Deep Discovery Analyser

Extend the value of your security investments
with custom sandboxing

Key Features

Extensive detection techniques

Trend Micro™ Deep Discovery™ Analyzer uses XGen™ security, a blend of cross-generational techniques to ensure the highest detection rate with the lowest false positives:

  • Web filtering with URL reputation
  • Local content correlated with comprehensive threat intelligence
  • Lateral movement detection
  • Custom Sandbox Analysis
  • Behavioral analysis
  • Machine-learning optimized relevance pattern for detecting command-and-control (C&C) behavior
WindowsTM Mac AndroidTM iOS new Power Up

Custom sandboxing

Custom sandboxes use virtual images to match your operating system configurations,
drivers, installed applications, and language versions. Difficult for hackers to evade, they
include a “safe live mode” to analyze multi-stage downloads, URLs, C&C, and more.
Sandboxing can be used as further sandboxing capacity for other Deep Discovery
appliances, or as a scalable stand-alone sandbox. Manual submission allows
administrators to investigate suspicious objects.

WindowsTM Mac AndroidTM iOS new Power Up

Optimized and connected

  • A single appliance can support up to three different virtual images and a total of 60 sandboxes
  • Can be configured as a stand-alone sandboxing solution or as additional capacity for an existing solution
  • Appliances can be clustered for scalability and redundancy
  • Integration with popular SIEMs, such as HP Arcsight, IBM QRadar, and Splunk
WindowsTM Mac AndroidTM iOS new Power Up

Centralized visibility and control

Deep Discovery Analyzer is managed with a centralized management platform, Trend Micro Control Manager, which provides a holistic view of your security posture across all Trend Micro security solutions, and can share threat updates with your existing security platforms. Deep Discovery offers custom image management and control across multiple Deep Discovery systems.

WindowsTM Mac AndroidTM iOS new Power Up
  • Hardware Model 1100
  • 45,000 samples/day
Supported File Types
  • cell, chm, class, dll, doc, docx, exe, gul, hwp, hwpx, jar, js, jse, jtd, lnk, mov, pdf, ppt, pptx, ps1, rtf, swf, vbs, vbe, xls, xlsx, xml
Supported Operating Systems
  • Windows XP, Win7, Win8/8.1, Win 10, Windows Server 2003, 2008, 2012, Mac OS
Form Factor
  • 2U Rack-Mount, 48.26 cm (19")
32.5kg (71.65lbs)
Width 48.2cm (18.98”) x Depth 75.58cm (29.75”) x Height 8.73cm (3.44”) 
Management Ports
10/100/1000 Base-T RJ45 Port x 1
Data Ports
10/100/1000 Base-T RJ45 x 3
AC Input Voltage
100 to 240 VAC
AC Input Current
10A to 5A
Hard Drives
2 x 4 TB 3.5 inch SATA
RAID Configuration
Power Supply
750W Redundant
Power Consumption (Max.)
847W (Max.)
2891 BTU/hr (Max.)
50/60 Hz
Operating Temp.
50-95 °F (10 to 35 °C)
Hardware Warranty
3 Years

Prevent Data Breaches

Deep Discovery Analyser is a turnkey appliance that uses virtual images of endpoint configurations to analyse and detect targeted attacks. It uses an XGen™ security blend of cross-generational detection techniques applied at the right place and time to detect targeted attacks that are designed to evade standard security solutions.

Extend the value of your security

Many organisations have invested lots of money to deploy security solutions such as next gen firewalls, IPS, endpoint security, and security gateways. Unfortunately, targeted attacks are designed to bypass these solutions. Deep Discovery Analyser bridges solutions that provide security for known threats with protection from unknown threats, and shares threat information back to these solutions.

Detect targeted ransomware

Organisations are increasingly becoming victims of targeted ransomware when advanced malware gets around traditional security, encrypts data, and demands payment to release the data. Deep Discovery Analyser uses known and unknown patterns and reputation analysis to detect the latest ransomware attacks, including WannaCry. The customised sandbox detects mass file modifications, encryption behavior, and modifications to backup and restore processes.

Reduce costs

The Deep Discovery Analyser Appliance extends the value of existing security and speeds up the time to detect and remediate targeted attacks. Incident response time is reduced and costs of remediation are lowered.

Simplify your decision


What customers say

University of New Brunswick

"One in 10 users in any organisation will open an infected attachment. Deep Discovery provides real numbers and stories that help change the way students, staff and faculty think before they click on suspicious email attachments."...more

David Shipley,
Director of Strategic Initiatives for UNB

More success stories

Get started with Deep Discovery Analyser

Protect more

Protect more

Deep Discovery Inspector is part of the Network Defence family of network security products including Intrusion Prevention System (IPS).   

Deploy Trend Micro™ Deep Discovery™ Email Inspector to block spear phishing emails before they are delivered to users. Spear phishing is the number one delivery method of targeted ransomware attacks.