September 21, 2023 - Version 7755

NOTE  Datto EDR leverages a staggered release process. You'll receive an in-product notification when these updates are available to your instance.

Version information

Endpoint Security Agent Ransomware Agent Rollback Agent API 

2.15.5

1.2.3

1.1.4

5.0.0

New features

  • Enhance your threat intelligence results by sending memory injection alerts to VirusTotal. You can enable this feature at Admin > Settings > Automated File Analysis Settings > Enable memory injection submissions to VirusTotal. Datto EDR will send the binaries from applicable memory scans for comparison to known threats. Any telemetry results received from the service will appear on the File Detail page of the corresponding alert. To learn how to enable this feature, check out the Settings section of Navigating the Admin page.

Enhancements

  • We've expanded logo customization for the Executive Threat Report to users in the European Union. To learn how to personalize report cover pages with your company's logo, review to our Account topic.
  • To make mapping new BMS accounts more intuitive, when adding an account to the integration, you'll now have the opportunity to select the account type. Datto EDR will then surface a matching list of accounts to which you can map the location. Existing integrations are unaffected by this change. Read more about the BMS integration in Configuring the BMS & Vorex integration.
  • The Threat Name value now appears on the File Detail page of applicable alerts. This enhancement also adds a field called avThreatName to the associated telemetry data you can pass to collectors via webhooks, integrations, or other logging methods. Refer to Leveraging the File Detail page for additional details.
  • The Datto Endpoint Security agent has received several improvements that enhance its level of logging detail and introduce error checking to address hosts becoming disabled due to update failures.
  • This release enhances text string search results to include matching reputation and antivirus alerts.

Bug fixes

  • We've resolved an issue in which the Isolate Host extension could block DNS requests, which resulted in the endpoint being unable to communicate with the Datto EDR portal and become unable to accept host isolation restore commands. The extension now functions as expected.

Artifacts

agent.linux-amd64.119dc9eca2bfa999c58e7e4ea8f8190ab64ec07a95edc2eb4ee9bbebddf85c03.exe.gz
agent.linux-arm64.35e463f3ab0e8bb5b2b867407442929b5323d0853e1ecae83cc23b7d1f367f56.exe.gz
agent.linux-x86.af4afb6d747bd941b5ec8341cb5770ec7d404cb05d62ff312cb266b650be28fc.exe.gz
agent.macos-amd64.7a5a48344b2a0c90b8dfe6f5663deded795b36ee35030813562ba9d88a61ecc8.exe.gz
agent.macos-arm64.52cbf64960f3ff363e6e31d45b2a095ab1fe022d8d6a6708b2be27c3704d2172.exe.gz
agent.windows-amd64.600c58e20091df3c2c343b02a78246a5b700cf272c4b36977fd9c3e0584d115a.exe.gz
agent.windows-x86.69a02ee4e23587eeb56289da7d863403f0181f068dbce8b55fc6841ac0b59e61.exe.gz
controller.windows64.0d25582e35f9b66422ec4a4a24d45c4df6e9c14e11582cb4bcde151c8b966621.exe.gz
controller_installer.windows64.dc8b7dab7904828f60f8b72924dd4c4cc65ede28524d35868e7d5f4ae7968d4f.exe.gz
integrator.windows64.58950155cdea279bc16d10e01c1f9024a738f84c26d7577a9aeddbbbbdd5b99b.exe.gz