Procedure
- Go to .
- Optionally, filter the result set by
specifying search criteria.
-
File SHA1
-
Period
When specifying a period, Deep Discovery Web Inspector dynamically filters the results.When specifying a file SHA1, click on the Search (
) icon or press
Enter to filter the results.All detections matching the search criteria appear. -
- View the results.HeaderDescriptionFile SHA1View the file SHA1s that Deep Discovery Web Inspector detected as malicious or suspicious objects.Threat NameView the threat name of the discovered suspicious file.DetectionsView the number of detections with malicious or suspicious characteristics for the selected object.High RiskView the number of high risk detections for the selected object. These are detections with malicious characteristics.Medium RiskView the number of medium risk detections for the selected object. These are detections with characteristics that are most likely malicious.Low RiskView the number of low risk detections for the selected object. These are detections with suspicious characteristics.Potential ThreatView the number of potential threat risk detections for the selected object. These are detections for sample submission to Virtual Analyzer.User Defined RiskView the number of detections for user-defined objects. These detections might include the following:
Untrusted Server Certificate
or user-defined policy.Latest DetectionView the date and time for the most recent occurrence of the malicious or suspicious object detected in Deep Discovery Web Inspector. - Under Detections,
click on the number to view more detailed information about detections for
that file.
The All Detections screen opens with the results filtered for that file SHA1.
Next steps
After viewing file detections, you
can export the results by clicking on Export
All.
