Endpoint Forensics and Memory Analysis, Simplified

Enhancing Endpoint Security with Intezer’s Endpoint Scanner

Intezer recognizes the importance of detecting advanced in-memory threats to bolster your team’s security efforts. Our Endpoint Scanner is designed to swiftly identify and analyze fileless threats, packed malware, malicious code injections, and any unfamiliar code on Windows operating systems.

We are thrilled to introduce new features for our Endpoint Scanner, enhancing its capabilities in detecting and responding to advanced threats. These updates include a revamped user interface with improved search, sort, filter, and pagination functions. Additionally, a new Scheduled Tasks tab offers insights into registered tasks on endpoints, aiding in the identification of potential threats.

Streamlining Endpoint Forensics for Incident Response

Simplifying endpoint forensics is crucial for effective incident response. By automating alert triage processes and leveraging deep forensic analysis, teams can efficiently identify and classify advanced threats without requiring extensive expertise. This approach enables teams to quickly assess alerts, detect lateral movement across endpoints, and proactively hunt for compromised systems.

Introducing a Redesigned User Interface for Enhanced Investigations

One of the key updates is the redesigned user interface, offering a more intuitive navigation and investigation experience. The new UI includes a table view for detailed analysis of files and memory dumps, along with enhanced search, sort, and filter capabilities. This enables users to triage endpoints and proactively hunt for memory-loaded malware with greater efficiency.

The file details panel now provides comprehensive information on each analyzed file, including analysis summaries, file properties, process trees, and creation timestamps. This additional context aids in understanding the timeline of attacks and identifying the sources of malware.

Exploring New Features for Enhanced Endpoint Security

The new Scheduled Tasks tab offers valuable insights into registered tasks on endpoints, helping teams identify suspicious activities that could indicate malicious intent. By providing detailed information on task names, authors, run times, and descriptions, this feature enhances endpoint security by exposing potential threats.

Getting Started with the Updated Endpoint Scanner

To access the latest version of our Endpoint Scanner and leverage the new features, ensure you download version v1.0.1.12 or above. Stay up-to-date with our products to benefit from enhanced capabilities and protection against evolving threats. For detailed instructions on using the Endpoint Scanner, refer to our documentation or reach out to our support team for assistance.

If you’re not yet a customer, take advantage of our free 14-day trial for the Autonomous SOC plan to experience the benefits of our Endpoint Scanner firsthand. Contact us to schedule a demo and learn how Intezer can strengthen your security operations.

Book a Demo

Doron Shem Tov

Doron Shem Tov is a Tech Lead at Intezer.

Leave a Reply

Your email address will not be published. Required fields are marked *