Make security simple with Secure Cloud
Recently active
One of our core commitments when we began developing Webroot® Security Awareness Training was to remain relevant. We pledged to continuously develop content that reflected the latest threats faced by businesses and users as they arose. One of the most significant challenges we’ve seen since the launch of our user training tool has been the shift to remote workforces forced by the novel coronavirus outbreak. It’s dealt a serious blow to the cyber resilience of many organizations and is something, we felt, needed to be addressed. We’re happy to announce that a course designed to do just that is now available. It’s a guide for organizations and their users to maintain their cyber resilience with dispersed workforces, and we hope you’ll enroll. Why bother developing a Cyber Resilience while Working from Home Course? Cybercriminals know many remote workforces are no longer always under the watchful eyes of IT teams. They know some are even working from their own devices, often outsid
OpenText EDR & MDR Integrations: API-First Power with Flexible Log IngestionOpenText EDR and MDR are designed to adapt to your needs. We are committed to developing and supporting integrations with the data sources and tools used by your business and your customers.Integrations fall into two categories:Advanced API-first product integrations Syslog-based log ingestionAPI-First IntegrationsAPI integrations provide rich functionality and tightly aligned use cases.Provide rich functionality aligned to real-world security workflows. Support bidirectional workflows and data synchronization where supported. Enable deeper automation and response actions. Included at no additional cost.Application SecuritySaltminerAuthentication LogsOkta Workforce IdentityAutomation AuditingAutomation AnywhereCloud SecurityAmazon EventBridge AWS CloudTrail Microsoft (Defender, Intune, Identity Management, Microsoft 365)DNS and URL MonitoringCisco UmbrellaEndpoint SecurityCisco Secure Endpoint (AMP) CrowdSt
Captains Log: Sending Proxmox Logs to EDR via SyslogA Practical Guide for MSP Partners Modern MSP environments rely heavily on virtualisation platforms. While VMware and Hyper-V have traditionally dominated this space, Proxmox VE has rapidly gained popularity thanks to its flexibility, open architecture, and strong community support.However, one area that’s often overlooked is security monitoring of the hypervisor itself.If you're running OpenText Core EDR, integrating your Proxmox hosts into your logging pipeline can provide valuable visibility into the infrastructure layer. This allows your SOC to detect suspicious activity, operational failures, and potential attacks much earlier in the incident lifecycle.In this guide, we’ll walk through how to configure Proxmox to forward meaningful security events to OpenText Core EDR using Syslog, while keeping noise low and signal high.The configuration described here is designed to be:SOC-friendly Easy to deploy across multiple hosts Low-noise
Watch step-by-step videos covering Endpoint Protection, DNS Protection, Security Awareness Training, and Detection and Response features. Learn how to start a trial in the Management console and install the Detection and Response agent on Mac. These quick how-to guides make setup and training easier for everyone.Click HERE for the Video Library
Captains Log: Sending Email Threat alerts to EDR via SyslogA Practical Guide for MSP Partners Email remains one of the most important telemetry sources in the modern MSP security stack. OpenText Core Email Threat Protection can identify spam, phishing, malware, quarantine events, and link-based activity long before a compromise reaches the endpoint.However, getting those alerts into OpenText Core EDR in a reliable and operationally safe way is not always straightforward.Unlike platforms that offer a native event streaming integration, OpenText Core Email Threat Protection exposes SIEM data through an API. That means MSP engineers must account for:poll timing and overlap API response handling duplicate suppression event normalisation Syslog / CEF forwarding In this guide, we’ll walk through how to deploy a lightweight Linux collector that polls the Email Threat Protection SIEM API, captures all relevant alerts, normalises them, and forwards them to OpenText Core EDR via Syslog.The confi
It’s an exciting time to be a managed service provider (MSP). More than ever, small and medium businesses (SMBs) are looking to MSPs as trusted advisors to help safeguard them from today’s growing cyber threats. One of the services in high demand right now? Managed detection and response (MDR). When asked about their biggest growth drivers, MSPs cite addressing clients’ cybersecurity concerns and awareness as the top new-business drivers (54%).1For MSPs, adding MDR to your lineup can create new revenue streams while enhancing the value you bring to your clients. By offering OpenText MDR to your MSP clients, you gain access to skilled security experts and advanced technology infrastructure—without the complexity and cost of building it all in-house.Here’s why more MSPs are partnering with OpenText to power their MDR security services: 1. Seamless integration with your existing toolsOne of the greatest advantages of choosing OpenText MDR is its compatibility with your existing tools. Ope
Just updated to Mac Monterey 12.3 yesterday, and Webroot 9.5.0.139 detects Xprotect Remediator MRT v3 as Keylogger.Refog.1.r. Can anyone verify this, please?Thanks.
I have an endpoint that is not functioning. It will not speak to the portal but locked in central management mode. I need to remove it to reinstall it but it will not allow me, saying I have to contact the admin, I am the admin :) I cannot get the console to speak to the endpoint though. Is there an uninstaller? Thanks.
Everytime I try to open up chrome, I get the spinning icon and nothing opens. If I disable Webroot, I can open it up no problem. I am using windows 10 home edition.
Igor pavlov 7 zip - what is this and is it safe?
Webroot secureanywhere endpoint protection doesn't show up in program list to uninstall. running manual command to uninstall giives error that the service is centrally managed and must be uninstalled from webconsole. The customer does not have this info. The customer does NOT have contact with last IT vendor (relationship ended badly). How do I uninstall this borderline-malware, garbage software without formatting and reinstallinng windows?
I can not remove this from our 2003 Sp2 server. Please advise, thanks.
I searched first, but didn't find this topic. However, I think there must be more people with this problem. I am trying to deploy via GPO, but several of the machines never accept the installation. The logs show error %%1274, and verbiage like this: "Failed to apply changes to software installation settings. The installation of software deployed through Group Policy for this user has been delayed until the next logon because the changes must be applied before the user logon. The error was : %%1274" "The assignment of application Webroot SecureAnywhere from policy AV Deploy failed. The error was : %%1274" "The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance."
This solution addresses Webroot SecureAnywhere Business – Endpoint Protection The first time you add endpoints to SecureAnywhere Endpoint Protection, they are assigned to the Default group. You can then move endpoints to the appropriate groups. To move endpoints to another group: Click the Group Management tab. From the Groups panel on the left, select the group that contains the endpoints you want to move.Note: For this procedure you must select a specific group, not All Endpoints. From the Endpoints panel on the right, select one or more endpoints.Tip: You can select all endpoints within the selected group by clicking the Hostname checkbox at the top of the list (first column). Click Move endpoints to another group from the command bar.Note: If the group has more than one page of endpoints, the dialog prompts you to apply the policy either to the endpoints on the current page or to all pages of endpoints. [img]htt
Hello. I have loaded the software and have scanned my PC's. When I click the icon in the task bar and then try to open I recieve the following. "Please contact your network administrator to access the user interface of secure anywhere." I am the administrator I am logged in as administrator. Any Ideas? Regards from Dave.
I periodically get a "A timeout (30000 milliseconds) was reached while waiting for a transaction response from the DnsProxyAgent service" message in my event log. Sometimes this happens twice in a span of 36 - 39 seconds. What could be causing this? I still have DNS protection running according to dnsptest.webroot.com and I haven't really encountered many issues. I just want to reduce errors in the event viewer.
MSP here. I’ve seen other posts that discuss Webroot with Windows Defender, but now that it’s 2021, Windows 10 has changed a bit.Why other posts don’t apply anymore: Disable periodic scans in Windows Defender is no longer an option According to this article, you can set a DWORD value in the registry to enable Passive Mode for Defender, however, upon setting it, is has no effect on issue #1 belowTwo issues:With Webroot + Windows Defender enabled, Windows Defender is still actively scanning data in real-time. I ran a test and saw the Microsoft Anti-Malware service spike up to 30-40% CPU usage. Webroot is installed and functioning correctly, but Webroot doesn’t seem tell Windows Defender to turn off. I have a registry hack to force Windows Defender off, but I’d rather not apply that unless I have to. In addition, if I disable “Real-time Protection” in Windows Defender, I get a toast message that says that Windows Defender & Webroot are both disabled, even though Webroot is actually
I find webroot Google search engine. I hope you will help. I am teacher in the school. I need to block this site. I give you link. https://sites.google.com/site/allunblockedgames77 Children enter this site in their free time. They don't listen to me. Can I block through the system, will you show me the way ? I want to block all unblocked games web site. I try dns but it is useless. Thank you.
We have to big issue in Turkey to use Dns Protection. In the starting of computers Dns Protection agent cannot resolve any websites like 5 minutes. After 5 minutes Dns agent working properly. This is a very big issue, a lot of customers, and potential customer affected from that problem.
I went in to the GSM console 3 days ago and whitelisted several a couple for a site yet when I look at Webroot on one of those endpoints nothing shows up under Block/Allow files. It is all done via the GSM because when I try and and "allow" files on the endpoint it says I can't and that they must be added via the console. So.... what am I doing wrong?
Hello, I’m attempting to remove this software from our endpoints. The manual removal fails indicating it requires wsasme.msi, I do not have this file nor is it located on the endpoint.An attempt to remove them displays a missing msi file. further to this removal from WMIC errors out with “ ReturnValue = 1603;”
I need to remotely uninstall Webroot SecureAnywhere from 135 devices on a domain. I do have the ability to do this via a RMM so if there are any scripts or software that can accomplish this with silent or no reboot switches that would be great. Thank you!
Hello! New Webroot SecureAnywhere user here. I recently started at a company that uses this software however I have no experience with it. Dumb question, but we are troubleshooting some software issues on a PC that has Webroot SecureAnywhere installed on it. I have access to the Admin console but am unable to disable the software locally. How do I disable this software on a single PC for testing purposes?
This solution addresses Webroot SecureAnywhere Business – Endpoint Protection You can deploy the SecureAnywhere installer file using one of these methods: Install SecureAnywhere on each endpoint. Send emails to end users, so they can install the software by clicking on the link provided in the email template. Rename the executable file using your keycode. This method is useful if you plan to use your own deployment tool and if you prefer not to use MSI commands to run the installation in the background. Use additional commands with the executable file to deploy it in the background. Use command-line options with the installer to deploy to endpoints that are behind a proxy server. To use the SecureAnywhere installer: 1. On the endpoint, download the SecureAnywhere installer file. The installer file is available from the Resources tab or by clicking this link: http://anywhere.webrootcloudav.com/zerol/wsasme.exe 2. In the installation panel (s
Is there a Webroot secureanywhere removal tool? I seem to have a broken install. I was messing with deployment tools testing the msi deployment. Webroot secureanywhere is running, I see the icon and can open it. It's not showing up in the console online though. I tried using the msi /x option to remove it but it tells me that it's only valid for products that are currently installed.
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.