This content has been marked as final. Show 3 replies
I think this may help:
Create a new query, based on events, go thru all the configs and when you reach the filter tab, insert a Threat Type filter and pick app_adware (you can try other types too).
Depending on the environment, you may see lots of cookie* and joke* type malware.
I think selecting "VirusScan" as the product and "Unwanted program detected....." options for category should be pretty close to AS events.
Thanks for that suggestion - I'll have a look at that :)
It's ePO 3.5/3,6 at the moment BTW