UCF STIG Viewer Logo

The McAfee MOVE AV On-Demand Scan interval must be set to no more than every seven days.


Overview

Finding ID Version Rule ID IA Controls Severity
V-78557 MV45-ODS-000008 SV-93263r1_rule Medium
Description
Anti-virus software is the most commonly used technical control for malware threat mitigation. Anti-virus software on hosts should be configured to scan all hard drives and folders regularly to identify any file system infections and to scan any removable media, if applicable, before media is inserted into the system. Not scheduling a regular scan of the hard drives of a system and/or not configuring the scan to scan all files and running processes introduces a higher risk of threats going undetected.
STIG Date
McAfee MOVE AV Multi-Platform 4.5 Security Technical Implementation Guide 2017-12-01

Details

Check Text ( C-78127r1_chk )
Access the McAfee ePO console.

Select Menu >> Policy >> Policy Catalog and then select "MOVE AntiVirus 4.5.0" from the Product list.

From the Category list, select "On Demand Scan".

Select each configured On Demand Scan policy.

Click "Show Advanced".

Under "On-demand Scan", verify the "Run on-demand scan for every _ days" is configured to "7" days or less.

If the "Run on-demand scan for every _ days" is not configured to "7" days or less, this is a finding.
Fix Text (F-85293r1_fix)
Access the McAfee ePO console.

Select Menu >> Policy >> Policy Catalog and then select "MOVE AntiVirus 4.5.0" from the Product list.

From the Category list, select "On Demand Scan".

Select each configured On Demand Scan policy.

Click "Show Advanced".

Under "On-demand Scan", configure the "Run on-demand scan for every _ days" to "7" days or less.

Click "Save".