Sign In with your
Trend Micro Account
Need Help?
Need More Help?

Create a technical support case if you need further support.

Enabling Virtual Analyzer in Deep Discovery Inspector (DDI) 3.8

    • Updated:
    • 1 Nov 2017
    • Product/Version:
    • Deep Discovery Inspector 3.8
    • Platform:
    • N/A N/A
Summary

Virtual Analyzer uses system images to observe sample behavior and characteristics within an isolated and controllable virtual environment then assigns a risk level to the sample. Therefore, enabling the Virtual Analyzer feature not only helps organization identify and combat potential threats at an early stage, but also gives us a deeper understanding and knowledge of potential threats.

Details
Public

Recommendation

The Virtual Analyzer feature in DDI can be enabled at any time but by default, it is set to Disabled. To defend against potential threats, Trend Micro recommends the following:

  • Enable Virtual Analyzer,then submit the files to either Internal Virtual Analyzer (Built into DDI) or to the External one (Built into other Trend Micro products as Deep Discovery Analyzer (DDAN)).
  • Enlarge the file size to 15 MB for intercepted files to minimize dropped file occurrences.

Configuration

To enable Virtual Analyzer in DDI, do the following:

  1. Go to Administration > Virtual Analyzer > Setup.

    Go to Setup

  2. Tick the Submit files to Virtual Analyzer checkbox then complete all related settings.

    Tick Submit files to Virtual Analyzer

  3. Click Save.

    Click Save

The files captured by DDI larger than the maximum size will be dropped. To modify the storage file size:

  1. Go to Administration > System Maintenance > Storage Maintenance.

    Go to Storage Maintenance

  2. Under File Size Settings, set the Maximum file size.

    Set the Maximum file size

  3. Click Save.

    Click Save

Premium
Internal
Rating:
Category:
Configure; SPEC
Solution Id:
1118691
Feedback
Did this article help you?

Thank you for your feedback!

To help us improve the quality of this article, please leave your email here so we can clarify further your feedback, if neccessary:
We will not send you spam or share your email address.

*This form is automated system. General questions, technical, sales, and product-related issues submitted through this form will not be answered.

If you need additional help, you may try to contact the support team. Contact Support


To help us improve the quality of this article, please leave your email here so we can clarify further your feedback, if neccessary:
We will not send you spam or share your email address.

*This form is automated system. General questions, technical, sales, and product-related issues submitted through this form will not be answered.