Jump to content
RobT

Incident Response on clients seems disabled

Recommended Posts

Hi there,

I have deployed Incident Response via Group Policy on our 2016 server to our Windows 10 clients.

I recently reviewed the status of our systems on the Incident Response Dashboard and was alarmed to see that almost all of our systems had not updated online for months.

Upon closer inspection, I could see that the service for Malwarebytes Endpoint Agent, whilst enabled was stopped on almost every computer.

Does anyone know what could be causing this and how I can get around this?

Screenshot included for reference.

Once I re-enabled the service, the computers in question came back up on Incident Response Dashboard and I was able to scan . 

 

FTYMalwareBytesSvcs.png

Share this post


Link to post
Share on other sites
3 hours ago, AndrewPP said:

See this article regarding Malwarebytes Endpoint Agent not starting - https://support.malwarebytes.com/docs/DOC-2613 and configuration to ensure startup.

Thanks very much, just added this in on the group policy on our sever.

Hopefully this will do the job, thanks again :) 

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.