Comodo Help
Find the desired product help
Comodo Internet Security

Comodo Internet Security

Version 6.3

English

Print Help Download Help
General Tasks – Introduction > View CIS Logs > Antivirus Logs > Filtering Antivirus Logs
  • Introduction To Comodo Internet Security
    • Special Features
    • System Requirements
    • Installation
      • CIS Premium – Installation
      • CIS Pro - Installation And Activation
      • CIS Complete - Installation And Activation
      • Activating CIS Pro/Complete Services After Installation
        • Activating Your License
        • Activating Your Guarantee Coverage
        • Renewal Or Upgrading Your License
    • Starting Comodo Internet Security
    • The Main Interface
      • The Home Screen
      • The Tasks Interface
      • The Widget
      • The System Tray Icon
    • Understanding Security Alerts
  • General Tasks – Introduction
    • Scan And Clean Your Computer
      • Run A Quick Scan
      • Run A Full Computer Scan
      • Run A Rating Scan
      • Run A Custom Scan
        • Scan A Folder
        • Scan A File
        • Create, Schedule And Run A Custom Scan
    • Instantly Scan Files And Folders
    • Processing Infected Files
    • Manage Virus Database And Program Updates
    • Manage Quarantined Items
    • View CIS Logs
      • Antivirus Logs
        • Filtering Antivirus Logs
      • Firewall Logs
        • Filtering Firewall Logs
      • Defense+ Logs
        • Filtering Defense+ Logs
      • Alerts Logs
        • Filtering Alerts Displayed Logs
      • Tasks
        • Filtering Tasks Launched Logs
      • Configuration Changes
        • Filtering Configuration Changes Logs
    • Manage CIS Tasks
    • View Active Internet Connections
    • View Active Process List
  • Firewall Tasks – Introduction
    • Allow Or Block Internet Access To Applications Selectively
    • Stealth Your Computer Ports
    • Manage Network Connections
    • Stop All Network Activities
    • Advanced Firewall Settings
  • Sandbox Tasks – Introduction
    • The Virtual Kiosk
      • Starting The Virtual Kiosk
      • The Main Interface
      • Running Browsers Inside The Virtual Kiosk
      • Opening Files And Running Applications Inside The Virtual Kiosk
      • Configuring The Virtual Kiosk
      • Closing The Virtual Kiosk
    • Run An Application In The Sandbox
    • Reset The Sandbox
  • Advanced Tasks – Introduction
    • Create A Rescue Disk
      • Downloading And Burning Comodo Rescue Disk
    • Remove Deeply Hidden Malware
    • Submit Files
    • Identify And Kill Unsafe Running Processes
  • Advanced Settings
    • General Settings
      • Customize User Interface
      • Configure Program And Virus Database Updates
      • Log Settings
      • Manage CIS Configurations
        • Comodo Preset Configurations
        • Importing/Exporting And Managing Personal Configurations
    • Security Settings
      • Antivirus Settings
        • Real-time Scanner Settings
        • Scan Profiles
        • Exclusions
      • Defense+ Settings
        • HIPS Behaviour Settings
        • Active HIPS Rules
        • HIPS Rule Sets
        • Protected Objects
          • Protected Files
          • Blocked Files
          • Protected Registry Keys
          • Protected COM Interfaces
        • Behavior Blocker
          • The Sandbox - An Overview
            • Unknown Files - The Auto - Sandboxing And Scanning Processes
        • Configure The Sandbox
      • Firewall Settings
        • Firewall Behavior Settings
        • Application Rules
        • Global Rules
        • Firewall Rule Sets
        • Network Zones
          • Network Zones
          • Blocked Zones
        • Port Sets
      • Manage File Rating
        • File Rating Settings
        • Trusted Files
        • Unrecognized Files
        • Submitted Files
        • Trusted Vendors List
  • Comodo GeekBuddy
    • Overview Of Services
    • Activation Of Service
    • Launching The Client And Using The Service
    • Accepting Remote Desktop Requests
    • Chat History
    • Using Issue Tracker
    • Uninstalling Comodo GeekBuddy
  • TrustConnect Overview
  • Comodo Dragon
  • Comodo BackUp
  • Appendix 1 CIS How To... Tutorials
    • Enabling / Disabling Security Components Easily
    • Setting Up The Firewall For Maximum Security And Usability
    • Blocking Internet Access While Allowing Local Area Network (LAN) Access
    • Setting Up The HIPS For Maximum Security And Usability
    • Setting Up The Behavior Blocker For Maximum Security And Usability
    • Password Protect Your CIS Settings
    • Reset Forgotten Password (Advanced)
    • Running An Instant Antivirus Scan On Selected Items
    • Creating An Antivirus Scanning Schedule
    • Running Untrusted Programs Inside Sandbox
    • Running Browsers Inside Sandbox
    • Running Untrusted Programs Inside Virtual Kiosk
    • Running Browsers Inside The Virtual Kiosk
    • Restoring Incorrectly Quarantined Item(s)
    • Submitting Quarantined Items To Comodo For Analysis
    • Enabling File Sharing Applications Like BitTorrent And Emule
    • Blocking Any Downloads Of A Specific File Type
    • Disabling Behavior Blocker And Auto-Sandboxing On A Per-application Basis
    • Switching Between Complete CIS Suite And Individual Components (just AV Or FW)
    • Switch Off Automatic Antivirus And Software Updates
    • Suppressing CIS Alerts Temporarily While Playing Games
    • Renewing Your License
  • Appendix 2 - Comodo Secure DNS Service
    • Router - Manually Enabling Or Disabling Comodo Secure DNS Service
    • Windows XP - Manually Enabling Or Disabling Comodo Secure DNS Service
    • Windows 7 / Vista - Manually Enabling Or Disabling Comodo Secure DNS Service
  • Appendix 3 - Glossary Of Terms
  • About Comodo Security Solutions

Filtering Antivirus Logs


Comodo Internet Security allows you to create custom views of all logged events according to user defined criteria. You can use the following types of filters:

  • Preset Time Filters
  • Advanced Filters

Preset Time Filters:


Clicking on the handle at the bottom enables you to filter the logs for a selected  time period:



  • Today - Displays all logged events for today.
  • Current Week - Displays all logged events during the current week. (The current week is calculated from the Sunday to Saturday that holds the current date.)
  • Current Month - Displays all logged events during the month that holds the current date.
  • Entire Period - Displays every event logged since Comodo Internet Security was installed. (If you have cleared the log history since installation, this option shows all logs created since that clearance).
  • Custom Filter – Enables you to select a custom period by choosing the 'From' and 'To' dates under 'Please Select Period'

Advanced Filters


Having chosen a preset time filter you can further refine the displayed events according to specific filters. Following are available filters for Antivirus logs and their meanings:

  • Action - Displays events according to the response (or action taken) by the Antivirus
  • Location - Displays only the events logged from a specific location
  • Malware Name - Displays only the events logged corresponding to a specific malware
  • Status - Displays the events according to the status after the action taken. It can be either 'Success' or 'Fail'


To configure Advanced Filters for Antivirus events


  1. Click the funnel button  from the title bar. The Advanced Filter interface for AV events will open

  2. Select the filter from the 'Advanced Filter' drop-down and click 'Add' to apply the filter.




You have 4 categories of filters that you can add. Each of these categories can be further refined by either selecting or deselecting specific filter parameters or by the user typing a filter string in the field provided. You can add and configure any number of filters in the 'Advanced Filter' dialog.

Following are the options available in the 'Advanced Filter' drop-down:

  1. Action: The 'Action' option allows you to filter the entries based on the actions taken by CIS against the detected threat.Selecting the 'Action' option displays a drop down field and a set of specific filter parameters that can be selected or deselected.




  1. Select 'Equal' or 'Not Equal' option from the drop down. 'Not Equal' will invert your selected choice.

  2. Now select the checkboxes of the specific filter parameters to refine your search. The parameter available are:

  • Quarantine: Displays events where the user chose to quarantine a file
  • Remove: Displays events where the user chose to delete an item
  • Ignore: Displays events where the user chose to ignore an item
  • Detect: Displays events for detection of a malware
  • Ask: Displays events when user was asked by alert concerning some Defense+, Firewall or Antivirus event
  • Restore: Displays events of the applications that were quarantined and restored
  • Block: Displays events of the applications that were blocked

For example, if you checked the 'Quarantine' box then selected 'Not Equal', you would see only those Events where the Quarantine Action was not selected at the virus notification alert.

  1. Location: The 'Location' option enables you to filter the log entries related to events logged from a specific location. Selecting the 'Location' option displays a drop-down field and text entry field.



  1. Select 'Contains' or 'Does Not Contain' option from the drop-down field.

  2. Enter the text or word that needs to be filtered.

For example, if you select 'Contains' option from the drop-down field and enter the phrase 'C:\Samples\' in the text field, then all events containing the entry 'C:\Samples\' in the Location field will be displayed. If you select 'Does Not Contain' option from the drop-down field and enter the phrase 'C:\Samples\' in the text field, then all events that do not have the entry 'C:\Samples\' will be displayed.

  1. Malware Name: The 'Malware Name' option enables you to filter the log entries related to specific malware. Selecting the 'Malware Name' option displays a drop-down field and text entry field.




  1. Select 'Contains' or 'Does Not Contain' option from the drop-down field.

  2. Enter the text in the name of the malware that needs to be filtered.

For example, if you select 'Contains' option from the drop-down field and enter the phrase 'bluto-force' in the text field, then all events containing the entry 'bluto-force' in the Malware Name field will be displayed. If you select 'Does Not Contain' option from the drop-down field and enter the phrase 'bluto-force' in the text field, then all events that do not have the entry 'bluto-force' in the 'Malware Name' field will be displayed.

  1. Status: The 'Status' option allows you to filter the log entries based on the success or failure of the action taken against the threat by CIS. Selecting the 'Status' option displays a drop-down field and a set of specific filter parameters that can be selected or deselected.




  1. Select 'Equal' or 'Not Equal' option from the drop-down field. 'Not Equal' will invert your selected choice.

  2. Now select the checkboxes of the specific filter parameters to refine your search. The parameter available are:

  • Success: Displays Events that successfully executed (for example, the malware was successfully quarantined)
  • Failure: Displays Events that failed to execute (for example, the database malware was not disinfected)

Note: More than one filter can be added in the 'Advanced Filter' pane. After adding one filter type, select the next filter type and click 'Add'. You can also remove a filter type by clicking the 'X' button at the top right of the filter pane.

 


  • Click 'Apply' for the filters to be applied to the Antivirus log viewer. Only those entries selected based on your set filter criteria will be displayed in the log viewer. 
     
Our Products
  • Free Antivirus
  • Free Internet Security
  • Website Malware Removal
  • Free Anti-Malware
  • Anti-Spam (Free Trial)
  • Windows Antivirus
  • Antivirus for Windows 7
  • Antivirus for Windows 8
  • Antivirus for Windows 10
  • Antivirus for MAC
  • Antivirus for Linux
  • Free Endpoint Security
  • Free ModSecurity
  • Free RMM
  • Free Website Malware Scanner
  • Free Device Manager for Android
  • Free Demo
  • Network Security
  • Endpoint Protection
  • Antivirus for Android
  • Comodo Antivirus
  • Wordpress Security
Cheap CDN
  • Bootstrap CDN
  • Semantic UI CDN
  • Jquery CDN
  • CDN Plans
  • CDN
  • Free CDN
Enterprise
  • Patch Management Software
  • Patch Manager
  • Service Desk
  • Website Down
  • Endpoint Protection Solutions
  • Website Security Check
  • Remote Monitoring and Management
  • Website Security
  • Device Manager
  • ITSM
  • CRM
  • MSP
  • Android Device Manager
  • MDR Services
  • Managed IT Support Services
  • Free EDR
Free SSL Certificate
Support Partners Terms and Conditions Privacy Policy

© Comodo Group, Inc. 2025. All rights reserved.