mirror of
https://github.com/CISOfy/lynis.git
synced 2025-07-31 01:34:23 +02:00
Update tests_malware
This commit is contained in:
parent
59a3c4b536
commit
aa7085bf92
@ -39,6 +39,7 @@
|
|||||||
MALWARE_SCANNER_INSTALLED=0
|
MALWARE_SCANNER_INSTALLED=0
|
||||||
MALWARE_DAEMON_RUNNING=0
|
MALWARE_DAEMON_RUNNING=0
|
||||||
ROOTKIT_SCANNER_FOUND=0
|
ROOTKIT_SCANNER_FOUND=0
|
||||||
|
SENTINELONE_SCANNER_FOUND=0
|
||||||
SOPHOS_SCANNER_RUNNING=0
|
SOPHOS_SCANNER_RUNNING=0
|
||||||
SYMANTEC_SCANNER_RUNNING=0
|
SYMANTEC_SCANNER_RUNNING=0
|
||||||
SYNOLOGY_DAEMON_RUNNING=0
|
SYNOLOGY_DAEMON_RUNNING=0
|
||||||
@ -231,6 +232,20 @@
|
|||||||
Report "malware_scanner[]=mcafee"
|
Report "malware_scanner[]=mcafee"
|
||||||
fi
|
fi
|
||||||
|
|
||||||
|
# SentinelOne
|
||||||
|
LogText "Text: checking process sentineld (SentinelOne)"
|
||||||
|
if isRunning "sentineld"; then SENTINELONE_SCANNER_RUNNING=1; fi # macOS
|
||||||
|
if isRunning "s1-agent"; then SENTINELONE_SCANNER_RUNNING=1; fi # Linux
|
||||||
|
if isRunning "SentinelAgent"; then SENTINELONE_SCANNER_RUNNING=1; fi # Windows
|
||||||
|
if [ ${SENTINELONE_SCANNER_RUNNING} -eq 1 ]; then
|
||||||
|
FOUND=1
|
||||||
|
if IsVerbose; then Display --indent 2 --text "- ${GEN_CHECKING} SentinelOne" --result "${STATUS_FOUND}" --color GREEN; fi
|
||||||
|
LogText "Result: Found SentinelOne"
|
||||||
|
MALWARE_DAEMON_RUNNING=1
|
||||||
|
MALWARE_SCANNER_INSTALLED=1
|
||||||
|
Report "malware_scanner[]=sentinelone"
|
||||||
|
fi
|
||||||
|
|
||||||
# Sophos savscand/SophosScanD
|
# Sophos savscand/SophosScanD
|
||||||
LogText "Test: checking process savscand"
|
LogText "Test: checking process savscand"
|
||||||
if IsRunning "savscand"; then
|
if IsRunning "savscand"; then
|
||||||
|
Loading…
x
Reference in New Issue
Block a user