Endpoint Protection

 View Only

Symantec Endpoint Network Activity Tool 

Jul 22, 2010 01:54 PM

This video describes the utility and configuration of the Symantec Endpoint  Network Activity Tool. This tool is useful to monitor the network traffic activity.

Please Note:
This video is best viewed in full screen by selecting the square icon in the lower right corner of the video player

Statistics
0 Favorited
0 Views
1 Files
0 Shares
0 Downloads

Tags and Keywords

Comments

Jun 12, 2015 09:43 PM

But then again, SEP 12.1.5 and SEP 12.1.6 which are on the scene should have resolved any and all teefer.sys/Network Threat Protection (NTP) issues and problems because without NTP and the Firewall - this will NOT be a reality.

Symantec Endpoint Protection 12.1 Teefer driver version is not reflected in the driver file name or display name

(Article: TECH161111)(Check the version tab of the Teefer.sys file properties)

Configuring peer-to-peer authentication for Host Integrity enforcement (Article: HOWTO80751)

Using Symantec Endpoint Protection's Network Activity Tool to Identify Suspicious Processes (Article: TECH92950)

Symantec Endpoint Network Activity Tool

Slow Network Copy Caused by SEP Firewall (Most Recent)

SEP Network Threat Protection blocking network unexpectedly

Network Threat Protection blocks Traffic when PC is connected with WWAN Module to internet

Network Threat Protection: Slow network share

Network Threat Protection always slows down - true?

network threat protection and slowness

Teefer Removal Tool for SEP12.1

Differences in MR4 (“Teefer was removed from the list, since it could be disabled by admin users and was a security risk”)

Teefer2 Miniport ? (“The Teefer driver is responsible for capturing all network traffic entering or leaving a particular interface ( via the associated miniport driver), so that the packets may be passed to the personal firewall component of the SEP 11.0 client for analysis.”)

Jun 12, 2015 08:39 PM

I believe in this more than netstat - and of course the ability to identify and terminate C&C connections. Using Symantec Endpoint Protection's Network Activity Tool to Identify Suspicious Processes (Article: TECH92950)

Nov 09, 2011 11:49 PM

Always Welcum and thanks for Motivation too. 

Nov 05, 2011 04:53 AM

Thanks for sharing. It's very helpfull.

Sep 21, 2010 11:21 PM

Thank you very much Mr. Sandip & Mr. Zahid

Sep 02, 2010 06:18 AM


This will be good if the below snap screen shows DNS name of remote site with IP Address. because for example if four session is established with yahoo site we can understand that DNS name shows yahoo links but you cannot pick with the IPs that all IPs are of Yahoo Site.

With DNS name support we can find that all four session are with Yahoo site
.



Related Entries and Links

No Related Resource entered.