Kaspersky Industrial CyberSecurity Endpoint Detection and Response

Preventing a file execution from the alert details

September 9, 2022

ID 231355

File execution prevention rules are applied to the device on which alert occurred if an active Kaspersky Endpoint Agent policy for Kaspersky Industrial CyberSecurity Endpoint Detection and Response is applied to this device. If the device, on which the alert occurred, is not managed by an active policy, the Execution prevention rule will not be created.

To prevent file execution from the alert details:

  1. Open the alert details.
  2. In the File section click the Prevent execution button.

The file execution will be prevented. Execution prevention rule will be added to the policy for the group the device belongs to.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.