Video Screencast Help
Symantec to Separate Into Two Focused, Industry-Leading Technology Companies. Learn more.

SEPM 12.1 Comprehensive Risk Report - Need clarification on results

Created: 19 Nov 2012 • Updated: 09 Feb 2013 | 1 comment
This issue has been solved. See solution.

Good day,

I Would like to know how our IT Department should interprete the following categories under the <Risk Distribution by User name> which is part of the <Comprehensive Risk Report> :

1- System - does it mean a service on the PC was compromised?

2 - No user name - does it mean the Symantec Central Management Console detected risk on the PC while the user was not authenticated to the network?

Regards,

Dave

Comments 1 CommentJump to latest comment

.Brian's picture

1. SEP ran under the SYSTEM account as this has full rights and can act on the virus where a limited admin may not be able to.

2. Yes, no user was logged in. SEP has the option to run is no user is logged in and act on malware accordingly.

Please click the "Mark as solution" link at bottom left on the post that best answers your question. This will benefit admins looking for a solution to the same problem.

SOLUTION