Views:

Smart Scan (File Reputation Services)

Smart Scan (File Reputation Services) checks the reputation of each file against an extensive in-the-cloud database.

Data collected
  • File hash
  • Agent GUID
  • Server GUID
  • Agent IP address
Console locationAgents > Agent Management > Settings > Scan Settings > Scan Methods
Console settings

Smart Scan

OSCE DCN - Smart Scan

Back to top

Web Reputation Services

Web reputation technology tracks the credibility of the web domains accessed by protected endpoints.

Web Reputation Services: External Agents
Data collected
  • URL
  • Agent IP address
Console locationAgents > Agent Management > Settings > Web Reputation Settings > External Agents (tab) > Enable Web Reputation on the following operation systems
Console settings
  • Windows desktop platforms
  • Windows Server platforms

OSCE DCN - Web Reputation Services

Back to top

Web Reputation Services: Internal Agents
Data collected
  • URL
  • Agent IP address
Console locationAgents > Agent Management > Settings > Web Reputation Settings > Internal Agents (tab) > Query Settings
Console settings

Send queries to Smart Protection Servers

OSCE DCN - Web Reputation Services

Back to top

Browser Exploit Prevention

Browser Exploit Prevention identifies the latest web browser exploits and prevents the exploits from being used to compromise the web browser.

Browser Exploit Prevention: External Agents
Data collected
  • Suspicious or malicious URLs
  • HTTP header / HTML files from Suspicious or malicious URLs
  • Browser information (installed extension name, path, csid, version)
Console locationAgents > Agent Management > Settings > Web Reputation Settings > External Agents (tab) > Browser Exploit Prevention
Console settings

Block pages containing malicious script

OSCE DCN - Browser Exploit Prevention

Back to top

Browser Exploit Prevention: Internal Agents
Data collected
  • Suspicious or malicious URLs
  • HTTP header / HTML files from Suspicious or malicious URLs
  • Browser information (installed extension name, path, csid, version)
Console locationAgents > Agent Management > Settings > Web Reputation Settings > Internal Agents (tab) > Browser Exploit Prevention
Console settings

Block pages containing malicious script

OSCE DCN - Browser Exploit Prevention

Back to top

Predictive Machine Learning

Predictive Machine Learning performs in-depth file analysis to detect emerging unknown security risks.

Data collected
  • URL
  • File name
  • File path
  • File hash
  • Digital signature signer
  • Attachment file name
  • Agent GUID
  • Agent IP address
Console locationAgents > Agent Management > Settings > Predictive Machine Learning Settings
Console settings

Enable Predictive Machine Learning

OSCE DCN - Predictive Machine Learning

Back to top

Smart Feedback

Smart Feedback shares anonymous threat information with the Smart Protection Network, allowing Trend Micro to rapidly identify and address new threats.

Smart Feedback
Data collected
  • Peer IP address
  • URL
  • File name
  • File path
  • Hostname
Console locationAdministration > Smart Protection > Smart Feedback
Console settings

Enable Trend Micro Smart Feedback (recommended)

OSCE DCN - Smart Feedback

Back to top

Files collected using the File Feedback feature contain no user data and are submitted only for threat analysis.

Smart Feedback - File Feedback
Data collected
  • Peer IP address
  • File name
  • File path
  • Suspicious executable files
Console locationAdministration > Smart Protection > Smart Feedback > File Feedback
Console settings

Enable feedback of suspicious program files

OSCE DCN - Smart Feedback

Back to top

Behavior Monitoring

Behavior Monitoring provides a necessary layer of additional threat protection from programs that exhibit malicious behavior.

Data collected
  • URL
  • File name
  • File path
  • File hash
  • Agent GUID
  • Agent IP address
Console locationAgents > Agent Management > Settings > Behavior Monitoring Settings > Rules (tab) > Malware Behavior Blocking
Console settings

Enable Malware Behavior Blocking

OSCE DCN - Behavior Monitoring

Back to top

Certified Safe Software Service

Certified Safe Software Service queries Trend Micro datacenters to verify the safety of a program detected by Malware Behavior Blocking, Event Monitoring, Firewall, or antivirus scans.

Data collected
  • File hash
  • Agent IP address
  • File name
  • Company
Console locationAgents > Global Agent Settings > System (tab) > Certified Safe Software Service Settings
Console settings

Enable the Certified Safe Software Service for Behavior Monitoring, Firewall, and antivirus scans

OSCE DCN - Certified Safe Software Service

Back to top

Sample Submission

Sample Submission enables OfficeScan agents to detect and submit file objects that may contain previously unidentified threats to a Virtual Analyzer for further analysis.

Data collected
  • File hash
  • Agent GUID
  • Agent IP address
Console locationAgents > Agent Management > Settings > Sample Submission Settings
Console settings

Enable suspicious file submission to Virtual Analyzer

OSCE DCN - Sample Submission

Back to top