> ## Documentation Index
> Fetch the complete documentation index at: https://docs.safesquid.com/llms.txt
> Use this file to discover all available pages before exploring further.

# SqScan

> Configure SqScan in SafeSquid for in-memory virus and malware scanning with granular policy levels.

# Built-in malware and virus scanning with SqScan

SqScan is SafeSquid's built-in module for scanning traffic for viruses and malware. Browsing certain sites can expose users to malware and reduce performance. SqScan scans requested content and blocks access and downloads from infected or malicious sources.

## Virus scanning policies

## Enabling SqScan section on SafeSquid User Interface

## [Access the SafeSquid interface](/Configuration_Portal)

## Go to Configure Page

<img src="https://mintcdn.com/safe-squid-labs-12a0916f/MsY6j1Y5JyckYLph/images/Configure/Real_Time_Content_Activity/SqScan/image1.webp?fit=max&auto=format&n=MsY6j1Y5JyckYLph&q=85&s=45031ed00a9d4c17b5e1cb31f911fe72" alt="Goto configure.webp" width="1280" height="720" data-path="images/Configure/Real_Time_Content_Activity/SqScan/image1.webp" />

## Go to Real-time content security

<img src="https://mintcdn.com/safe-squid-labs-12a0916f/MsY6j1Y5JyckYLph/images/Configure/Real_Time_Content_Activity/SqScan/image2.webp?fit=max&auto=format&n=MsY6j1Y5JyckYLph&q=85&s=3de8a263a10cf00d3ea9abb245c85a11" alt="Go to real time content security.webp" width="1280" height="720" data-path="images/Configure/Real_Time_Content_Activity/SqScan/image2.webp" />

## Go to SqScan Section

<img src="https://mintcdn.com/safe-squid-labs-12a0916f/MsY6j1Y5JyckYLph/images/Configure/Real_Time_Content_Activity/SqScan/image3.webp?fit=max&auto=format&n=MsY6j1Y5JyckYLph&q=85&s=bd0786da7344f6d85fde90310c73be02" alt="SvScanconfigureSlide1 (1).webp" width="1280" height="720" data-path="images/Configure/Real_Time_Content_Activity/SqScan/image3.webp" />

## Global

### Enabled

Enable or Disable this section.

* **TRUE**: Enable in-memory virus scanning
* **FALSE**: Disable in-memory virus scanning

<img src="https://mintcdn.com/safe-squid-labs-12a0916f/MsY6j1Y5JyckYLph/images/Configure/Real_Time_Content_Activity/SqScan/image4.webp?fit=max&auto=format&n=MsY6j1Y5JyckYLph&q=85&s=8b364a0e33233d71112e96775f469060" alt="SvScanconfigureSlide1 (2).webp" width="1280" height="720" data-path="images/Configure/Real_Time_Content_Activity/SqScan/image4.webp" />

<img src="https://mintcdn.com/safe-squid-labs-12a0916f/MsY6j1Y5JyckYLph/images/Configure/Real_Time_Content_Activity/SqScan/image5.webp?fit=max&auto=format&n=MsY6j1Y5JyckYLph&q=85&s=fb47611379829cedce3e5718f2a33571" alt="SvScanconfigureSlide1 (3).webp" width="1280" height="720" data-path="images/Configure/Real_Time_Content_Activity/SqScan/image5.webp" />

<img src="https://mintcdn.com/safe-squid-labs-12a0916f/MsY6j1Y5JyckYLph/images/Configure/Real_Time_Content_Activity/SqScan/image6.webp?fit=max&auto=format&n=MsY6j1Y5JyckYLph&q=85&s=f548ae7fae2f303fb1a4d8bb971e1273" alt="SvScanconfigureSlide1 (4).webp" width="1280" height="720" data-path="images/Configure/Real_Time_Content_Activity/SqScan/image6.webp" />

## Virus Scanning Policies

Create the entries for SqScan.

Define the Security level and Malware type in each entry.

ALL the Following Entries will be tested from top to bottom.

<img src="https://mintcdn.com/safe-squid-labs-12a0916f/MsY6j1Y5JyckYLph/images/Configure/Real_Time_Content_Activity/SqScan/image7.webp?fit=max&auto=format&n=MsY6j1Y5JyckYLph&q=85&s=46213f9af148ee395f28b41c396b2fc5" alt="SvScanconfigureSlide1 (5).webp" width="1280" height="720" data-path="images/Configure/Real_Time_Content_Activity/SqScan/image7.webp" />

Create the entries for SqScan.

Define the Security level and Malware type in each entry.

<img src="https://mintcdn.com/safe-squid-labs-12a0916f/MsY6j1Y5JyckYLph/images/Configure/Real_Time_Content_Activity/SqScan/image8.webp?fit=max&auto=format&n=MsY6j1Y5JyckYLph&q=85&s=a7380c472d8a521fc4df46a103c26c47" alt="Svscan-policy.jpg" width="837" height="213" data-path="images/Configure/Real_Time_Content_Activity/SqScan/image8.webp" />

### Enabled

Enable or Disable the SqScan Policy.

**TRUE:** Enable this entry.

**FALSE**: Disable this entry.

### Comment

For documentation and future references, explain the relevance of this entry with your policies.

That is, by reading the policies, a future user can understand the purpose of that entry.

### Profiles

Specify the Profiles applicable for this entry.

This entry will be applicable only if the connection has any one of the specified profiles.

Leave it Blank, to apply for all connections irrespective of any applied profile.

To avoid application to a connection that has a profile, use a negated profile (!profile).

### Malware Security Level

Select a security level depending on your requirements.

Set security level as per your safety measures: standard or High or Paranoid.

Set the scan level to bypass or disable the scanning.

* **BYPASS**: Disable Virus Scanning for the matching Profiles
* **STANDARD**: Block if a threat is detected, but not on mere suspicion
* **HIGH**: Block if a threat is detected, even if the content is suspicious
* **PARANOID**: Block everything that SqScan cannot ensure is clean. Warning! This can cause all content to be blocked even in the event of any systemic failures of this functionality.

### Malware Types

Select Virus/Malware type(s) to be blocked, if received content has their signature(s).

SafeSquid will block all such requests if a threat is detected or if the content is suspicious.

* **VIRUS**: Enable Security Against VIRUS threats
* **SPYWARE**: Enable Security Against SPYWARE threats
* **ADWARE**: Enable Security Against ADWARE threats
* **SPAM:** Enable Security Against SPAM threats
* **ROOTKIT**: Enable Security Against ROOTKIT threats
* **DIALER**: Enable Security Against DIALER threats
* **MALICIOUS\_APP:** Enable Security Against MALICIOUS\_APP threats
* **ARCHBOMB**: Enable Security Against ARCHBOMB threats


## Related topics

- [SqScan](/admin_guide/security_scanners/sqscan.md)
- [Malware Scanners](/use_cases/malware_scanning/malware_scanners.md)
- [Architecture and request pipeline](/admin_guide/start_here/architecture.md)
- [Threat Intelligence Feeds](/use_cases/malware_scanning/threat_intelligence_feeds.md)
- [Integrations](/admin_guide/start_here/integrations.md)
