Get answers and solutions, initiate discussions, and connect with experts globally
Read recent answers to common queries in the most viewed Troubleshooting Articles
Issue: How to remotely change the subscription key of the Elements Endpoint Agent (EPP for Computers and EPP for Servers) via the Endpoint Protection Portal?Resolution: Follow these steps to remotely change a subscription key of a device using the Endpoint Protection Portal: * Log into the Endpoint Security Center Portal:…
Issue: I would like to register my Policy Manager Server which is not connected to a network (offline), how do I proceed?Resolution: * Contact WithSecure support by opening a support request here. * Provide the following information for WithSecure technical support to create an offline registration file: * Account Name *…
Issue: Getting an error of "Your login to WithSecure™ Partner Portal failed. Please try using a different browser, or you can open a support ticket at: https://www.withsecure.com/en/support " when logging into Partner Portal. Resolution: This error message appears typically when user has an existing WithSecure user…
Issue: How to reset two factor authentication (2FA) for a WithSecure Business Account (Elements, Partner Portal, eService Portal) user account. Example scenarios:* User has a new mobile device and wants to move or transfer the authenticator to the new device * Device that had the multi factor authentication (MFA)…
Issue: WithSecure Elements Endpoint Detection and Response (EDR) detects a safe application (e.g. an in-house application). How to whitelist the detection?Resolution: You can close the Broad Context Detection (BCD) as "Accepted behavior", to create suppression rule that can accept the behavior of a user or a process. To do…
Issue: Real-time scanning or DeepGuard has detected a file to be malicious. How to submit a sample file to Virus labs to find out if it is a false positive? What if a possibly malicious file has not been detected, how to submit a sample file to virus labs to find out if it is a false negative? Resolution: If you suspect…
You currently have limited access, but there's a wealth of content to explore! If you need assistance or have any questions, we're here to help.
Hello. Would it be possible to add a Linux installer for computers to the installation agent download?
When I retrieve the list of devices, the character encoding is incorrect. The character "é" becomes "é" I tried adding "charset=utf-8" and other encodings in the header but it does not work. $Header2 = @{ 'Content-Type' = 'application/json; charset=utf-8' "Authorization" = "Bearer $sToken" } ((Invoke-WebRequest -Headers…
To keep you informed, we’ll share a weekly roundup of the most viewed troubleshooting articles, questions, and ideas from the WithSecure Community. 🔖Stay in the loop: simply bookmark this discussion and you'll receive a notification whenever we post the latest digest.
It's January and time to celebrate another year with the same bug small ghraph bug (see attached picture). This makes me worry about EPOCH since some people don't even bother to check which year it is.
Hello everyone, One of our employees has been experiencing a problem for a week now: according to Task Manager, this process is consuming an extremely large amount of RAM. Even restarting the computer or manually terminating the process has not helped. It keeps coming back. What can I do? Many thanks in advance! Best…
How to identify Windows 10 devices which have ESU activated ? Should such devices still being shown with OS End of Life = Yes ? Regards, aj
The new partner portal for WithSecure Elements is proving VERY difficult for me to navigate. The previous portal was quite easy for me. For example, I have a customer with 10 workstations using EPP for Computers. I build them 2 more workstations, and want to EXPAND their license as to protect those also. Making the total…
Hi all, we are receiving alerts for the below script but when we close it it does not create a rule. C:\WINDOWS\System32\WindowsPowerShell\v1.0\powershell.exe -NoProfile -NonInteractive -Command "[Console]::OutputEncoding = [System.Text.Encoding]::UTF8;" " Get-LocalUser | ForEach-Object { $userName = $_.Name $output = net…
2025 was an incredible year for the WithSecure Community - thanks to you! Check out our end of year video here: https://youtu.be/WcU0A3nZipc Big news: 🏆 Our Community has been nominated for two industry awards! Don't forget to vote! Behind the scenes: Want to know what goes on behind the scenes at WithSecure Community?…
Customers are asking about whether EDR can detect exploitation of CVE-2025-55182 and CVE-2025-66478 What would be the chain of execution and associated score in case of compromission ?
Hello, We are using WithSecure Elements Endpoint Protection (Windows) with Software Updater enabled on a large Windows workstation fleet. Updates for most third-party applications install correctly, but 7-Zip consistently fails to update. Issue Application: 7-Zip (vendor: Igor Pavlov) Result: Update installation fails…
Dear all, is there a way to automatically force update specific apps only (not the manual way) ? There are known programs (e.g. Microsofts Powertoys, OneDrive…) which are running in the background and needs to be closed first. Users usually simply cancel the update which then requires additional manual effort to keep these…
Hi, We have customer who has critical sensitive user data in use, and they need firewall rules that block all outbound and inbound traffic except allowed. We can achieve this using "critical workstation" firewall profile and then allow needed ip-addresses. However, one program (autodesk autocad) needs constant connection…
There was a update for the ESC a few months ago. Since then, working with this system is not possible anymore from my point of view. In the earlier version, Devices Views were able to open in a new Tab. Now I can go forward to deep dive in a device, but there is no way back. This means, all Filters or views are set back…
The title may be confusing, so here ist the Question again with a example: If I turn off the security feature "Allow user to uninstall the product" in a windows-profile, and the trigger "turn off security features" on a device with that profile assigned, it only disables the client for about 10-30 seconds instead of the…
All vulnerability network scans are stuck in a Queued state and do not start, although Discovery scans are running successfully. Network scans remain permanently queued with no progress. Has anyone encountered this before or have suggestions on where to begin troubleshooting? Steps already taken: Confirmed that all scan…
Hi there, the application control logs following blocking action: Die Anwendungssteuerung hat die Installation einer Anwendung verhindert. Regelname: Default block rule Regel-ID: 00000000000000000000000000000000 MSI: C:\WINDOWS\system32{AC76BA86-1031-1033-7760-BC15014EA700} Name des Unterzeichners: Übergeordneter Pfad:…
Speak with a product expert. Check our phone numbers and service hours.
Submit a request for product support
Log in to the Partner Portal for partner support.
Join other cyber security experts & get inspired
This month's community leaders