The Detection & Response > Noteworthy Events / Detection screen
lists all of the Noteworthy Events that occurred during the past 60 days.
Worry-Free Services creates a Noteworthy Event when a threat detection correlates
to one or
more potentially suspicious objects. A Noteworthy Event contains information about
the target
endpoint, Analysis Chain, First Observed Object, and Noteworthy Object(s).
TipYou can configure Remote Manager to send email notifications when Noteworthy Events occur.
For more information see, Configuring Noteworthy Event
notifications.
|
The following table outlines the tasks available for Noteworthy
Events.
Task
|
Description
|
||
Filter the list
|
You can filter events by period or customer.
|
||
Search Event ID
|
You can search for Noteworthy Events using the event ID.
|
||
Change the event status
|
Select events from the list, click Mark
As, and select one of the following statuses:
|
||
Download reports
|
|
||
View the Analysis Chain
|
Click the link in the Event ID column to view more details about the event
and perform further investigation on Noteworthy Object.
For more information, see Analysis Chains.
|