Malware Detection on a File Server

File servers, central elements of IT infrastructures, are prime targets for cyberattacks, particularly through malware injection. It is essential to quickly detect a threat before it spreads, but also to identify any latent malware already present on the server.

How can GLIMPS Malware help you?

The Host Connector is a utility that allows you to analyze directories, on-demand or continuously, to identify any suspicious presence. With a proactive approach, it provides security teams with enhanced visibility into file activity. It facilitates the detection and remediation of potential threats.

Through calls to the GLIMPS Malware Detect API, the Host Connector retrieves a verdict and acts on the malicious file by moving it to quarantine or deleting it.

 

Host Connector Functioning

Here are some examples of Host Connector applications

When a user uploads a file to the company server, for example via a network drive mounted on their computer, the Host Connector will detect this deposit and analyze the file. If it is a threat, the file will be moved to quarantine or deleted.

The Host Connector also performs a scan of existing files to identify any threats already present on the server.

It is possible to synchronize personal or shared “Drive” directories hosted via OneDrive, Google Drive, NextCloud or other solutions on a workstation or server, whether running Windows or Linux.

The Host Connector is able to analyze the synchronized directory to remove any threats.

The Host Connector monitors deposited files to quarantine or delete threats.

It is able to move legitimate files to a secure directory for later processing. The deposit directory will therefore only contain files that have not yet been analyzed.

Key benefits

Real-time monitoring

Any addition or modification of files in a directory, on Windows or Linux, is detected by the Host Connector and triggers an analysis

Quarantine

Any detected threat can be moved to an encrypted quarantine directory, or deleted

Automated extraction

The basic file size limits of the platform are pushed back for archive files (zip, rar, iso, …). The Host Connector extracts the sub-files and analyzes them one by one

Centralization of results

The GLIMPS Malware Expert console allows you to view the details of each analysis and simplify the exploitation of results. Alerts can also be generated via this interface

Discover GLIMPS Malware Expert

In-depth analysis

GLIMPS Malware offers more than 25 detection engines, providing deep analysis on all files

Easy to deploy

Thanks to GLIMPS Malware Detect, you just need to add your API token to the Host Connector configuration file to start protecting your environment.

Additionally, the Host Connector can be deployed on both Windows and Linux

Discover GLIMPS Malware Expert

Request a demo

Interested in our solutions? Would you like to see our products in action?

Request a demo