Use the CLI commands to enable or disable AV-Check, which provides another type of static analysis on the Network Security appliance. AV-Check allows the Network Security appliance to use antivirus tools, such as Sophos and ClamWin, to scan malware samples. After you have configured AV-Check using the CLI, you can view the analysis of the results on the > Alerts page in the Web UI.
After AV-Check is enabled, no other configuration is required.
Note
You cannot enable AV-Check using the sensor CLI.
Because the Intelligent Virtual Execution - Server compute node performs static analysis on submitted malware samples, the output fields for each static analysis tool are not displayed for the show static-analysis config command on the sensor.
Prerequisites
Administrator or Operator access to the Network Security appliance
An AV_ENGINE_SOPHOS license