McAfee TEECDE-AA-AA Evaluator Guide - Page 41

Threat Name, Comparison, Does not contain, Value, Private Group, My Groups, Public Group

Page 41 highlights

Using Dashboards and Queries • Click Threat Name and set Comparison to Does not contain. For Value, type Cookie. 7 Click Run. 8 After the results appear, click Save. For the query name, type VSE: All PUP Detections, then click Save. You can save a custom query either in an existing group or a new group. When saving it to a new group, you have the choice of storing it under a Private Group under My Groups, or a Public Group under Shared Groups. Queries stored in a Private Group are only visible to the administrator, under whose login it was created. Those queries stored in a Shared Group are visible under all ePO administrative accounts, so they can be shared with others. McAfee Total Protection for Endpoint Lab Evaluation Guide 41

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44

Click
Threat Name
and set
Comparison
to
Does not contain
. For
Value
, type
Cookie
.
7
Click
Run
.
8
After the results appear, click
Save
. For the query name, type
VSE: All PUP Detections
, then
click
Save
.
You can save a custom query either in an existing group or a new group. When saving it to a
new group, you have the choice of storing it under a
Private Group
under
My Groups
, or a
Public Group
under
Shared Groups
. Queries stored in a Private Group are only visible to the
administrator, under whose login it was created. Those queries stored in a Shared Group are
visible under all ePO administrative accounts, so they can be shared with others.
Using Dashboards and Queries
41
McAfee Total Protection for Endpoint Lab Evaluation Guide