Create Exclusion

You can exclude selected items(s) from being detected in the future. You can exclude only icon_antivirusAntivirus detections.

ECA includes a new wizard for exclusion management - you can create an exclusion and apply it to more computers/group(s).

The new Exclusions section contains all detection exclusions, increases their visibility and simplifies their management.

warning

Warning

Use exclusions with caution - they may result in an infected computer.

In ECA you cannot create detection exclusions via Policy. In case your policies contained detection exclusions previously, you can migrate exclusions from a Policy to the Exclusions list. You can still create performance exclusions (exclusions defined by a path) via a Policy.

By default, detection exclusions replace the local existing exclusions list on the managed computers. To keep the existing local exclusions list, you need to apply the Policy setting Allow appending detection exclusions to locally defined list before applying detection exclusions:

allow_appending

Settings

You can exclude one or more detections based on the following Exclusion criteria:

Exact files - Exclude each file by its SHA-1 hash.

Detection - Exclude each file by its detection name.

Path + Detection - Exclude each file by its detection name and path, including file name (e.g. file:///C:/Users/user/AppData/Local/Temp/34e1824e/ggdsfdgfd.pdf.exe).

The recommended option is pre-selected based on the detection type.

Select the check box Resolve matching alerts to automatically resolve the alerts covered by the exclusion.

Optionally, you can add a Comment.

Target

Exclusion is by default applied to user's home group.

To change assignments, click Add Computers or Add Groups and select the target(s) where the exclusion will be applied, or select existing assignment(s) and click Remove Targets.

important

Important

All manageable ESET security products are compatible with detection exclusions, except for the following:

ESET Enterprise Inspector

ESET Virtualization Security

ESET Endpoint for MacOS version 6.8.1 and older.

Detection exclusions will not be applied to incompatible ESET security products and will be ignored on them.

Preview

Allows you to see the overview of created exclusions. Make sure all exclusion settings are correct based on your preferences.

important

Important

After you create the exclusion, you cannot additionally edit it (you can only change assignment or delete exclusion).

Click Finish to create the exclusion.

You can see all the applied exclusions in group details and all the created exclusions in Exclusions.