Acquiring quarantined files

Prev Next

You can use the Endpoint Security (HX) Web UI or the API to acquire quarantined files from the quarantine area of an endpoint. You cannot use the CLI to acquire them.

To acquire quarantined files using the Web UI:
  1. Select Hosts at the top of the Endpoint Security (HX) Web UI page.

  2. Verify that the Hosts with Alerts tab is selected.

  3. In the grid, click the expand icon (ExpandIcon.png) next to the host for which you want alert detail information.

    The host alert details page appears. Detailed information about the alerts is shown on the Alerts tab on this page. Information about quarantined files is shown on the Quarantines tab on this page.

  4. Select the Quarantines tabQuarantines tab. The quarantined files are listed.

    Hosts_DetailQuar.png
  5. Click the QuarTabOptBtn.pngbutton associated with the file you want to acquire and select Acquire File.