Kaspersky Endpoint Agent

Viewing IOC Scan task execution results

November 17, 2023

ID 195119_1

To view the IOC Scan task execution results:

  1. Open Kaspersky Security Center Administration Console.
  2. In Kaspersky Security Center Administration Console tree, open the Tasks folder.

    The list of tasks is displayed in the workspace.

  3. Open the settings of the required task in one of the following ways:
    • Double-click the task name.
    • Open the policy context menu and select Properties.
    • Select a task and click Configure task in the right part of the window.

    The Properties: <Task name> window opens.

  4. Select the Results section.
  5. In the Show task results for the device list, select the devices for which you want to view the results of IOC Scan tasks.
  6. To view detailed information about a particular task, double-click it.
  7. To view detailed information about the detected indicator of compromise, click the Show detections card button.

    Detected IOC card contains information about objects that match the conditions of the processed IOC file, as well as the text of the matched branches or individual conditions from this IOC file.

    Viewing the Detected IOC card is not available for IOC files, for which no indicators of compromise were detected during scan.

See also

Configuring user permissions to manage IOC Scan tasks

Configuring Autonomous IOC Scan task

IOC collection export

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.