Malware Outbreak

Microsoft.FEP.MalwareOutbreak.FEP.Aggregate.Monitor (AggregateMonitor)

This monitor detects a malware outbreak.

Element properties:

TargetMicrosoft.FEP.SecurityRootCause.MalwareActivity
Parent MonitorSystem.Health.SecurityState
AlgorithmBestOf
CategoryCustom
EnabledTrue
Alert GenerateFalse
Alert Auto ResolveFalse
RemotableTrue
AccessibilityPublic

Source Code:

<AggregateMonitor ID="Microsoft.FEP.MalwareOutbreak.FEP.Aggregate.Monitor" Accessibility="Public" Enabled="true" Target="FEPLibrary!Microsoft.FEP.SecurityRootCause.MalwareActivity" ParentMonitorID="Health!System.Health.SecurityState" Remotable="true" Priority="Normal">
<Category>Custom</Category>
<Algorithm>BestOf</Algorithm>
</AggregateMonitor>