<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CSA and Worms detection in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/csa-and-worms-detection/m-p/388905#M96341</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;CSA detects (based on the rules you have in place) suspicious behavior that a worm would produce when it was trying to execute on a machine.  It queries the user (if user interaction is enabled) whether they will allow it. The Global Event correlation (if you have it enabled) will notify other machines and prevent the spread of the worm even if it successfully executes.  CSA knows about the virus scanner (if you have it configured) and allows it to perform as needed but it is not dependant on it for protection.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 27 Apr 2005 17:37:13 GMT</pubDate>
    <dc:creator>tsteger1</dc:creator>
    <dc:date>2005-04-27T17:37:13Z</dc:date>
    <item>
      <title>CSA and Worms detection</title>
      <link>https://community.cisco.com/t5/network-security/csa-and-worms-detection/m-p/388904#M96340</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;could someone tell me how CSA is able to detect worm attack?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is the agent in communication with Antivirus installed on the system?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;Marco&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 09:25:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/csa-and-worms-detection/m-p/388904#M96340</guid>
      <dc:creator>irelandsky</dc:creator>
      <dc:date>2019-03-10T09:25:34Z</dc:date>
    </item>
    <item>
      <title>Re: CSA and Worms detection</title>
      <link>https://community.cisco.com/t5/network-security/csa-and-worms-detection/m-p/388905#M96341</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;CSA detects (based on the rules you have in place) suspicious behavior that a worm would produce when it was trying to execute on a machine.  It queries the user (if user interaction is enabled) whether they will allow it. The Global Event correlation (if you have it enabled) will notify other machines and prevent the spread of the worm even if it successfully executes.  CSA knows about the virus scanner (if you have it configured) and allows it to perform as needed but it is not dependant on it for protection.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Apr 2005 17:37:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/csa-and-worms-detection/m-p/388905#M96341</guid>
      <dc:creator>tsteger1</dc:creator>
      <dc:date>2005-04-27T17:37:13Z</dc:date>
    </item>
  </channel>
</rss>

