cancel
Showing results for 
Search instead for 
Did you mean: 
sub7
Level 8

ATD doesnt provide Analyses Result in TIE

Hi,

in some cases, I find malicious files which have been analysed by ATD, will not marked as KNOW MALICIOUS or MIGHT BE MALICIOUS in TIE.Does somebody know, why this accours?

Thanks

Sub7

0 Kudos
6 Replies
bretzeli
Level 11

Re: ATD doesnt provide Analyses Result in TIE

0) Which TIE Version 1.X or 2.0?

1) Aree those EXE or DLL?

2) We only see .EXE Files which received feedback from the ATD that change the "Composite Reputation"

Check the rules in TIE 2.0 under Server Settings?

0 Kudos
Troja
Level 14

Re: ATD doesnt provide Analyses Result in TIE

Hi ​,

which extension for ATD you have installed in EPO?

Cheers

0 Kudos
bretzeli
Level 11

Re: ATD doesnt provide Analyses Result in TIE

Out customer has:

Name:ATD Threat Events
Version:3.4.8.1
Installed by:admin - August 31, 2016 2:45:32 PM CEST
Troja
Level 14

Re: ATD doesnt provide Analyses Result in TIE

Yes, this are the two needed extensions. ​, any new information about your problem?

Cheers

0 Kudos
sub7
Level 8

Re: ATD doesnt provide Analyses Result in TIE

Hi,

the problem was that no DXL TAG for ATD was set in ePO in the System Tree.

Therefore not all information have been added into the TIE DB.

Added Tag: ATDDXL to the device.

This has solved problem!

Thanks!

Troja
Level 14

Re: ATD doesnt provide Analyses Result in TIE

Hi ​,

do you see the "Manage ATD appliances" server task in EPO. Can you check this please?

Cheers

0 Kudos