Skip to main content

Content Scanning & Quarantine

Real-time malware and content scanning with automated quarantine workflows.

ClamAV/ICAPYARA RulesAuto-QuarantineAdmin Review

Scanning Engine

Every file scanned in real-time before it reaches storage — ClamAV, YARA rules, and multi-format extraction.

Engines

  • ClamAV/ICAP real-time malware scanning on every upload
  • YARA rules for custom threat signatures

Coverage

  • Multi-format extraction: Office, PDFs, ZIP, TAR, GZIP, BZIP2, XZ
  • Scan sources: upload, manual, scheduled, SMTP, system
ClamAV
YARA Rules
Archive Scan
Multi-Source

Quarantine Workflow

Automated quarantine with admin review, exemption management, and full audit trail.

Detection

  • Auto-quarantine — file isolated immediately
  • Download blocked until admin resolves status
  • Dashboard with threat type, uploader, and date

Resolution

  • Admin review: approve, delete, or exempt
  • Exemption management for false positives
Quarantine
Approve
Exempt
🛡 Quarantined FilesView All →4 unresolved | 4 totaltest-document.txtvirustest-document.txtvirustest-document.txtvirustest-document.txtvirus

Beyond traditional MFT

Most managed file transfer platforms were designed before modern threats existed. Here is how MnemoShare compares.

CapabilityTraditional MFTMnemoShare
ScanningRelies on endpoint antivirus or no scanningInline ClamAV/ICAP scanning on every file upload
Custom rulesNo custom signature supportYARA rules for organization-specific threat signatures
Archive scanningCannot scan inside archivesMulti-format extraction: Office, PDF, ZIP, TAR, GZIP, BZIP2, XZ
QuarantineInfected files may still be accessibleAutomatic quarantine blocks access until admin reviews
IntegrationSeparate scanning tools requiredBuilt-in scanning integrated with audit trail and workflows

See how MnemoShare compares. Schedule a demo

Real-world use cases

Zero-day protection

Custom YARA rules detect a new ransomware variant targeting healthcare. File is quarantined before reaching storage, admin notified immediately. Exemption created for false-positive test files.

Archive inspection

Partner sends ZIP file containing hundreds of documents. MnemoShare extracts and scans each file individually. One malicious PDF detected and quarantined; clean files proceed normally.

Compliance scanning

Regulated industry requires all incoming files scanned before processing. ClamAV catches known malware, YARA rules flag organization-specific patterns like leaked document watermarks or competitor trade secrets.

Frequently asked questions

How does file scanning work in MnemoShare?
Every file uploaded to MnemoShare is scanned in real-time via ClamAV/ICAP integration before it reaches storage. Scanning supports custom YARA rules for organization-specific signatures and extracts content from multi-format archives.
What happens when malware is detected?
The file is automatically quarantined — blocked from download or further processing. Administrators receive a notification and can review the quarantined file, delete it, or create an exemption for known false positives.
Can I add custom scanning rules?
Yes. MnemoShare supports YARA rules for custom threat signatures. Write rules targeting specific file patterns, document watermarks, or organization-specific indicators and deploy them alongside ClamAV signatures.

Ready to see MnemoShare in action?

Start a free trial, schedule a walkthrough, or dive into the docs.