One of the main features of Deep Discovery products is the Virtual Analyzer which enables the execution and testing of suspicious files that it encounters.
Virtual Analyzer uses system images to observe sample behavior and characteristics within an isolated and controllable virtual environment, and then assigns a risk level to the sample.
To integrate Virtual Analyzer with Deep Discovery products, preparing Open Virtualization Appliance (OVA) files for Virtual Analyzer images is needed.
Currently, different Deep Discovery products and versions support different operating systems installed inside the OVA files.
Refer to the following for more detailed information:
- DDI - Supported operating systems for Virtual Analyzer in Deep Discovery Inspector (DDI)
- DDEI - Supported operating systems for Virtual Analyzer in Deep Discovery Email Inspector (DDEI)
- DDAN - Supported operating systems for Virtual Analyzer in Deep Discovery Analyzer (DDAN)
- DDWI - Supported operating systems for Virtual Analyzer in Deep Discovery Web Inspector (DDWI)
To prepare the Virtual Analyzer images, refer to the up-to-date user guide: Virtual Analyzer Image Preparation Tool.