DDI has the ability to synchronize Suspicious Objects from Control Manger (TMCM) which is generated by Virtual Analyzer. But because of its default settings, DDI only triggers detections for High severity Suspicious Objects.
For the Suspicious Objects list, on the DDI web console, go to Detection > Suspicious Objects.
Click image to enlarge
DDI synchronizes Files, URLs, IPs and Domains of suspicious objects with TMCM and does security checking based on those information.
However, to mitigate potential impacts from suspicious objects, since Virtual Analyzer has a bit more aggressive technique and could generate some false positive cases, by default, DDI only triggers detections for High risk level suspicious objects.
Click image to enlarge
To enable the detections for Medium/Low risk level suspicious objects, contact Trend Micro Technical Support for more information.