cancel
Showing results for 
Search instead for 
Did you mean: 
Highlighted

When Move Agentless find malware

Jump to solution

Hi everyone 

When McAfee Move Agentless scan the file find malware . 

We can watch source for this file ? Which system in VM? Or just can watch ip address.

thank 

Abel pan 

 

2 Solutions

Accepted Solutions
patrakshar McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 2 of 5

Re: When Move Agentless find malware

Jump to solution

image.pngCapture.JPGHi @abel_pan 

Yes you can see the host name of the source machine. You need to make sure that SVA-Policy has the vcenter Administrator credential. It will show you the Hostname of the machine.

 

 

View solution in original post

patrakshar McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 4 of 5

Re: When Move Agentless find malware

Jump to solution

image.pngThis are the details you will see for SVA(Which Is detecting the malware)image.pngThese are the details you will see the Clients where the malware found.

In agentless scenario we do not have Agent installed on the actual client machines hence all the information like ENS/VSE threat event wont populate. However since MOVEAgentless depends on Vsphere extension which pulls the entire Vcentner architecture into EPO, you will see all the client machines details in System tree though the machines are in unmanaged state.

View solution in original post

4 Replies
patrakshar McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 2 of 5

Re: When Move Agentless find malware

Jump to solution

image.pngCapture.JPGHi @abel_pan 

Yes you can see the host name of the source machine. You need to make sure that SVA-Policy has the vcenter Administrator credential. It will show you the Hostname of the machine.

 

 

View solution in original post

Re: When Move Agentless find malware

Jump to solution

Thank you for your prompt reply .

So I can watch hostname in vm client via vcenter . but other detail can watch ?

Like ip address or MAC address , and so on .

Abel pan 

 

patrakshar McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 4 of 5

Re: When Move Agentless find malware

Jump to solution

image.pngThis are the details you will see for SVA(Which Is detecting the malware)image.pngThese are the details you will see the Clients where the malware found.

In agentless scenario we do not have Agent installed on the actual client machines hence all the information like ENS/VSE threat event wont populate. However since MOVEAgentless depends on Vsphere extension which pulls the entire Vcentner architecture into EPO, you will see all the client machines details in System tree though the machines are in unmanaged state.

View solution in original post

Re: When Move Agentless find malware

Jump to solution

That detail content  was  very complete and Very useful.

thank 

 

You Deserve an Award
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.

Community Help Hub

    New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

  • Find Forum FAQs
  • Learn How to Earn Badges
  • Ask for Help
Go to Community Help

Join the Community

    Thousands of customers use the McAfee Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

  • Get helpful solutions from McAfee experts.
  • Stay connected to product conversations that matter to you.
  • Participate in product groups led by McAfee employees.
Join the Community
Join the Community