Viewing IOC Scan task execution results

To view the IOC Scan task execution results:

  1. Open Kaspersky Security Center Administration Console.
  2. In Kaspersky Security Center Administration Console tree, open the Tasks folder.

    The list of tasks is displayed in the workspace.

  3. Open the settings of the required task in one of the following ways:
    • Double-click the task name.
    • Open the policy context menu and select Properties.
    • Select a task and click Configure task in the right part of the window.

    The Properties: <Task name> window opens.

  4. Select the Results section.
  5. In the Show task results for the device list, select the devices for which you want to view the results of IOC Scan tasks.
  6. To view detailed information about a particular task, double-click it.
  7. To view detailed information about the detected indicator of compromise, click the Show detections card button.

    Detected IOCs card contains information about objects that match the conditions of the processed IOC file, as well as the text of the matched branches or individual conditions from this IOC file.

    Viewing the Detected IOCs card is not available for IOC files, for which no indicators of compromise were detected during scan.

See also

About Autonomous IOC Scan tasks

Configuring user permissions to manage IOC Scan tasks

Configuring Autonomous IOC Scan task

IOC collection export

Page top