Malware Protection Options (in File Rule Actions)

The system applies several methods of file inspection and analysis to determine whether a file contains malware.

Depending on the options you enable in a file rule, the system inspects files using the following tools, in order:

  1. Spero Analysis and AMP Cloud Lookup

  2. Local Malware Analysis

  3. Dynamic Analysis

For a comparison of these tools, see Comparison of Malware Protection Options.

(You can also, if you choose, block all files based on their file type. For more information, see Block All Files by Type.)

See also information about Cisco's AMP for Endpoints product at (Optional) Malware Protection with AMP for Endpoints and subtopics.