Detection types

Prev Next

Detected items are email messages identified by TSME as a potential threat, that could be a virus, non-compliant content, a URL, or banned file types.

The detection types in TSME are:

Detection types

Description

Viruses

A computer program file capable of attaching to disks or other files and replicating itself repeatedly, typically without user knowledge or permission. Some viruses attach to files, so when the infected file executes, the virus also executes. Other viruses sit in a computer’s memory and infect files as the computer opens, modifies, or creates files. Some viruses display symptoms, others damage files and computer systems, but neither is essential in the definition of a virus; a non-damaging virus is still a virus.

Note

You cannot Download, Release, Forward, or View quarantined items from the Viruses detection category.

TIE and ATD Detections

In addition to DAT and Trellix GTI, you can now use the enhanced detection capabilities of Global Threat Intelligence and Trellix Intelligent Sandbox.

Spoofed Mails

Email spoofing is a common ploy used to attract users by sending an email with a different sender email address. Users might open and respond to emails without knowing that the email is not actually from the legitimate source.

Potentially Unwanted Programs

Often legitimate software (non-malware) that may alter the security state or the privacy posture of the system on which they are installed. This software can, but not necessarily, include spyware, adware, keyloggers, password crackers, hacker tools, and dialer applications and could be downloaded in conjunction with a program that the user wants. Security-minded users may want to know about such programs and, in some cases, have them removed.

Unwanted Content

This is any content that triggers a content scanning rule. It might include offensive, abusive, unpleasing words or even a company's confidential information. Unwanted Content can be categorized into:

  • Packers

  • Encrypted Content

  • Signed Content

  • Corrupted Content

  • Denial of service

  • Protected Content

  • Password protected files

  • Incomplete MIME messages

Banned File types and Messages

Certain types of file attachments are prone to viruses. The ability to block attachments by file extension is another layer of security for your mail system. Both internal and external email messages are checked for banned file types or messages.

DLP and Compliance

Stop the loss of sensitive information via email. TSME provides industry-leading email content analysis to provide the tightest control of sensitive content in any form to aid compliance with many state, national, and international regulations.

Prevent data leakage with the most extensive email Data Loss Prevention (DLP) in the industry that does pattern matching to detecting data; policy-based message handling that prevents outbound data loss.

Mail URL Reputation

Blocks emails with unwanted URLs, phishing links, or malware. When the URL limit exceeds in a mail, you get notified under the View Results section.

Add URL Score to Mail Header

Emails that are scanned by the URL filter contains the URL Reputation score in the mail header. You can view the reputation score in the message details of the email.