Microsoft Forefront Endpoint Protection Application

Microsoft.FEPS.Application :: 2.1.1116.111 (Management Pack)

Microsoft Forefront Endpoint Protection for Servers Management Pack that defines Microsoft Forefront Endpoint Protection for Servers operational elements.

Management Pack Elements

Categories (1)

 IDTarget
Cat.Microsoft.FEPS.Application.RemoteDesktop.TaskCat.Microsoft.FEPS.Application.RemoteDesktop.TaskMicrosoft.FEPS.Application.RemoteDesktop.Task

Discoveries (11)

 DisplayNameIDTargetEnabled
Microsoft.FEP.ProtectedClientCandidate.DiscoveryProtected Client Candidate DiscoveryMicrosoft.FEP.ProtectedClientCandidate.DiscoveryMicrosoft.Windows.Client.ComputerFalse
Microsoft.FEP.ProtectedServer.DiscoveryProtected Endpoint DiscoveryMicrosoft.FEP.ProtectedServer.DiscoveryMicrosoft.FEP.ProtectedServerCandidateTrue
Microsoft.FEP.ProtectedServerCandidate.DiscoveryProtected Server Candidate DiscoveryMicrosoft.FEP.ProtectedServerCandidate.DiscoveryMicrosoft.Windows.Server.ComputerTrue
Microsoft.FEP.ProtectedServersWatcher.MalwareActivity.DiscoveryProtected Endpoints Watcher Contains Antimalware Activity DiscoveryMicrosoft.FEP.ProtectedServersWatcher.MalwareActivity.DiscoveryMicrosoft.FEP.ProtectedServersWatcherTrue
Microsoft.FEP.ProtectedServersWatcher.ProtectedServer.DiscoveryProtected Endpoints Watcher Contains Protected Endpoint DiscoveryMicrosoft.FEP.ProtectedServersWatcher.ProtectedServer.DiscoveryMicrosoft.FEP.ProtectedServersWatcherTrue
Microsoft.FEP.ProtectedServersWatcher.ProtectedServerCandidate.DiscoveryProtected Endpoints Watcher Contains Protected Endpoint Candidate DiscoveryMicrosoft.FEP.ProtectedServersWatcher.ProtectedServerCandidate.DiscoveryMicrosoft.FEP.ProtectedServersWatcherTrue
Microsoft.FEP.ProtectedServersWatcher.UnprotectedServer.DiscoveryProtected Endpoints Watcher Contains Unprotected Endpoint DiscoveryMicrosoft.FEP.ProtectedServersWatcher.UnprotectedServer.DiscoveryMicrosoft.FEP.ProtectedServersWatcherTrue
Microsoft.FEP.ProtectedServersWithAntimalwareEngineDisabledGroup.DiscoveryFEP Protected Endpoints with Antimalware Engine Disabled Group DiscoveryMicrosoft.FEP.ProtectedServersWithAntimalwareEngineDisabledGroup.DiscoveryMicrosoft.FEP.ProtectedServersWithAntimalwareEngineDisabledGroupTrue
Microsoft.FEP.ProtectedServersWithOutofDateDefinitionsGroup.DiscoveryFEP Protected Endpoints with Out-of-Date Definitions Group DiscoveryMicrosoft.FEP.ProtectedServersWithOutofDateDefinitionsGroup.DiscoveryMicrosoft.FEP.ProtectedServersWithOutofDateDefinitionsGroupTrue
Microsoft.FEP.ProtectedServersWithRTPOffGroup.DiscoveryFEP Protected Endpoints with Real-time Protection Disabled Group DiscoveryMicrosoft.FEP.ProtectedServersWithRTPOffGroup.DiscoveryMicrosoft.FEP.ProtectedServersWithRTPOffGroupTrue
Microsoft.FEP.ProtectedServersWithRTPorFirewallOffGroup.DiscoveryFEP Protected Endpoints with Real-time Protection Disabled or Windows Firewall Off Group DiscoveryMicrosoft.FEP.ProtectedServersWithRTPorFirewallOffGroup.DiscoveryMicrosoft.FEP.ProtectedServersWithRTPorFirewallOffGroupTrue

Aggregate Monitors (3)

 DisplayNameIDTargetAlgorithmCategoryEnabledAlert GenerateAccessibility
Microsoft.FEP.MalwareOutbreak.FEP.Aggregate.MonitorMalware OutbreakMicrosoft.FEP.MalwareOutbreak.FEP.Aggregate.MonitorMicrosoft.FEP.SecurityRootCause.MalwareActivityBestOfCustomTrueFalsePublic
Microsoft.FEP.ProtectedServer.FEP.Aggregate.MonitorForefront Endpoint ProtectionMicrosoft.FEP.ProtectedServer.FEP.Aggregate.MonitorMicrosoft.FEP.ProtectedServerWorstOfCustomTrueFalsePublic
Microsoft.FEP.UnprotectedServer.FEP.Aggregate.MonitorForefront Endpoint ProtectionMicrosoft.FEP.UnprotectedServer.FEP.Aggregate.MonitorMicrosoft.FEP.UnprotectedServerWorstOfCustomTrueFalsePublic

Dependency Monitors (6)

 DisplayNameIDTargetAlgorithmSource MonitorRelationshipCategoryEnabledAlert GenerateAccessibility
Microsoft.FEP.SecurityRootCause.AntimalwareDefinitions.AntimalwareDefinitions.MonitorAntimalware DefinitionsMicrosoft.FEP.SecurityRootCause.AntimalwareDefinitions.AntimalwareDefinitions.MonitorMicrosoft.FEP.SecurityRootCause.AntimalwareDefinitionsWorstOfMicrosoft.FEP.ProtectedServer.AntimalwareDefinitions.MonitorMicrosoft.FEP.AntimalwareDefinitionsReferencesProtectedServerCustomTrueFalsePublic
Microsoft.FEP.SecurityRootCause.AntimalwareDefinitions.AntimalwareDefinitionsDate.MonitorAntimalware Definitions AgeMicrosoft.FEP.SecurityRootCause.AntimalwareDefinitions.AntimalwareDefinitionsDate.MonitorMicrosoft.FEP.SecurityRootCause.AntimalwareDefinitionsWorstOfMicrosoft.FEP.ProtectedServer.AntimalwareDefinitionsDate.MonitorMicrosoft.FEP.AntimalwareDefinitionsReferencesProtectedServerCustomTrueFalsePublic
Microsoft.FEP.SecurityRootCause.AntimalwareEngine.AMStatus.MonitorAntimalware EngineMicrosoft.FEP.SecurityRootCause.AntimalwareEngine.AMStatus.MonitorMicrosoft.FEP.SecurityRootCause.AntimalwareEngineWorstOfMicrosoft.FEP.ProtectedServer.AMStatus.MonitorMicrosoft.FEP.AntimalwareEngineReferencesProtectedServerCustomTrueFalsePublic
Microsoft.FEP.SecurityRootCause.MalwareActivity.ActiveMalware.MonitorActive MalwareMicrosoft.FEP.SecurityRootCause.MalwareActivity.ActiveMalware.MonitorMicrosoft.FEP.SecurityRootCause.MalwareActivityWorstOfMicrosoft.FEP.ProtectedServer.ActiveMalware.MonitorMicrosoft.FEP.MalwareActivityReferencesProtectedServerCustomTrueFalsePublic
Microsoft.FEP.SecurityRootCause.MalwareActivity.PendingAdditionalActions.MonitorAdditional Actions PendingMicrosoft.FEP.SecurityRootCause.MalwareActivity.PendingAdditionalActions.MonitorMicrosoft.FEP.SecurityRootCause.MalwareActivityWorstOfMicrosoft.FEP.ProtectedServer.PendingAdditionalActions.MonitorMicrosoft.FEP.MalwareActivityReferencesProtectedServerCustomTrueFalsePublic
Microsoft.FEPS.ProtectedServersWatcher.MalwareOutbreak.MonitorMalware OutbreakMicrosoft.FEPS.ProtectedServersWatcher.MalwareOutbreak.MonitorMicrosoft.FEP.ProtectedServersWatcherPercentageMicrosoft.FEP.SecurityRootCause.MalwareActivity.OutbreakMonitorMicrosoft.FEP.ProtectedServersWatcherContainsMalwareActivityCustomTrueTruePublic

Unit Monitors (11)

 DisplayNameIDTargetCategoryEnabledAlert GenerateAccessibility
Microsoft.FEP.ProtectedServer.ActiveMalware.MonitorActive MalwareMicrosoft.FEP.ProtectedServer.ActiveMalware.MonitorMicrosoft.FEP.ProtectedServerSecurityHealthTrueTruePublic
Microsoft.FEP.ProtectedServer.AMStatus.MonitorAntimalware EngineMicrosoft.FEP.ProtectedServer.AMStatus.MonitorMicrosoft.FEP.ProtectedServerCustomTrueTruePublic
Microsoft.FEP.ProtectedServer.AntimalwareDefinitions.MonitorAntimalware DefinitionsMicrosoft.FEP.ProtectedServer.AntimalwareDefinitions.MonitorMicrosoft.FEP.ProtectedServerCustomTrueTruePublic
Microsoft.FEP.ProtectedServer.AntimalwareDefinitionsDate.MonitorAntimalware Definitions AgeMicrosoft.FEP.ProtectedServer.AntimalwareDefinitionsDate.MonitorMicrosoft.FEP.ProtectedServerCustomTrueTruePublic
Microsoft.FEP.ProtectedServer.FWStatus.MonitorWindows FirewallMicrosoft.FEP.ProtectedServer.FWStatus.MonitorMicrosoft.FEP.ProtectedServerCustomFalseTruePublic
Microsoft.FEP.ProtectedServer.PendingAdditionalActions.MonitorAdditional Actions PendingMicrosoft.FEP.ProtectedServer.PendingAdditionalActions.MonitorMicrosoft.FEP.ProtectedServerSecurityHealthTrueTruePublic
Microsoft.FEP.ProtectedServer.RTPStatus.MonitorReal-time ProtectionMicrosoft.FEP.ProtectedServer.RTPStatus.MonitorMicrosoft.FEP.ProtectedServerCustomTrueTruePublic
Microsoft.FEP.ProtectedServer.ServerProtection.MonitorVulnerability ProtectionMicrosoft.FEP.ProtectedServer.ServerProtection.MonitorMicrosoft.FEP.ProtectedServerCustomTrueFalsePublic
Microsoft.FEP.SecurityRootCause.MalwareActivity.OutbreakMonitorMalware OutbreakMicrosoft.FEP.SecurityRootCause.MalwareActivity.OutbreakMonitorMicrosoft.FEP.SecurityRootCause.MalwareActivityCustomTrueFalsePublic
Microsoft.FEP.UnprotectedServer.DeploymentFailure.MonitorClient DeploymentMicrosoft.FEP.UnprotectedServer.DeploymentFailure.MonitorMicrosoft.FEP.UnprotectedServerCustomTrueTruePublic
Microsoft.FEPS.SecurityRootCause.MalwareActivity.PingMonitorMachine PingMicrosoft.FEPS.SecurityRootCause.MalwareActivity.PingMonitorMicrosoft.FEP.SecurityRootCause.MalwareActivityCustomTrueFalsePublic

Rules (6)

 DisplayNameIDTargetCategoryEnabledAlert Generate
Microsoft.FEP.ActiveMalwareMonitorFallbackTriggerRulePeriodic evaluation of active malware healthMicrosoft.FEP.ActiveMalwareMonitorFallbackTriggerRuleMicrosoft.FEP.ProtectedServerSecurityHealthTrueFalse
Microsoft.FEP.AlertForDeploymentPendingRebootAlertRuleClient Pending RestartMicrosoft.FEP.AlertForDeploymentPendingRebootAlertRuleMicrosoft.FEP.ProtectedServerCandidateCustomTrueTrue
Microsoft.FEP.AlertForRepeatedInfectionRuleRepeated Malware Infection RuleMicrosoft.FEP.AlertForRepeatedInfectionRuleMicrosoft.FEP.ProtectedServerSecurityHealthTrueTrue
Microsoft.FEP.CollectSecurityEventsRuleCollect Security Events RuleMicrosoft.FEP.CollectSecurityEventsRuleMicrosoft.FEP.ProtectedServerEventCollectionTrueFalse
Microsoft.FEP.DeploymentFailureFallbackTriggerRulePeriodic evaluation of deployment failure healthMicrosoft.FEP.DeploymentFailureFallbackTriggerRuleMicrosoft.FEP.ProtectedServerCandidateSecurityHealthTrueFalse
Microsoft.FEP.MalwareCleanedAlertRuleMalware Cleaned Alert RuleMicrosoft.FEP.MalwareCleanedAlertRuleMicrosoft.FEP.ProtectedServerCustomTrueTrue

Recoveries (7)

 DisplayNameIDTargetMonitorReset MonitorCategoryEnabledAccessibility
Microsoft.FEP.ProtectedServer.AMStatus.RecoveryStart Antimalware ServiceMicrosoft.FEP.ProtectedServer.AMStatus.RecoveryMicrosoft.FEP.ProtectedServerMicrosoft.FEP.ProtectedServer.AMStatus.MonitorTrueMaintenancefalseInternal
Microsoft.FEP.ProtectedServer.AntimalwareDefinitions.Recovery.ErrorUpdate Antimalware DefinitionsMicrosoft.FEP.ProtectedServer.AntimalwareDefinitions.Recovery.ErrorMicrosoft.FEP.ProtectedServerMicrosoft.FEP.ProtectedServer.AntimalwareDefinitions.MonitorTrueOperationsfalseInternal
Microsoft.FEP.ProtectedServer.AntimalwareDefinitionsDate.Recovery.ErrorUpdate Antimalware Definitions (Critical)Microsoft.FEP.ProtectedServer.AntimalwareDefinitionsDate.Recovery.ErrorMicrosoft.FEP.ProtectedServerMicrosoft.FEP.ProtectedServer.AntimalwareDefinitionsDate.MonitorTrueOperationsfalseInternal
Microsoft.FEP.ProtectedServer.AntimalwareDefinitionsDate.Recovery.WarningUpdate Antimalware Definitions (Warning)Microsoft.FEP.ProtectedServer.AntimalwareDefinitionsDate.Recovery.WarningMicrosoft.FEP.ProtectedServerMicrosoft.FEP.ProtectedServer.AntimalwareDefinitionsDate.MonitorTrueOperationsfalseInternal
Microsoft.FEP.ProtectedServer.FWStatus.RecoveryTurn Firewall OnMicrosoft.FEP.ProtectedServer.FWStatus.RecoveryMicrosoft.FEP.ProtectedServerMicrosoft.FEP.ProtectedServer.FWStatus.MonitorTrueMaintenancefalseInternal
Microsoft.FEP.ProtectedServer.RTPStatus.RecoveryEnable Real-time ProtectionMicrosoft.FEP.ProtectedServer.RTPStatus.RecoveryMicrosoft.FEP.ProtectedServerMicrosoft.FEP.ProtectedServer.RTPStatus.MonitorTrueMaintenancefalseInternal
Microsoft.FEPS.ProtectedServer.Reboot.Recovery.WarningRestart ComputerMicrosoft.FEPS.ProtectedServer.Reboot.Recovery.WarningMicrosoft.FEP.ProtectedServerMicrosoft.FEP.ProtectedServer.PendingAdditionalActions.MonitorTrueOperationsfalseInternal

Agent Tasks (11)

 DisplayNameIDTargetAccessibilityCategoryEnabled
Microsoft.FEPS.Application.AbortScan.TaskStop ScanMicrosoft.FEPS.Application.AbortScan.TaskMicrosoft.FEP.ProtectedServerInternalMaintenanceTrue
Microsoft.FEPS.Application.FirewallOff.TaskTurn Windows Firewall OffMicrosoft.FEPS.Application.FirewallOff.TaskMicrosoft.FEP.ProtectedServerInternalOperationsTrue
Microsoft.FEPS.Application.FirewallOn.TaskTurn Windows Firewall OnMicrosoft.FEPS.Application.FirewallOn.TaskMicrosoft.FEP.ProtectedServerInternalOperationsTrue
Microsoft.FEPS.Application.FullScan.TaskFull ScanMicrosoft.FEPS.Application.FullScan.TaskMicrosoft.FEP.ProtectedServerPublicMaintenanceTrue
Microsoft.FEPS.Application.NISOff.TaskDisable NISMicrosoft.FEPS.Application.NISOff.TaskMicrosoft.FEP.ProtectedServerInternalOperationsTrue
Microsoft.FEPS.Application.NISOn.TaskEnable NISMicrosoft.FEPS.Application.NISOn.TaskMicrosoft.FEP.ProtectedServerPublicOperationsTrue
Microsoft.FEPS.Application.QuickScan.TaskQuick ScanMicrosoft.FEPS.Application.QuickScan.TaskMicrosoft.FEP.ProtectedServerInternalMaintenanceTrue
Microsoft.FEPS.Application.RetrieveCCSettings.TaskRetrieve Endpoint SettingsMicrosoft.FEPS.Application.RetrieveCCSettings.TaskMicrosoft.FEP.ProtectedServerInternalStateCollectionTrue
Microsoft.FEPS.Application.RTPOff.TaskDisable Real-time ProtectionMicrosoft.FEPS.Application.RTPOff.TaskMicrosoft.FEP.ProtectedServerInternalOperationsTrue
Microsoft.FEPS.Application.RTPOn.TaskEnable Real-time ProtectionMicrosoft.FEPS.Application.RTPOn.TaskMicrosoft.FEP.ProtectedServerPublicOperationsTrue
Microsoft.FEPS.Application.UpdateSignatures.TaskUpdate Antimalware DefinitionsMicrosoft.FEPS.Application.UpdateSignatures.TaskMicrosoft.FEP.ProtectedServerPublicMaintenanceTrue

Console Tasks (1)

 DisplayNameIDTargetAccessibilityEnabled
Microsoft.FEPS.Application.RemoteDesktop.TaskRemote Desktop ConnectionMicrosoft.FEPS.Application.RemoteDesktop.TaskMicrosoft.FEP.ProtectedServerInternalTrue

Folder Items (6)

 DisplayNameIDFolderNameElementID
Microsoft.FEP.Views.DashboardDashboardMicrosoft.FEP.Views.DashboardMicrosoft.FEP.ViewsMicrosoft.FEP.Views.Dashboard
Microsoft.FEP.Views.ProtectedServersEndpoints with FEPMicrosoft.FEP.Views.ProtectedServersMicrosoft.FEP.ViewsMicrosoft.FEP.Views.ProtectedServers
Microsoft.FEP.Views.SecurityAlertsViewActive AlertsMicrosoft.FEP.Views.SecurityAlertsViewMicrosoft.FEP.ViewsMicrosoft.FEP.Views.SecurityAlertsView
Microsoft.FEP.Views.SecurityEventsViewSecurity EventsMicrosoft.FEP.Views.SecurityEventsViewMicrosoft.FEP.ViewsMicrosoft.FEP.Views.SecurityEventsView
Microsoft.FEP.Views.TaskStatusTask StatusMicrosoft.FEP.Views.TaskStatusMicrosoft.FEP.ViewsMicrosoft.FEP.Views.TaskStatus
Microsoft.FEP.Views.UnprotectedServersEndpoints without FEPMicrosoft.FEP.Views.UnprotectedServersMicrosoft.FEP.ViewsMicrosoft.FEP.Views.UnprotectedServers

Folders (1)

 DisplayNameIDParentFolderAccessibility
Microsoft.FEP.ViewsForefront Endpoint ProtectionMicrosoft.FEP.ViewsMicrosoft.SystemCenter.Monitoring.ViewFolder.RootInternal

Views (6)

 DisplayNameIDTargetTypeAccessibilityVisible
Microsoft.FEP.Views.DashboardDashboardMicrosoft.FEP.Views.DashboardMicrosoft.FEP.ProtectedServersWatcherMicrosoft.SystemCenter.DashboardViewTypePublicTrue
Microsoft.FEP.Views.ProtectedServersEndpoints with FEPMicrosoft.FEP.Views.ProtectedServersMicrosoft.FEP.ProtectedServerMicrosoft.SystemCenter.StateViewTypePublicTrue
Microsoft.FEP.Views.SecurityAlertsViewActive AlertsMicrosoft.FEP.Views.SecurityAlertsViewMicrosoft.FEP.ProtectedServersWatcherMicrosoft.SystemCenter.AlertViewTypePublicTrue
Microsoft.FEP.Views.SecurityEventsViewSecurity EventsMicrosoft.FEP.Views.SecurityEventsViewMicrosoft.FEP.ProtectedServerMicrosoft.SystemCenter.EventViewTypeInternalTrue
Microsoft.FEP.Views.TaskStatusTask StatusMicrosoft.FEP.Views.TaskStatusMicrosoft.FEP.ProtectedServerMicrosoft.SystemCenter.TaskStatusViewTypePublicTrue
Microsoft.FEP.Views.UnprotectedServersEndpoints without FEPMicrosoft.FEP.Views.UnprotectedServersMicrosoft.FEP.UnprotectedServerMicrosoft.SystemCenter.StateViewTypePublicTrue