Periodic evaluation of active malware health

Microsoft.FEP.ActiveMalwareMonitorFallbackTriggerRule (Rule)

Element properties:

TargetMicrosoft.FEP.ProtectedServer
CategorySecurityHealth
EnabledTrue
Alert GenerateFalse
RemotableTrue

Member Modules:

ID Module Type TypeId RunAs 
FallbackScheduler DataSource System.Scheduler Default
LogTimerTriggerEvent WriteAction Microsoft.FEP.ActiveMalwareMonitorFallbackTriggerRule.LogFallbackTriggerEventWA Default

Source Code:

<Rule ID="Microsoft.FEP.ActiveMalwareMonitorFallbackTriggerRule" Enabled="true" Target="FEPLibrary!Microsoft.FEP.ProtectedServer" ConfirmDelivery="false">
<Category>SecurityHealth</Category>
<DataSources>
<DataSource ID="FallbackScheduler" TypeID="System!System.Scheduler">
<Scheduler>
<SimpleReccuringSchedule>
<Interval Unit="Minutes">360</Interval>
</SimpleReccuringSchedule>
<ExcludeDates/>
</Scheduler>
</DataSource>
</DataSources>
<WriteActions>
<WriteAction ID="LogTimerTriggerEvent" TypeID="FEPLibrary!Microsoft.FEP.ActiveMalwareMonitorFallbackTriggerRule.LogFallbackTriggerEventWA">
<PublisherName>Microsoft Forefront Endpoint Protection</PublisherName>
<LogName>System</LogName>
</WriteAction>
</WriteActions>
</Rule>