Forums on Intune, SCCM, and Windows 11

Welcome to the forums. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your topics and posts, as well as connect with other members through your own private inbox!

SOLVED malware detected reports (increase historic data)

  • Thread starter Thread starter Nano_Magnus
  • Start date Start date
  • Replies Replies 2
  • Views Views 2K
Status
Not open for further replies.

Nano_Magnus

New Member
Messages
4
Solutions
1
Reaction score
1
Points
3
Hello,

I need to had evidence of malware detected on clients, for 1 year at least.

I'm not sure if it is possible to configure the SQL Report for Malware Detected to show from 1 year before.

I also had SPLUNK, but there is no supported app for SCEM, only for SCOM, and not sure if someone knows an alternative to work with SPLUNK and SCEM.

If none of those options works, I know that MPDetection-XX.log on client machines, records details about each case of malware detected on the system, is there a way to securely centralize those LOGs on a collector server or on a network share.

Any advice or suggestions are appreciated.

Best regards

Fernando
 
You can store the data within the CM Data warehouse if you like.
 
Solution
You mean this?
and this?

is the first time I see that, and it looks that it will solve my problem, it says that it could save data for as long as 3 years :O

Thanks a lot, now I need to play with it, before I try on mi SC site
 
Status
Not open for further replies.
Back
Top