The Details screen displays the following file information and information for the associated process, port, or module.
Field |
Description |
---|---|
Original File Name |
Displays the name of the detected file. |
File Path |
Displays the directory in which the detected file is located. |
Size |
Displays the file size. |
Attribute |
Displays the file attribute.
|
Signer |
Displays the person or company that digitally signed the file. |
Product |
Displays the product associated with the file. |
Product Version |
Displays the version of the product associated with the file. |
Company Name |
Displays the company that published the file. |
Hidden File |
Indicates whether a file is hidden (Yes) or not (No). |
SHA-1 |
Displays the file SHA-1 hash value. |
Field |
Description |
---|---|
PID |
Displays the ID of the process. |
Parent PID |
Displays the ID of the parent process. |
Command Line |
Displays the command that executes the process. |
Field |
Description |
---|---|
ID |
Displays the ID of the process. |
Location |
Displays the registry key location for the autorun process. |
Process Name |
Displays the name of the process. |
Command Line |
Displays the command that executes the process. |
Type |
Displays the autorun process type. |
Field |
Description |
---|---|
PID |
Displays the ID of the process. |
Protocol |
Displays the protocol type. |
Local Domain |
Displays the local domain of the endpoint on which the detection occurred. |
Local Address |
Displays the IP address of the source endpoint. |
Local Port |
Displays the port number on the source endpoint. |
Remote Domain |
Displays the domain of the destination endpoint. |
Remote Address |
Displays the IP address of the destination endpoint. |
Remote Port |
Displays the port number on the destination endpoint. |
State |
Displays the port status. |
Field |
Description |
---|---|
File Path |
Displays the directory in which the detected file is located. |
Company |
Displays the company that published the file. |
Signer |
Displays the person or company that digitally signed the file. |
Description |
Displays additional information about the file. |
Field |
Description |
---|---|
Engine |
Displays the scanning engine to which the rule belongs. |
Rule |
Displays the rule ID. |
Description |
Displays basic rule information. |