Creating Scheduled On-Demand Scans

Prev Next

After enabling on-demand malware scans, you can create up to ten scheduled scans using the Web UI only. The following on-demand global malware scan types are available:

  • Time-based malware scans occur daily, weekly, or monthly, based on your configuration settings

  • Event-based malware scans occur when malware signatures are updated or when the host endpoint boots or reboots.

Ensure that malware detection (Signature and Heuristic Detections) is turned on before you enable or create on-demand scans. See Enabling and Disabling Malware Detection and MalwareGuard for more information.

Important

Only one on-demand scan can run at a time. New scans will not run if a previously scheduled scan is still running.

This section covers how to use the Web UI to schedule time-based and event-based on-demand scans. See the Endpoint Security (HX) REST API Guide for information on using the API to schedule time-based and event-based on-demand scans.

Creating a Time-Based On-Demand Scans
To create a time-based malware scan for all host endpoints:

Important

Your on-demand malware scans are not saved to your Malware Scans policy until you click Save.

  1. From the Admin menu, select Policies to access the Policies page.

  2. In the Policies table, click the Agent Default Policy link to access the Edit Policy page.

  3. Select the Malware Scans tab.

  4. In the Malware Scans section, verify that the Scheduled Scans ON/OFF switch is turned ON.

    UI_Policy_MalScan_Enable.png
  5. In the Malware Scans section, click Create Scanto access the Create Scan window.

    UI_Policy_MalScan_OD_Create.png
  6. In the Scan Name field, enter the name of your scheduled scan. Scan names are restricted to 70 alphanumeric characters or less and can include a combination of dashes, spaces, and underscores.

    UI_Policy_MalScan_Create_Name.png
  7. In the scan event drop-down, Select Time to create a time-based malware scan.

  8. Select the recurrence interval and click Apply. Options include daily, weekly, and monthly.

    UI_Policy_MalScan_OD_Occur.png
  9. Select a date and time when you want your scans to start. Start time is local to the host endpoint. The default time is the local time.

    UI_Policy_MalScan_Create_Date.png
  10. In the Scan will have the following depth section, select the scan depth. Options include Full, Quick Scan, and Active Memory.variables

  11. Click Create to create your on-demand malware scan.

  12. Click Save to save your on-demand malware scan to the Malware Scans policy.

    Policy_MalScans_OD_Modify_Save.png

To create a time-based malware scan for select host sets:

Note

See Creating a Custom Policy for more information about using the Web UI to create a custom policy.

  1. From the Admin menu, select Policies to access the Policies page.

  2. In the Policies table, click the link for the custom policy you want to modify.

  3. Select the Malware Scans tab.

  4. In the Malware Scans section, verify that the Scheduled Scans ON/OFF switch is turned ON.

    UI_Policy_MalScan_Enable.png
  5. In the Malware Scans section, click Create Scanto access the Create Scan window.

    UI_Policy_MalScan_OD_Create.png
  6. In the Scan Name field, enter the name of your scheduled scan. Scan names are restricted to 70 alphanumeric characters or less and can include a combination of dashes, spaces, and underscores.

    UI_Policy_MalScan_Create_Name.png
  7. In the scan event drop-down, Select Time to create a time-based malware scan.

  8. Select the recurrence interval and click Apply. Options include daily, weekly, and monthly.

    UI_Policy_MalScan_OD_Occur.png
  9. Select a date and time when you want your scans to start. Start time is local to the host endpoint. The default time is the local time.

    UI_Policy_MalScan_Create_Date.png
  10. In the Scan will have the following depth section, select the scan depth. Options include Full, Quick Scan, and Active Memory.

  11. Click Create to create your on-demand malware scan.

  12. Click Save to save your on-demand malware scan to the Malware Scans policy.

    Policy_MalScans_OD_Modify_Save.png

    Important

    Your on-demand malware scans are not saved to your Malware Scans policy until you click Save.

Now you can assign host sets to the custom policy and set the policy priority level. See Assigning Host Sets to Agent Policies and Configuring Policy Priority Using the Web UI for more information.

Creating an Event-Based On-Demand Scan
To create an event-based malware scan for all host endpoints:

Important

Your on-demand malware scans are not saved to your Malware Scans policy until you click Save.

  1. From the Admin menu, select Policies to access the Policies page.

  2. In the Policies table, click the Agent Default Policy link to access the Edit Policy page.

  3. Select the Malware Scans tab.

  4. In the Malware Scans section, verify that the Scheduled Scans ON/OFF switch is turned ON.

    UI_Policy_MalScan_Enable.png
  5. In the Malware Scans section, click Create Scan to access the Create Scan window.

    UI_Policy_MalScan_OD_Create.png
  6. In the Scan Name field, enter the name of your scheduled scan. Scan names are restricted to 70 alphanumeric characters or less and can include a combination of dashes, spaces, and underscores.

  7. In the scan event drop-down, Select Event to create an event-based malware scan.

  8. Select the event type. Valid options include:

    • Signature update: This is the default option. Signature update scans start when the agent receives malware signature updates.

    • Boot: Boot scans start when the host endpoint boots or reboots.

    • Scan on USB Insert: Scan on USB Insert automatically scans a USB drive when it is connected to the host. You can use Quick Scan to examine only the files at the root directory level or use Full Scan to examine all files and folders on the drive.

      Important

      To use the Scan on USB Insert option, you must use the Scan On Install toggle on the Malware Scans Policy page to enable the feature.

  9. In the Scan will have the following depth section, select the scan depth. Options include Full, Quick Scan, and Active Memory.

  10. Click Create to create your on-demand malware scan.

  11. Click Save to save your on-demand malware scan to the Malware Scans policy.

To create an event-based malware scan for select host sets:

Note

See Creating a Custom Policy for more information about using the Web UI to create a custom policy.

  1. From the Admin menu, select Policies to access the Policies page.

  2. In the Policies table, click the link for the custom policy you want to modify.

  3. Select the Malware Scans tab.

  4. In the Malware Scans section, verify that the Scheduled Scans ON/OFF switch is turned ON.

    UI_Policy_MalScan_Enable.png
  5. In the Malware Scans section, click Create Scanto access the Create Scan window.

    UI_Policy_MalScan_OD_Create.png
  6. In the Scan Name field, enter the name of your scheduled scan. Scan names are restricted to 70 alphanumeric characters or less and can include a combination of dashes, spaces, and underscores.

  7. In the scan event drop-down, Select Event to create an event-based malware scan.

  8. Select the event type. Valid options include:

    • Signature update: This is the default option. Signature update scans start when the agent receives malware signature updates.

    • Boot: Boot scans start when the host endpoint boots or reboots.

    • Scan on USB Insert: Scan on USB Insert automatically scans a USB drive when it is connected to the host. You can use Quick Scan to examine only the files at the root directory level, or use Full Scan to examine all files and folders on the drive.

      Important

      To use the Scan on USB Insert option, you must use the Scan On Install toggle on the Malware Scans Policy page to enable the feature.

  9. In the Scan will have the following depth section, select the scan depth. Options include Full, Quick Scan, and Active Memory.

  10. Click Create to create your on-demand malware scan.

  11. Click Save to save your on-demand malware scan to the Malware Scans policy.

    Important

    Your on-demand malware scans are not saved to your Malware Scans policy until you click Save.

Now you can assign host sets to the custom policy and set the policy priority level. See Assigning Host Sets to Agent Policies and Configuring Policy Priority Using the Web UI for more information.