From shell run the following:


wget http://www.rfxn.com/downloads/maldetect-current.tar.gz
tar -xzvf maldetect-current.tar.gz
cd maldetect-*
sh install.sh

Then edit the config file:


pico /usr/local/maldetect/conf.maldet

I change the settings to quarantine problem files and alert to a different email address.

To run straight away –


maldet --scan-all /home?/?/public_html
or
maldet --scan-all ./