 : MALICIOUS CODE PROTECTION, SI-3a.