Option | Description |
Same compromised host
|
Select to define an outbreak based on the callback detections per
endpoint
|
C&C list source
|
Specify whether to include all C&C source lists, only the Global
Intelligence list, or only the Virtual Analyzer list
|
C&C risk level
|
Specify whether to trigger an outbreak on all C&C callbacks or
only high risk sources
|
Action
|
Select from Any action,
Passed, or
Blocked
|
Detections
|
Indicate the required number of detections that defines an
outbreak
|
Time Period
|
Indicate the number of hours that the number of detections must occur
within
|
![]() |
TipTrend Micro recommends
accepting the default values in this screen.
|
Variable
|
Description
|
---|---|
%C
|
Number of C&C callback logs
|
%T
|
Time period when the C&C callback logs
accumulated
|