Kaspersky Embedded Systems Security 3.x

Default On-Demand Scan tasks settings

October 25, 2023

ID 180020

By default On-Demand Scan tasks have the settings described in the table below. You can configure local system and custom On-Demand Scan tasks.

Default On-Demand Scan tasks settings

Setting

Default value

Description

Scan scope

Applied in local system and custom tasks:

  • Scan at Operating System Startup: the entire protected device, excluding shared folders and autorun objects.
  • Critical Areas Scan: the entire protected device, excluding shared folders and certain operating system files.
  • On-Demand Scan (custom tasks): the entire protected device.

You can change the scan scope. The scan scope cannot be configured for the Quarantine Scan and Application Integrity Control local system tasks.

The Scan at Operating System Startup task is created automatically after installation. By default, the Notify only mode is applied. In this case, after you deploy Kaspersky Embedded Systems Security for Windows on the devices, you can enable the Scan at Operating System Startup task if no issues with system services were discovered during scan. If the application detects critical system services as infected or probably infected objects, the Notify only mode gives you time to figure out the reason and solve the issue. If the application applies the Perform recommended action mode, which calls the Disinfect. Remove, if disinfection fails action. Disinfection or removal of the system files may result in critical issues with operating system startup.

Security settings

Common settings for the entire scan scope correspond to the Recommended security level.

For nodes selected in the protected device's file resource list or tree, you can:

  • Select a different predefined security level
  • Manually change security settings

You can save a group of security settings for a selected node as a template to use later for a different node.

Use heuristic analyzer

It is used with the Medium analysis level for Critical Areas Scan, Scan at Operating System Startup, and custom tasks.

It is used with the Deep analysis level for the Quarantine Scan task.

Heuristic Analyzer can be enabled or disabled and the analysis level can be configured. The Quarantine Scan task analysis level cannot be configured.

Heuristic Analyzer is not used in the Application Integrity Control and Baseline File Integrity Monitor tasks.

Apply Trusted Zone

Applied (Not applied for Quarantine Scan task)

 

General list of exclusions that can be used in selected tasks.

Use KSN for scanning

Applied.

You can improve your device's protection using the Kaspersky Security Network cloud service infrastructure.

Settings to start a task with specific permissions

The task is started under a system account.

You can edit settings to start tasks with specific account permissions for all system and custom On-Demand Scan tasks, except Quarantine Scan and Application Integrity Control tasks.

Perform task in background mode (low priority)

Not applied

You can configure the priority level of On-Demand Scan tasks.

Task start schedule

Applied in local system tasks:

  • Scan at Operating System Startup - At application launch
  • Critical Areas Scan - Weekly
  • Quarantine Scan - After application database update
  • Application Integrity Control - Daily

Not used in newly created custom tasks.

You can configure the settings for scheduled task startup.

Registering scan execution and updating the device protection status

The device protection status is updated weekly after the Critical Areas Scan is performed.

You can configure settings for registering the execution of the Critical Areas Scan in the following ways:

  • Edit the settings of the Critical Areas Scan task start schedule.
  • Edit the scan scope of the Critical Areas Scan task.
  • Create custom On-Demand Scan tasks.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.