M O N I T O R
68
68
68
68
required start level. For example:
insmod monitor-2.2.18.
о
4.
Go to the directory with the monitor source codes using the
command
cd
. For example,
cd /usr/local/share/AVP/monitor
5. Assemble Monitor using the command
make
.
7.2.2. Configuring Monitor
You may configure the Monitor program by changing its settings within the
configuration file
monitor.conf
. By editing the configuration file you can:
•
Define the program performance parameters.
•
Define the program reporting mode and the path to a log file with
the program performance results.
The program configuration file contains two sections: the
Report file
section
allowing you to define the program reporting mode and
Options
section
with
parameters defining the program performance.
When a file is processed and saved to the hard disk, Monitor returns the
appropriate exit code. However, many programs do not process exit codes
of the file closing function and, therefore, will continue to handle the
infected file. To avoid this kind of situation, it is advisable to use the Monitor
program when handling infected objects.
$"
To define how the monitor must handle infected files, type one
of the following strings in the WriteInfedtedAction line of the
Options section:
•
remove
—delete the file;
•
rename—
rename the infected file by adding the string
.infected
to its extension;
•
none—
ignore the file. This is the default value.
For example, the section line may look similar to the following:
WriteInfedtedAction none
The system also creates, saves and executes files that do not carry viruses
for certain (for example, log files and files in the
bin
directory), and their