I hope it’s just me but I find the Symantec Endpoint Protection Manager very cumbersome and slow! Some of the most common (and supposedly simple) management tasks an Administrator has to perform are the most difficult to find. There is very little within the UI that is located where I would expect to see it. When I do find it, it takes forever!

One of the most common tasks I have to do is clear a computers “Still Infected” status so it doesn’t mess up my reporting. My personal belief is that this should be handled automatically by the SEP Client & Server, but for whatever reason, it’s not.

Here are the steps necassary to clear the “Still Infected” status:

Open Symantec Endpoint Protection Manager Console. Click "Monitors" in the left menu.
Click the "Logs" tab located at the top.
Select "Computer Status" for Log Type Click "View Log" Note: It is possible to create a new filter that will only display the infected computers. I find that SEPM runs a lot better when doing thins.
Infected computers will appear with a RED diamond on the left. All the clients depicted have green diamonds and are not infected. Click the computer you wish to clear the status on. Click "Clear Infected Status" at the top of the window.

Gregory Strike

Husband, father, IT dude & blogger wrapped up into one good looking package.