Trend Micro, Inc.
June 2016
Trend Micro™ OfficeScan™
Version 11.0 Service Pack 1 Critical Patch - Server Build 6054 and Agent Module Build 6034
This readme file is current as of the date above. However, all customers are advised to check Trend Micro's website for documentation updates at http://docs.trendmicro.com/en-us/enterprise/officescan.aspx.
Register online with Trend Micro within 30 days of installation to continue downloading new pattern files and product updates from the Trend Micro website. Register during installation, or online at http://olr.trendmicro.com.
Trend Micro always seeks to improve its documentation. Your feedback is always welcome. Please evaluate this documentation on the following site: http://docsstg.trendmicro.com/en-us/survey.aspx.
Trend Micro™ OfficeScan™ protects enterprise networks from malware, network viruses, web-based threats, spyware, and mixed threat attacks. An integrated solution, OfficeScan consists of an agent program that resides at the endpoint and a server program that manages all agents. The agent guards the endpoint and reports its security status to the server. The server, through the web-based management console, makes it easy to set coordinated security policies and deploy updates to every agent.
OfficeScan is powered by the Trend Micro™ Smart Protection Network™, a next generation cloud-client infrastructure that delivers security that is smarter than conventional approaches. Unique in-the-cloud technology and a lighter-weight agent reduce reliance on conventional pattern downloads and eliminate the delays commonly associated with desktop updates. Businesses benefit from increased network bandwidth, reduced processing power, and associated cost savings. Users get immediate access to the latest protection wherever they connectwithin the company network, from home, or on the go.
OfficeScan includes the following new features and enhancements:
What's New in OfficeScan 11.0 Service Pack 1 Critical Patch 6054
Ransomware Enhancements
Your protection against ransomware attacks has been further enhanced to allow OfficeScan agents to recover files encrypted by ransomware threats, block processes associated with ransomware, and prevent compromised executable files from infecting your network. Two new ransomware detections widgets (Ransomware Detections Over Time and Ransomware Prevention Summary) provide a quick reference to the ransomare threats that attempted to infect your network.
After installing this release, the following Behavior Monitoring settings are enabled by default:
The following Global Agent Setting, in the "Behavior Monitoring" section, is also enabled by default:
What's New in OfficeScan 11.0 Service Pack 1 Critical Patch 4150
Platform and Browser Support
Early Launch Anti-Malware Protection
OfficeScan supports the Early Launch Anti-Malware (ELAM) feature as part of the Secure Boot standard to provide boot time protection on endpoints. Administrators can enable this feature to start OfficeScan agents before other third-party software drivers when endpoints start up. This feature enables OfficeScan agents to detect malware during the boot process.
Enhanced Suspicious Object Subscription Process
When administrators register OfficeScan to a Control Manager server that is connected to Deep Discovery, OfficeScan automatically subscribes to Control Manager to synchronize suspicious objects and retrieve actions against these objects.
What's New in OfficeScan 11.0 Service Pack 1
Ransomware Protection for Documents
Enhanced scan features can identify and block ransomware programs that target documents that run on endpoints by identifying common behaviors and blocking processes commonly associated with ransomware programs.
Enhanced Server-Agent Communication Encryption
OfficeScan provides enhanced encryption of communication between the server and agents using Advanced Encryption Standard (AES) 256 to meet security compliance.
Connected Threat Defense
Configure OfficeScan to subscribe to the Suspicious Object lists from the Control Manager server. Using the Control Manager console, you can create customized actions for objects detected by the Suspicious Object lists to provide custom defense against threats identified by endpoints protected by Trend Micro products specific to your environment.
Scan Monitoring
OfficeScan provides more visibility and control over scan features through:
Encryption of Sensitive Data
Data Loss Prevention integrates with Trend Micro™Endpoint Encryption™ automating the encryption of sensitive data through removable and cloud storage channels.
Enhanced OfficeScan Agent Self-protection Features
Multilingual OfficeScan Agent Support
Administrators can configure the OfficeScan agent program language from the web console. Select to display the OfficeScan agent console based on logged on user's language settings or the OfficeScan server language settings.
Extended Policy Management through Control Manager™
Trusted Programs
Administrators can configure OfficeScan to exclude files and processes signed by trusted companies from scanning and apply the configured exclusion lists to all scan types, or create specific lists for each scan type
Server Enhancements
SQL Database Migration Tool
Administrators can choose to migrate the existing CodeBase® server database to a SQL server database.
Smart Protection Server Enhancements
This version of OfficeScan supports the upgraded Smart Protection Server 3.0. The upgraded Smart Protection Server includes File Reputation Services pattern enhancements. The pattern files have been redesigned to provide the following benefits:
Reduced memory consumption
Incremental pattern updates and enhanced File Reputation Services pattern detection, which greatly reduce bandwidth consumption
Server Authentication
Enhanced server authentication keys ensure that all communication to and from the server is secure and trusted.
Role-based Administration Enhancement
The role-based administration enhancement streamlines how administrators configure roles and accounts making integration with Trend Micro Control Manager™ more streamlined.
Web Server Requirements
This version of OfficeScan can integrate with the Apache 2.2.25 web server.
OfficeScan Server Interface Redesign
The OfficeScan interface has been redesigned to provide an easier, more streamlined, and more modern experience. All the features available in the previous OfficeScan server are still available in the updated version.
Top-level menu items free up screen space
A "Favorites" menu helps you locate regularly used screens
A slide show view of the Dashboard tabs allows you to view widget data without the need to manually control the console
Cloud-based Contextual Online Help
Cloud-based context-sensitive online help ensures that administrators always have the most up-to-date information whenever the help system opens. If an Internet connection is unavailable, OfficeScan automatically switches to the local online help system shipped with the product.
Platform and Browser Support
OfficeScan supports the following operating systems:
Windows Server™ 2012 R2 (server and agent)
Windows 8.1 (agent only)
OfficeScan supports the following browser:
Internet Explorer™ 11
Agent Enhancements
Suspicious File Restoration
OfficeScan provides administrators the ability to restore previously detected “suspicious” files and add files to domain-level “approved” lists to prevent further actions on the files.
If a program or file has been detected and quarantined, administrators can globally or granularly restore the file on agents. Administrators can use additional SHA1 verification checking to ensure that the files to be restored have not been modified in any way. After restoring the files, OfficeScan can automatically add the files to domain-level exclusion lists to exempt them from further scanning.
Advanced Protection Service
The Advanced Protection Service provides the following new scan features.
Browser Exploit Prevention uses sandbox technology to test the behavior of web pages in real time and detect any malicious script or program before the OfficeScan agent is exposed to threats.
Enhanced memory scanning works in conjunction with Behavior Monitoring to detect malware variants during Real-time Scans and take quarantine actions against threats.
Data Protection Enhancements
OfficeScan Data Protection has been enhanced to provide the following benefits:
Data Discovery through integration with Control Manager™: Administrators can configure Data Loss Prevention policies on Control Manager to scan folders on OfficeScan agents for sensitive files. After discovering sensitive data within a file, Control Manager can log the location of the file or, through integration with Trend Micro Endpoint Encryption, automatically encrypt the file on the OfficeScan agent.
User Justification support: Administrators can allow users to provide reasons for transferring sensitive data or block the transmissions themselves. OfficeScan logs all transfer attempts and the reasons provided by the user.
Smartphone and tablet support: Data Loss Prevention and Device Control can now monitor and take action on sensitive data being sent to smart devices, or block access to smart devices entirely.
Updated data identifier and template libraries: The Data Loss Prevention libraries have been updated with 2 new keyword lists and 93 new templates.
Device Control log integration with Control Manager™
Suspicious Connection Settings Enhancement
Command & Control (C&C) Contact Alert Services has been updated to include the following:
Global User-defined Approved and Blocked IP lists
Malware network fingerprinting to detect C&C callbacks
Granular action configuration when suspicious connections are detected
C&C server and agent logs record the process responsible for C&C callbacks
Outbreak Prevention Enhancements
Outbreak Prevention has been updated to protect against the following:
Executable compressed files
Mutex processes
Self-protection Feature Enhancements
The self-protection features available in this release provide both light-weight and high level security solutions to protect both your server and OfficeScan agent programs.
Light-weight solution: Designed for server platforms to protect OfficeScan agent process and registry keys by default, without affecting the performance of the server
High-level security solution: Enhances the Agent Self-protection feature available in previous releases by providing:
IPC command authentication
Pattern file protection and verification
Pattern file update protection
Behavior Monitoring process protection
Scan Performance and Detection Enhancements
Real-Time Scan maintains a persistent scan cache which reloads each time the OfficeScan agent starts. The OfficeScan agent tracks any changes to files or folders that occurred since the OfficeScan agent unloaded and removes these files from the cache.
This version of OfficeScan includes global Approved lists for Windows system files, digitally signed files from reputable sources, and Trend Micro-tested files. After verifying that a file is known to be safe, OfficeScan does not perform any action on the file.
Damage Cleanup Services enhancements provide improved detection capabilities for rootkit threats and a reduced number of false positives through updated GeneriClean scanning.
Compressed file settings are separated between Real-time and On-demand Scans to help improve performance.
Dual-layer logs provide a more detailed view for detections that administrators want to examine further.
OfficeScan Agent Interface Redesign
The OfficeScan agent interface has been redesigned to provide an easier, more streamlined, and more modern experience. All the features available in the previous OfficeScan agent program are still available in the updated version.
The updated interface also allows administrators to "unlock" administrative functions directly from the OfficeScan agent console in order to quickly troubleshoot issues without opening the web console.
Resolved Known Issues in OfficeScan 11.0 Service Pack 1 Critical Patch 4150
Issue: The OfficeScan agent program may be vulnerable to potential unintended file access attacks.
Solution: This critical patch improves a checking mechanism in the OfficeScan agent program to protect it against unintended file access attacks.
OfficeScan 11.0 SP1 Critical Patch resolves the following product issues:
(320454 EN_Hotfix_3011.u)
Issue: The OfficeScan server does not automatically uninstall the following third-party antivirus software before installing the OfficeScan agent.
Solution: This hot fix ensures that the OfficeScan server automatically uninstalls the following third-party antivirus software before installing the OfficeScan agent.
(312801 EN_Hotfix_1635)
Issue: Before an OfficeScan agent runs an on-demand scan, it first checks the on-demand scan cache for files to exclude from the scan to reduce scanning time. Sometimes, on-demand scans take a long time to complete because some files may be scanned redundantly when the on-demand scan cache does not work properly
Solution: This hot fix prevents this performance issue by updating the OfficeScan server and agent files.
(317411 EN_Hotfix_1635)
Issue: Users that do not have administrator privileges still have full access to the OfficeScan client program directory after users switch the OfficeScan client's security setting from "Normal" to "High".
Solution: This hot fix ensures that the OfficeScan client program automatically limits users that do not have administrator privileges to read-only access to the OfficeScan client program directory when the security setting is switched to "High".
(325250,324009 EN_Hotfix_3019,JP_Hotfix_1902)
Issue: OfficeScan servers do not send out an SQL Database Unavailable Alert when the SQL connection fails.
Solution: This hot fix ensures that the OfficeScan server sends an SQL Database Unavailable Alert when the SQL connection fails.
(321114 EN_Hotfix_1874)
Issue: In computers protected by Data Loss Prevention (DLP) of OfficeScan agent, when the device control function for "wireless adapter" is enabled, DLP also blocks the "USB LAN adapter".
Solution: This hot fix ensures that DLP of OfficeScan agent does not block the "USB LAN adapter" when the device control function for "wireless adapter" is enabled.
(319548 EN_Hotfix_1829.1)
Issue: Sometimes, the Trend Micro TDI (TMTDI) driver, which provides network traffic monitoring for the Web Reputation Server of OfficeScan agents, may trigger performance issues on computers running on Microsoft(TM) Windows(TM) Server platforms.
Solution: This hot fix allows users to uninstall the TMTDI driver globally from all OfficeScan agents installed on any Windows Server platform.
(300425 EN_Hotfix_1461.u)
Issue: The OfficeScan server does not automatically uninstall the following third-party software before installing the OfficeScan agent:
Solution: This hot fix ensures that the OfficeScan server automatically uninstalls the third-party software before installing the OfficeScan agent.
OfficeScan 11.0 SP1 resolves the following product issues:
For information regarding hot fix solutions and the enhancements available in OfficeScan 11.0 SP1, go to:
http://esupport.trendmicro.com/solution/en-us/1109537.aspx
The document set for the OfficeScan server includes:
Download the latest versions of the PDF documents and readme at http://docs.trendmicro.com/en-us/enterprise/officescan.aspx.
The OfficeScan server and agent can be installed on endpoints running Microsoft Windows platforms. The OfficeScan agent is also compatible with various third-party products.
Visit the following website for a complete list of system requirements and compatible third-party products:
http://docs.trendmicro.com/en-us/enterprise/officescan.aspx
Size of Deployment Package
Note: All of the following deployment package sizes are for packages that do not include any additional plug-in features. The size of the deployment package may vary if additional plug-in features are included in the package.
Size of the new install package (32/64-bit) via Agent Packager Tool
For 32-bit Setup Package:
For 64-bit Setup Package:
For 32/64-bit MSI Package:
See the Installation and Upgrade Guide for instructions on:
For OfficeScan agent installation instructions, refer to the Administrator's Guide.
Note: This package only supports fresh installations of the OfficeScan server.
6. Post-installation Configuration
Verify if the OfficeScan server has been upgraded.
On the Control Manager console, the OfficeScan version should be 6054.
Note: Trend Micro recommends installing Trend Micro Control Manager™ 6.0 SP3 to ensure compatibility with OfficeScan 11.0 SP1.
If the update is unsuccessful, perform manual update immediately by going to Updates > Server > Manual Update. You can also refer to the online help for typical update problems and solutions or contact your Support provider for assistance.
Agent installation on supported platforms
If users will use the web install page to install the OfficeScan agent to an endpoint running Windows 7, Windows XP Home, Vista Home Basic, Vista Home Premium, Server 2008, Windows 8, or Server 2012, instruct users to perform the following before installation:
If users will use Agent Packager (EXE package) to install the OfficeScan agent to an endpoint running Windows 7, Windows XP Home, Vista Home Basic, Vista Home Premium, Server 2008, Windows 8, or Server 2012, perform the following:
Send the package to users and instruct them to launch it on their endpoints.
To launch the EXE package:
If users will use Agent Packager (MSI package) to install the OfficeScan agent to an endpoint running Windows 7, Windows XP Home, Vista Home Basic, Vista Home Premium, Server 2008, Windows 8, or Server 2012, perform the following:
Note: You can also launch the MSI package (on the command prompt) and silently install the OfficeScan agent to a remote endpoint running Windows 7, Windows XP Home, Vista Home Basic, Vista Home Premium, Server 2008, Windows 8, or Server 2012.
If users will use Login Script Setup (AutoPcc.exe) to install the OfficeScan agent to an endpoint running Windows 7, Windows XP Home, Vista Home Basic, Vista Home Premium, Server 2008, Windows 8, or Server 2012, instruct users to perform the following:
The following are the known issues in this release:
Server Installation, Upgrade, and Uninstallation
The OfficeScan web console and all OfficeScan services cannot be accessed if the OfficeScan server was installed on Windows Server 2008, Windows Server 2008 R2, or Windows Server 2012 before joining a domain. To resolve the issue:
For Windows Server 2008:
Go to Control Panel > System and Security > Windows Firewall > Exceptions tab.
Enable exception for File and Printer Sharing.
Add the following port exceptions:
Click OK.
For Windows Server 2008 R2:
Go to Control Panel > System and Security > Windows Firewall > Allowed Programs.
Select the following features and allow access for the Domain profile:
Click OK.
For Windows Server 2012:
Go to Control Panel > System and Security > Windows Firewall > Advanced settings.
Click Inbound Rules. Allow access to all required File and Printer Sharing rules.
Click Inbound Rules > New Rule... > Port.
Add the following port exceptions:
After installing the OfficeScan server remotely to a Windows Server 2008 computer, the web console shortcut does not immediately display on the computer's desktop. Refresh the desktop by pressing F5 to see the shortcut.
When the OfficeScan server is installed to a disk using the FAT32 file system, role-based logon to the OfficeScan web console does not work.
During upgrade, if the existing OfficeScan database file (found in the "HTTPDB" folder under "OfficeScan/PCCSRV") is very large, the upgrade process may time out. Trend Micro recommends doing the following before upgrading:
Trend Micro Mobile Security is now a standalone program and is no longer supported as a plug-in program in OfficeScan 11.0. To continue using Mobile Security, Trend Micro recommends upgrading to the standalone version 9.0. For detailed migration steps, see http://esupport.trendmicro.com/solution/en-US/1098095.aspx.
During OfficeScan server installation, the "pre-scan" feature is unable to detect double-byte malware threats.
Upgrading the OfficeScan server in environments where the Apache server is being used by third-party applications may cause the following issues:
To resolve these issues:
For detailed steps about resolving the Apache server upgrade issues, see http://esupport.trendmicro.com/solution/en-US/1104062.aspx.
Installing or upgrading OfficeScan to version 11.0 SP1 may be unsuccessful for the following reasons:
The following extensions are not available on the web server:
To resolve this issue:
For detailed steps, see http://esupport.trendmicro.com/solution/en-US/1103806.aspx
After upgrading to OfficeScan 11.0 SP1, Windows Control Panel still displays the OfficeScan 11.0 server version. Check the OfficeScan web console for the actual server version.
The web console Dashboard displays a "500 Internal Server Error" if Microsoft Visual C++ 2008 Redistributable Package (x86) is not installed. To resolve this issue, install Microsoft Visual C++ 2008 Redistributable Package (x86) and restart the Apache or IIS service.
If the OfficeScan server computer or an agent endpoint has not properly updated its root certificate(for example, the computer does not have an Internet connection), OfficeScan cannot verify the computer's digital signatures during Inter-Process Communication (IPC). To solve this issue, you must manually update the root certificate or perform a Windows Update.
When transferring the OfficeScan database to a SQL database installed on a Domain Controller endpoint, you must select the “Migrate the OfficeScan database to an existing SQL Server” option on the SQL Migration Tool (SQLTool.exe).
If you want to install a new SQL Server 2008 R2 SP2 Express on a Domain Controller endpoint, you must follow the Microsoft Knowledge Base information on how to install SQL Server 2008 R2 SP2 Express manually.
Agent Installation, Upgrade, and Uninstallation
The OfficeScan agent is unable to query the Web Reputation servers after performing a fresh installation or upgrade. To resolve the issue, ensure that agents restart their endpoints if a restart notification appears.
If you create a login script in Active Directory and then log on as administrator on an endpoint running Windows Vista Home, Server 2008, 7, 8, or Server 2012, the OfficeScan agent cannot be installed to the endpoint and the message that displays states that the account used is not an administrator account.
When this product version is installed to a Citrix Presentation server, the Citrix client loses connection with the server. To address this issue:
The ServerProtect Normal Server Migration tool is unable to:
To resolve these issues, open Registry Editor on the Normal Server and Information Server and add following registry key:
Microsoft IIS 7 does not work when:
A message displays on the endpoint using Windows Server 2008 without Service Pack 2, instructing the user to restart the IIS service to resolve the issue.
After upgrading OfficeScan, the following issues occur:
To resolve these issues, perform the following steps:
Open a command prompt (cmd.exe) and run the following commands:
regsvr32 wintrust.dll
regsvr32 netcfgx.dll
The administrator will not be able to remotely install OfficeScan agent to Windows 7 x86 platforms without enabling the default administrator account. To resolve this issue:
Note: Enable the Remote Registry service on the Windows 7 machine. By default, Windows 7 machines disable this feature.
Option A: Use the domain administrator account to remotely install OfficeScan 10.5 clients to Windows 7 machines.
Option B: Use the default administrator account:
When installing the OfficeScan agent on Windows 8 and Windows Server 2012 platforms using the browser-based installation method, the installation is unsuccessful if the user is currently in Windows UI mode. This is due to Internet Explorer 10 not allowing ActiveX controls to run.
To resolve this issue:
Switch to desktop mode on Windows 8 and Windows Server 2012 platforms while performing a browser-based installation of the OfficeScan agent.
When running Internet Explorer or Microsoft PowerPoint on Windows Vista platforms, restart notifications appear in the foreground.
Upgrade may fail if using an MSI package to upgrade an OfficeScan agent that was originally installed also using an MSI package. As a workaround, do the following:
A Microsoft Hyper-V virtual machine might not be able to start if the host endpoint has OfficeScan agent installed. This is because the OfficeScan agent and Hyper-V virtual machine access the same Hyper-V xml file, which causes file access violation. As a workaround:
Turn off file mapping scan by modifying the TmFilter/TmxpFilter registry value.
To turn off file mapping:
On the server computer, open ofcscan.ini under the \PCCSRV folder.
Modify the following setting under [Global Setting]: UseMapping=0
On the web console, go to Agents > Global Agent Settings and click Save to deploy the setting to all agents.
The following registry information is added after the deployment completes:
Path: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VSApiNt\Parameters
In a Citrix environment, when the OfficeScan agent detects a security risk during a particular user session, the notification message for the security risk displays on all active user sessions.
Security risk can be any of the following:
Users are unable to collapse the agent management tree menu items on the User Account - Step 3 Define Agent Tree Menu screen when configuring User Accounts on Windows 8.1 and Windows Server 2012 R2 platforms running Internet Explorer 11. To resolve this issue:
Install the Internet Explorer 11 hotfix from the Microsoft Windows Update site: http://support.microsoft.com/kb/2884101/en-us.
After expanding the menu items when creating or modifying a User Role or User Account, you cannot collapse the the menu items again in Internet Explorer 11.
To resolve this issue for 32-bit platforms, install the following Internet Explorer security update:
http://www.microsoft.com/en-us/download/details.aspx?id=40717
To resolve this issue for 64-bit platforms, install the following Internet Explorer security update:
http://www.microsoft.com/en-us/download/details.aspx?id=40716
On the web console's Update Summary screen (Updates > Summary), the Behavior Monitoring Configuration Pattern, Policy Enforcement Pattern, and Digital Signature Pattern do not appear correctly due to JavaScript caching. To resolve this issue:
Clear the browser cache to update the component names.
When the security level on a Citrix server is medium or high, perform the following steps:
For Windows XP and Windows Server 2003 platforms hosting VMware agents, incoming packets to a VMware agent endpoint are dropped if the host machine has the OfficeScan agent installed.
Workaround (for all agents):
On the server computer, open ofcscan.ini under the \PCCSRV folder.
Add the following setting under [Global Setting]: EnableGlobalPfwBypassRule=1
On the web console, go to Agents > Global Agent Settings and click Save to deploy the setting to all agents.
Workaround (for specific agents):
Add the following registry value:
Key: HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\PC-cillinNTCorp\CurrentVersion\PFW
For x64 endpoints: HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432\TrendMicro\PC-cillinNTCorp\CurrentVersion\PFW
If you enable the option Check HTTPS URLs in a Web Reputation policy:
Agents can browse blocked sites if using Juniper Networks VPN and proxy servers to connect to the Internet. To resolve this issue:
After upgrading, the Web Reputation Services is unavailable until the Web Blocking List is fully updated. To resolve this issue, go to Smart Protection > Smart Protection Sources and select a secondary Smart Protection Server for agents to use until the Web Blocking List has completed the update.
Note: OfficeScan begins updating the Web Blocking List immediately after the server upgrades.
After upgrading to 11.0 SP1, customers who previously installed Hot Fix 5727 must reapply the EnableWrsStatusRealtimeUpdate setting to the Ofcscan.ini file. Hot Fix 5272 solved an issue where the OfficeScan agent's Web Reputation Services status did not immediately report an "Unavailable" status to the Agent Management screen when the service became offline.
To enable OfficeScan agents to send the Web Reputation Services status of an OfficeScan agent to the OfficeScan server immediately after the Web Reputation Services server status on the agent becomes "offline":
Open the "Ofcscan.ini" file in the "\PCCSRV\" folder on the OfficeScan server installation directory.
Add the following key under the "Global Setting" section and set its value to "1".
[Global Setting]
EnableWrsStatusRealtimeUpdate=1
Note: To disable the solution, set "EnableWrsStatusRealtimeUpdate=0", which is the default configuration.
Open the OfficeScan server web console and go to the Agents > Global Agent Settings page.
Click Save to deploy the setting to agents.
The OfficeScan client program automatically installs the following registry key:
Path: HKLM\SOFTWARE\TrendMicro\PC-cillinNTCorp\CurrentVersion\Misc.\
Key: EnableWrsStatusRealtimeUpdate
Value: 1
When accessing the OfficeScan server using the single-sign on function in Control Manager:
Refresh the page if any of these conditions occur.
If users deploy policies from the Control Manager server "Policy Management" page to OfficeScan clients, the OfficeScan Behavior Monitoring Settings are overwritten and the following newly added features are disabled:
Virtual Desktop Infrastructure
There are several tools included in this version. Refer to the OfficeScan server Help for instructions on how to use them. The tool folders are located under \PCCSRV\Admin\Utility.
The following are the permissions for the OfficeScan folders:
Directory/User |
Administrator |
Everyone |
IUser _<Server Name> |
System |
Network Service |
\PCCSRV |
Full control |
RX |
N/A |
Full control |
N/A |
\PCCSRV\Download |
Full control |
R |
R |
Full control |
N/A |
\PCCSRV\HTTPDB |
Full control |
N/A |
N/A |
N/A |
N/A |
\PCCSRV\Log |
Full control |
N/A |
N/A |
Full control |
N/A |
\PCCSRV\Private |
Full control |
N/A |
N/A |
Full control |
RX |
\PCCSRV\Temp |
Full control |
N/A |
RWXD |
N/A |
RWXD |
\PCCSRV\Virus |
Full control |
N/A |
RW (Special Access) |
N/A |
N/A |
\PCCSRV\Web |
Full control |
N/A |
R |
Full control |
N/A |
\PCCSRV\Web\Cgi |
Full control |
N/A |
RX |
N/A |
N/A |
\PCCSRV\Web_OSCE\Web_console |
Full control |
RX |
N/A |
Full control |
N/A |
\PCCSRV\Web_OSCE\Web_console\HTML\ClientInstall |
Full control |
N/A |
RWXD |
N/A |
N/A |
\PCCSRV\Web_OSCE\Web_console\RemoteInstallCGI |
Full control |
N/A |
RWXD |
N/A |
N/A |
A license to the Trend Micro software usually includes the right to product updates, pattern file updates, and basic technical support for one (1) year from the date of purchase only. After the first year, Maintenance must be renewed on an annual basis at Trend Micro's then-current Maintenance fees.
You can contact Trend Micro via fax, phone, and email, or visit us at http://www.trendmicro.com.
Evaluation copies of Trend Micro products can be downloaded from our website.
Global Mailing Address/Telephone numbers
For global contact information in the Asia/Pacific region, Australia and New Zealand, Europe, Latin America, and Canada, refer to http://www.trendmicro.com/en/about/overview.htm.
The Trend Micro "About Us" screen displays. Click the appropriate link in the "Contact Us" section of the screen.
Note: This information is subject to change without notice.
Trend Micro Incorporated, a global leader in Internet content security and threat management, aims to create a world safe for the exchange of digital information for businesses and consumers. A pioneer in server-based antivirus with over 20 years experience, we deliver top-ranked security that fits our customers' needs, stops new threats faster, and protects data in physical, virtualized and cloud environments. Powered by the Trend Micro™ Smart Protection Network™ infrastructure, our industry-leading cloud-computing security technology and products stop threats where they emerge, on the Internet, and are supported by 1,000+ threat intelligence experts around the globe. For additional information, visit http://www.trendmicro.com.
Copyright 2016, Trend Micro Incorporated. All rights reserved. Trend Micro, the t-ball logo and OfficeScan are trademarks of Trend Micro Incorporated and are registered in some jurisdictions. All other product or company names may be trademarks or registered trademarks of their owners.
Information about your license agreement with Trend Micro can be viewed at http://us.trendmicro.com/us/about/company/user_license_agreements/.
License Attributions can be viewed from the OfficeScan web console.