STIGQter STIGQter: STIG Summary: Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide Version: 2 Release: 3 Benchmark Date: 02 Jul 2025:

Exchange antimalware agent must be enabled and configured.

DISA Rule

SV-259694r1015276_rule

Vulnerability Number

V-259694

Group Title

SRG-APP-000272

Rule Version

EX19-MB-000146

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Open the Exchange Management Shell and run the following command:

& $env:ExchangeInstallPath\Scripts\Enable-AntimalwareScanning.ps1

This will automatically enable the anti-malware agent. After the script completes, run the following cmdlet to complete the process:

Restart-Service MSExchangeTransport

This may take up to 10 minutes to take effect.

Check Contents

Open the Exchange Management Shell and run the following cmdlets:

Get-TransportAgent "Malware Agent"

If the identity "Malware Agent" is not set to "Enabled", this is a finding.

Vulnerability Number

V-259694

Documentable

False

Rule Version

EX19-MB-000146

Severity Override Guidance

Open the Exchange Management Shell and run the following cmdlets:

Get-TransportAgent "Malware Agent"

If the identity "Malware Agent" is not set to "Enabled", this is a finding.

Check Content Reference

M

Target Key

5580