Administration Guides

How to Flag a detection as False Positive



These steps will flag the event as a false positive for the user that was detected.  NOTE: This will not whitelist the event or user, it will increase the user behavior settings for this user to avoid detection of this user rate of file behavior in the future. 

  1. Open Ransomware Defender Icon
  2. Click Active events tab
  3. Click button in Actions column of the active event, Select the Flag as False Positive action menu
  5. Click Submit
  6. Verify event is archived to the Event History
  7. Verify the false positive was registered
  9. Done
© Superna Inc