Kaspersky Endpoint Security 12 for Windows

Processing of active threats

25 April 2024

ID 224297

An infected file is considered processed if Kaspersky Endpoint Security disinfected the file or removed the threat as part of scanning the computer for viruses and other malware.

Kaspersky Endpoint Security moves the file to the list of active threats if, for any reason, Kaspersky Endpoint Security failed to perform an action on this file according to the specified application settings while scanning the computer for viruses and other threats.

This situation is possible in the following cases:

  • The scanned file is unavailable (for example, it is located on a network drive or on a removable drive without write privileges).
  • In the Malware Scan task settings, the action on threat detection is set to Inform. Then, when the infected file notification was displayed on the screen, the user selected Ignore.

If there are any unprocessed threats, Kaspersky Endpoint Security changes the icon to Application icon with the "Warning" status.. In the main application window, the threat notification is displayed (see the figure below). In the Kaspersky Security Center console, the status of the computer is changed to CriticalCritical event icon..

How to process a threat in the Administration Console (MMC)

How to process a threat in the Web Console and Cloud Console

How to process a threat in the application interface

Main application window when there are unprocessed threats. The "Security is at risk" message is displayed.

Main application window when a threat is detected

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.