Details

The Details screen displays the following file information and information for the associated process, port, or module.

Field

Description

Original File Name

Displays the name of the detected file.

File Path

Displays the directory in which the detected file is located.

Size

Displays the file size.

Attribute

Displays the file attribute.

  • R: Read-only file

  • A: Archive file

  • S: System file

  • H: Hidden file

  • I: Not content indexed file

Signer

Displays the person or company that digitally signed the file.

Product

Displays the product associated with the file.

Product Version

Displays the version of the product associated with the file.

Company Name

Displays the company that published the file.

Hidden File

Indicates whether a file is hidden (Yes) or not (No).

SHA-1

Displays the file SHA-1 hash value.

Details - Process Tab

Field

Description

PID

Displays the ID of the process.

Parent PID

Displays the ID of the parent process.

Command Line

Displays the command that executes the process.

Details - Autorun Tab

Field

Description

ID

Displays the ID of the process.

Location

Displays the registry key location for the autorun process.

Process Name

Displays the name of the process.

Command Line

Displays the command that executes the process.

Type

Displays the autorun process type.

Details - Network Tab

Field

Description

PID

Displays the ID of the process.

Protocol

Displays the protocol type.

Local Domain

Displays the local domain of the endpoint on which the detection occurred.

Local Address

Displays the IP address of the source endpoint.

Local Port

Displays the port number on the source endpoint.

Remote Domain

Displays the domain of the destination endpoint.

Remote Address

Displays the IP address of the destination endpoint.

Remote Port

Displays the port number on the destination endpoint.

State

Displays the port status.

Details - Module Tab

Field

Description

File Path

Displays the directory in which the detected file is located.

Company

Displays the company that published the file.

Signer

Displays the person or company that digitally signed the file.

Description

Displays additional information about the file.

Details - Details Tab

Field

Description

Engine

Displays the scanning engine to which the rule belongs.

Rule

Displays the rule ID.

Description

Displays basic rule information.