Deep Discovery Analyzer

Extend the value of your security investments
with custom sandboxing

Key Features

Extensive detection techniques

Trend Micro™ Deep Discovery™ Analyzer uses XGen™ security, a blend of cross-generational techniques, to ensure the highest detection rate with the lowest false positives:

  • Web filtering with URL reputation
  • Local content correlated with comprehensive threat intelligence
  • Lateral movement detection
  • Custom sandbox analysis
  • Behavioral analysis
  • Machine-learning optimized relevance pattern for detecting command-and-control (C&C) behavior
Windows® Mac® AndroidTM iOS new Power Up

Custom sandboxing

Custom sandboxes use virtual images to match your operating system applications, configurations, and patches. Difficult for hackers to evade, they include a “safe live mode” to analyze multi-stage downloads, URLs, C&C, and more. Sandboxing can be used as further sandboxing capacity for other Deep Discovery appliances or as a scalable stand-alone sandbox. Manual submission allows administrators to investigate suspicious objects.

Windows® Mac® AndroidTM iOS new Power Up

Connected Threat Defense

  • Analyzer receives potential threats from our endpoint, email, IPS, and hybrid cloud solutions and provides a definitive answer to the entire solution stack automatically, extending the value of your Trend Micro investment
  • The appliance leverages custom sandboxing to mimic the corporate desktop image, including operating system, applications, configurations, and patches to avoid evasions and improve security effectiveness
Windows® Mac® AndroidTM iOS new Power Up

Centralized visibility and investigation

Deep Discovery Analyzer is managed with a centralized management platform, Trend Micro Control Manager, which provides a holistic view of your security posture across all Trend Micro security solutions and shares threat updates with your existing security platforms. Deep Discovery offers custom image management and control across multiple Deep Discovery systems.

Windows® Mac® AndroidTM iOS new Power Up
  • Deep Discovery Analyzer
  • 38,000 samples/day
Supported File Types
  • .bat, .cmd, .cell, .chm, .csv, .class, .cla, .dll, .ocx, .drv, .doc, .dot, .docx, .dotx, .docm, .dotm,

    .cpl, .exe, .sys, .crt, .scr, .gul, .hta, .htm, .html, .hwp, .hwpx, .iqy, .jar, .js, .jse, .jtd, .lnk, .mov,

    .pdf, .ppt, .pps, .pptx, .ppsx, .psl, .pub, .rtf, .slk, .svg, .swf, .vbe, .vbs, .wsf, .xls, .xla, .xlt, .xlm,

    .xlsx, .xlsb, .xltx, .xlsm, .xlam, .xltm, .xml, .xht, .xhtml, .url
Supported Operating Systems
  • Windows XP, Win7, Win8/8.1, Win 10, Windows Server 2003, 2008, 2012, 2016, Mac OS
Form Factor
  • 2U Rack-Mount, 48.26 cm (19")
31.5 kg (69.45 lbs)
Width 48.2cm (18.98”) x Depth 75.58cm (29.75”) x Height 8.73cm (3.44”) 
Management Ports
10/100/1000 Base-T RJ45 Port x 1
Data Ports
10/100/1000 Base-T RJ45 x 3
AC Input Voltage
100 to 240 VAC
AC Input Current
10A to 5A
Hard Drives
2 x 4 TB 3.5 inch SATA
RAID Configuration
Power Supply
750W Redundant
Power Consumption (Max.)
847W (Max.)
2891 BTU/hr (Max.)
50/60 Hz
Operating Temp.
50-95 °F (10 to 35 °C)
Hardware Warranty
3 Years

Prevent data breaches

Deep Discovery Analyzer is a turnkey appliance that uses virtual images of endpoint configurations to analyze and detect targeted attacks. By applying an XGen™ security blend of cross-generational detection techniques at the right place and time, it detects targeted attacks designed to evade standard security solutions.

Detect targeted ransomware

Organizations are increasingly becoming victims of targeted ransomware when advanced malware gets around traditional security, encrypts data, and demands payment to release the data. Deep Discovery Analyzer uses known and unknown patterns and reputation analysis to detect the latest ransomware attacks, including WannaCry. The customized sandbox detects mass file modifications, encryption behavior, and modifications to backup and restore processes.

Extend the value of your security

Many organizations have invested lots of money to deploy security solutions such as next-gen firewalls, IPS, endpoint security, and security gateways. Unfortunately, targeted attacks are designed to bypass these solutions. Deep Discovery Analyzer bridges solutions that provide security for known threats with protection from unknown threats and shares threat information back to these solutions.

Reduce costs

The appliance extends the value of existing security and speeds up the time to detect and remediate targeted attacks. Incident response time is reduced and costs of remediation are lowered.

What customers say

Greenville Health System

"Trend Micro Connected Threat Defense helps GHS to proactively protect against sophisticated attacks."...more

Chris Schmidt,
Manager of Information Security,
Greenville Health System

More success stories

Get started with Deep Discovery Analyzer

Analyst Working on Cloud Server

Protect more

Deep Discovery Inspector is part of the Network Defense family of network security products including Intrusion Prevention System (IPS).   

Deploy Trend Micro™ Deep Discovery™ Email Inspector to block spear phishing emails before they are delivered to users. Spear phishing is the number one delivery method of targeted ransomware attacks.