ISTQB Mock App

Malware Scanning

Malware scanning is the process of examining files, applications, or systems to detect known or suspicious malicious software.

Official definition
ISTQB Official Glossary Definition
Static analysis aiming to detect malicious code received at an interface.

(Definition reproduced from the ISTQB Glossary. Copyright belongs to ISTQB.)

View the complete ISTQB Glossary

What is Malware Scanning?

Malware scanners compare files against known signatures, behavioral rules, or heuristics to identify potential threats before they execute.

Detection methods: Signature-based and behavior-based detection are commonly used.

Preventive measure: Regular scanning reduces malware risks.

Testing value: Verifies security controls and clean software releases.

Real World Example

A regulated product team is preparing a release where Malware scanning appears in reviews, test design conversations, or defect triage rather than as an isolated glossary word.

The risk is that the team treats Malware scanning as interchangeable with nearby ISTQB terms. That makes test scope blurry and can lead to weak evidence for the release decision.

The tester anchors the discussion in the official definition, asks where the concept appears in the product, and designs examples that show the difference between Malware scanning and similar ideas.

The page becomes useful in practice because Malware scanning is connected to a specific testing decision, not memorized as a detached definition.

Practice Questions

Question 1

Which statement BEST describes Malware scanning in the context of ISTQB terminology?

Question 2

A tester needs to explain Malware scanning to a non‑technical stakeholder. Which approach is MOST appropriate?

Test your knowledge with real ISTQB-style questions

You’ve learned Malware Scanning. Test your understanding with topic-specific questions in our Mock Exams.

Go to Mock Exams