Disclaimer: UDD was not designed to be used for this purpose. UDD is capable of scanning for any device on your network and can fulfill the role of Rogue Device Detection, but such a configuration is non-standard and will not be supported by LANDesk support. This is provided for informational purposes only.
For more information on using and setting up UDD please see these articles:
Break Down of the Scanner for Unmanaged Device Discovery
How to Troubleshoot UDD (Unmanaged Device Discovery)
UDD can be configured to scan your network and identify any devices which are not managed by LANDesk. UDD's primary purpose is to identify devices and provide a mechanism for targeting a LANDesk Agent install to these devices. However, UDD can also identify devices on your network that do not belong. There is no mechanism within UDD to determine if a device is valid or a rogue device - UDD will simply identify it. It will then be up to you to determine if it's a rogue device or not.
If you are performing a UDD scan daily, you can review the UDD pane within LDMS and notice devices which do not belong. This is a manual process. You can also build a custom report or query which reports on UDD discovered devices, and you can configure alerts when devices are reported. Please note, LANDesk support cannot build or design custom reports and alerting for you. If you need this work done you can engage professional services for an estimate.
With reporting and alerting in place, it is still up to you to determine if a device is benign or malicious.