View Incidents

The Incidents section allows you to review all incidents related to the operation of Dr.Web (see Figure 17).

viewincidents_zoom50

Figure 17. Incidents

Information on incidents

For each incident in the list the following information is displayed:

Date and time of the incident

Name of the object related to the incident

Email with infected object sender and recipients' addresses

Name of the threat

Performed action

Protocol used to transfer the email

Name of the applied profile

You can configure the display parameters of the incidents list:

1.Right-click the header of the list and click Select columns in the context menu.

2.Select the items to display in the list.

The page can display a limited number of list entries. If the amount of incidents exceeds this limit, you can switch to previous page to view other entries by clicking Next.

Actions on the incidents list

You can specify the time period to review the incidents. Enter the start and the end date of the interval, then click Refresh.

You can use filters and filter the incidents according to certain criteria to customize the way information about them is displayed. Select the filter type in the Filter list, enter the desired value in the Mask field, then click Apply.

warning_green

You can use the wildcard characters "*" and "?" to substitute a sequence of symbols or only one symbol.

You can save the incidents list in a text file. To do this, click Export. Select the format of the file to save the incidents list, then click OK. You can use the HTML or TSV (Tab Separated Values) format.

To sort the incidents list according to different criteria, click the title of the corresponding column.

To refresh the list, click Refresh. The list of incidents is refreshed every time you open Dr.Web Administrator Web Console or the Incidents section. It may take some time to be refreshed. To stop the refreshing process, for example, if you entered wrong filtering parameters, click Cancel.