show hx server mal

Prev Next

Displays the settings related to FireEye endpoint malware protection.

Syntax

show hx server mal

Parameters

None

Example

The following example shows sample output produced when you enter the show hx server mal command:

hostname # show hx server mal
HX Server Malware Protection Configuration:
Enabled by user:           enabled
Update enabled:            enabled
Update Interval:           4 hr
Update Source:             internet
Update URL 32-bit client:  http://avupdate.fireeye.com/av32bit
Update URL 64-bit client:  http://avupdate.fireeye.com/av64bit
** HX Proxy Configuration for Malware Protection Indicator updates
Enabled:                   enabled
Proxy upstream server:     avupdate.fireeye.com
** Quarantine Configuration:
Enabled by user:           disabled
Quarantine Actions:
    Clean Infections:      enabled
    Remove Malware Trace:  enabled
    Notify User:           enabled
Quarantine Exceptions:
    Heuristic Detections:  disabled
    Adware:                disabled
    PUP:                   disabled
    Spyware:               disabled
Quarantined Files Aging(in days): 90
** Global Exceptions
Exclude processes from real-time malware scanning: disabled
No entries.
Exclude files or folders from real-time malware scanning: disabled
No entries.
Exclude hashes from real-time malware scanning: disabled
No entries.
** Exceptions for Selected Host Sets
Exclude processes from real-time malware scanning: disabled
No entries.
Exclude files or folders from real-time malware scanning: disabled
No entries.
Exclude hashes from real-time malware scanning: disabled
No entries.
** Malware Alert Limits:

Alert Limit Maximum:       100000
Alert Limit Period:        4 hr
** Malware Scan:
Enabled by user:           disabled
Network OAS Enabled:       disabled
Network OAS Mode:          read
Cancel Enabled:            disabled
Pause Enabled:             disabled
Pause Maximum Allowed:     10
Pause Interval:            1 hr
Schedule:                  ""
** Malware Scan Exceptions:

Schedule:                  ""

User role

All roles except API Analysts and API Admins

Command mode

Enabled

Supported appliances

This command is supported on the following appliance running the specified release or later:

  • Endpoint Security (HX): Release 3.5