This integration enriches Trend Vision One detections with VirusTotal intelligence, giving analysts immediate access to reputation details for URLs, IPs, domains, and file hashes as they investigate security events. After enabling the integration and providing a VirusTotal Public API key, the platform can reference VirusTotal data during alert triage and forensic review, helping teams validate suspicious indicators more quickly.
Analysts can also perform on-demand checks directly within Workbench alerts, Forensics reports, and XDR Data Explorer by right-clicking an indicator and selecting VirusTotal for additional insight. Adjustable caching and lookup controls help organizations manage query frequency while still benefiting from quick access to community threat intelligence.
This added context helps teams make more informed decisions and better understand the significance of potentially malicious activity.
We’re here to connect and support you.