Quick Start Security for TrendMicro
Thank you!
We got your information.
Coralogix Extension For TrendMicro Includes:
Alerts - 7
Stay on top of TrendMicro key performance metrics. Keep everyone in the know with integration with Slack, PagerDuty and more.
Trend Micro Web Security - High Severity
This alert detects all Trend Micro web security logs that have high severity. Impact Depends on the type and parameters of the log. Please check the logs for more details. Mitigation To further investigate the alert, check fields like 'malwaretype', 'scantype' in the log if these fields are present (can change per log). Also, check for any repeating alerts for the same user/machine/ip and adjacent logs.
Trend Micro Email Security - High Severity
This alert detects all Trend Micro email security logs that have high severity. Impact Depends on the type and parameters of the log. Please check the logs for more details. Mitigation Depends on the type and parameters of the log. Device action details can be checked in the log to understand the action performed on the device upon receiving an email. Also, check for more details in the logs.
Trend Micro Web Security - Medium Severity
This alert detects all Trend Micro web security logs that have medium severity. Impact Depends on the type and parameters of the log. Please check the logs for more details. Mitigation To further investigate the alert, check fields like 'malwaretype', 'scantype' in the log if these fields are present (can change per log). Also, check for any repeating alerts for the same user/machine/ip and adjacent logs.
Trend Micro Email Security - Medium Severity
This alert detects all Trend Micro email security logs that have medium severity. Impact Depends on the type and parameters of the log. Please check the logs for more details. Mitigation Depends on the type and parameters of the log. Device action details can be checked in the log to understand the action performed on the device upon receiving an email. Also, check for more details in the logs.
Trend Micro Web Security - Low Severity
This alert detects all Trend Micro web security logs that have low severity. Impact Depends on the type and parameters of the log. Please check the logs for more details. Mitigation To further investigate the alert, check fields like 'malwaretype', 'scantype' in the log if these fields are present (can change per log). Also, check for any repeating alerts for the same user/machine/ip and adjacent logs.
Trend Micro Email Security - Low Severity
This alert detects all Trend Micro email security logs that have low severity. Impact Depends on the type and parameters of the log. Please check the logs for more details. Mitigation Depends on the type and parameters of the log. Device action details can be checked in the log to understand the action performed on the device upon receiving an email. Also, check for more details in the logs.
Trend Micro Web Security - Web Reputation Services (WRS) Disabled
This alert detects all Trend Micro web security logs that have a severity of 0 (zero). The severity 0 means that Web Reputation Service (WRS) is disabled. Trend Micro recommends disabling Web Reputation for internal computers if you already use a Trend Micro product with Web Reputation capability (such as InterScan Gateway Security Appliance or InterScan Web Security Appliance). Impact Depends on the type and parameters of the log. Please check the logs for more details. Mitigation To further investigate the alert, check fields like 'malwaretype', 'scantype' in the log if these fields are present (can change per log). Also, check for any repeating alerts for the same user/machine/ip and adjacent logs.
Integration
Learn more about Coralogix's out-of-the-box integration with TrendMicro in our documentation.