Comments
-
Hello, @Rakesh_Mishra The solution to the anti exploit detection to the Defender file has already been deployed last Thursday the 28th Probably this device has just been started today, since last Thursday. Let it update, the detection will stop.
-
The solution to the antiexploit detection to the Defender file has already been deployed. They should stop giving this message as soon as they get the update. Sorry for the inconvenience.
-
Hello, San. Please send an email with your request for enhancement, and client id to: support@watchguard.com Kind regards,
-
Hello, @AWatchguardCustomer We do provide options for the network administrators to test the versions before upgrading. Those are offered on the settings for the console: click on the settings tab. On the left hand side select Per computer Settings Select the profiles applied to the devices. Expand Updates, There you can…
-
Dear @AWatchguardCustomer Please, open a case to our technical support department, so we can request more data on the matter. David
-
Hello, Our technical support department will check your cases and will get back to you through the very case. Thank you in advanced. David
-
Dear @ApoyoGestion_TPFE : If you do have access to the online console where these devices are added: Access the online console. Click on the Settings Tab. On the left hand side, select Per Computer Settings Select the Default Profile Setting. Expand Security against Unauthorised Protection Tampering There you will see the…
-
the workaround at this moment is to exclude the following processes from the Code Injection analysis: • wscommcntr4.exe • acad.exe • revit.exe • adsso.exe • adsklicensingservice.exe • adpsdkutil.exe • adpclientservice.exe • adsklicensingagent.exe • adsklicensinginsthelper.exe • adskaccesscore.exe • adskidentitymanager.exe…
-
Hello, Exactly, that is the temp solution, but we have opened an RFE. Please provide your case number so I can add your case to the list of clients to be contacted after we find the definite solution. Thank you for your patience! David
-
Hello, @SiSma Please open a case to support@watchguard.com with your customer name and ID, so we can provide troubleshooting for your query. Kind regards, David
-
Hello, @JSAV You are absolutely right. Devices with Windows 7 and higher should be connecting to the cloud in a continuous manner. Agent is constantly checking for changes on settings in order to apply them at the shortest time possible after they are committed on the online console. In order to check if the device is…
-
Hello, As commented before, It would be more helpful to open cases to our support department, in order to study them, so we can provide customised solutions to each case.
-
My advice, then, would be to open a case to techsupport, so we can study this specific case, and provide a personalised solution.
-
Hello, @SecureMind Please check the top right corner for your online console. There is a bell, for notifications. Please check if you do have the upgrade to latest version available. If so, please apply the upgrade to your console, after reading our upgrading good practices suggestions:…
-
Hello All, When we deployed Decoy Files Feature, we had some false detections due to programs interacting with our decoy files. Those where solved by changing the conditions for triggering detections If at this point in time, you do have detections on the decoy files, we do have to study the cases independently, as it…
-
Hello @lukjrl I am afraid we do not have something like you are asking. Changes on the console will take something between a few seconds to 5 minutes the most. If it takes more that that it will be due to factors outside our reach, like network settings, bottlenecks, resources available on the device or network, etc. You…
-
Hello, S_Matt, I will contact you via PM asap. DAvid
-
Hello, LHD, Please open a case to support@watchguard.com in order to study your specific case, but if the detection is due to malware or PUPs, you will have to create exclusions for those detected files. Regards, David
-
You can use the msiexec commands for uninstalling, and checking the uninstall string on the registry for the product. You will have to use two commands, as agent and protection do have different uninstalling strings on the registry. And this will not work if you have the uninstalling password enabled on the online console.…
-
Hello, Bruce_Briggs Please check he devices to be discovered are on the same subnet than the discovery device. Check they are using private IPs, as we do not search over public IPs try to ping the devices, that could give you a clue on why is not working, as maybe they are unreachable. This is not determinant, but might…
-
Hi, ottl05, Please create a support case by clicking on the support center link at the top of this page. Please include your client ID and contact info so we can study your case in depth. Kind Regards, David
-
Hello, Chris_Kelly At this point you can exclude paths and folders using the instructions on the help url: https://www.watchguard.com/help/docs/help-center/en-US/Content/en-US/Endpoint-Security/manage-settings/exclude-files-paths-from-scans.html Those are the rules accepted to exclude any file/path/extension. If you have…
-
Dear Stewy you still have the ability to perform scans from the online console. Access the EPDR console, click on the Tasks tab, and at the top right click on Add Task--> scheduled scan. There you will be able to set up an immediate or scheduled scan to one or as many devices as you need. Hope this helps.
-
Hello Robert, Please send the EDR core version running on your devices. Also check if there is an upgrade available: Access the online console for the EDR core. At the top right there is a bell, and it might be having some notifications available. check if you can upgrade to the latest available on your console. Once…
-
El acceso de los usuarios de soporte se da de forma general para un cliente y todos sus productos, no se puede hacer discernimiento sobre a que productos puede dar soporte o no. Pero puedes presentarlo como sugerencia, en la parte superior derecha de la consola de endpoint de la WG cloud, tienes un botón para enviar…
-
Hello, Eagsyn. Is this for a reason in particular? Becasuse devices are continuously communicating with the online servers for various reasons. here you can check what are those timely comunications and why are they uploading/downloading info from the cloud: RegisterPerformMandatory (Backend server registry): Every hour…
-
Hello Travis TDR has been discontinued, yes. And EPDR has got the EDR module (Called Advanced Protection on the online console) on it, so you are very well protected, if I can say so. David
-
PM sent. Please check your PM inbox Have a lovely day, David
-
Hello Mermet Our recommendation would be to change to EPDR which does have the new EDR integrated in a more interactive form, as in the Advanced Protection module, so you can have all the benefits in one single product. But best to know your needs is to contact our commercial department to discuss needs and offers…
-
Keep us informed, let us know if this solved your issue! ;)