Endpoint Central provides a streamlined and uncomplicated process for resolving the incidents detected by the various detection engines. This allows you to review flagged items before action is taken and lets you identify and exclude false positives.The incidents can be marked as True Positive or False Positive after analyzing whether the incident detected was a malicious attack or if the software had mistakenly flagged a harmless file or program as malignant.
The threats identified by the detection engines can fall into two categories: they are either genuine threats or harmless files mistakenly flagged as malware. They have to be categorized accordingly as True Positive or False Positive to help improve the accuracy of the Next Gen Antivirus's detection of malicious threats.
To remediate an incident, please follow the steps outlined below:
Select Action and choose the Mark as True Positive option, to mark it as True Positive, or choose the Mark as False Positive option, to mark it as False Positive, from the drop-down menu.

The incidents marked as True Positive can be resolved in the following ways:
Note: The restoration process may take a few minutes depending on the size of the affected files.

The incidents marked as False Positive can be resolved by adding them to the Exclusion List.
