AMSI integration

April 16
New
Datto EDR, Kaseya 365 Endpoint

Datto EDR now integrates with Windows Antimalware Scan Interface (AMSI) to expand visibility into script-based activity and improve detection coverage for fileless attacks. This helps you spot suspicious PowerShell and other scripting engine activity that can otherwise blend into normal admin work.

The Windows EDR agent adds AMSI detection components in a dedicated AMSI directory within the agent install path (including amsi.dll, keywords.enc, and damsi.sha). AMSI support is designed to inspect script content and alert on risky patterns, including interactive command activity and malicious keywords before execution.

Learn more about AMSI integration for Datto EDR here

One complete platform for IT & security management

Kaseya 365 is the all-in-one solution for managing, securing, and automating IT. With seamless integrations across critical IT functions, it simplifies operations, strengthens security, and boosts efficiency.

Email security under NIS2 

With evolving AI threats, traditional defences are no longer enough  Email has long been a point of vulnerability for businesses, but the scale and sophistication of attacks are evolving, posing

Read blog post

Cyber resilience in the age of NIS2: Why backup is no longer just an IT function 

A question every business should be asking is: How quickly can we get back to business if something goes wrong?  Downtime is expensive, and in

Read blog post

Cloud complacency is putting European Microsoft 365 and Azure date at risk

Microsoft 365 and Azure data is your responsibility. Learn why backup and recovery are essential to protect cloud data from loss, ransomware, and disruption.

Read blog post