Views:
Details panels display information and available actions for the selected object. The information and actions displayed vary depending on the object type and object rating. There is a details panel type for each of the following object types: email message, file, process, URL, and registry value.
Note
Note
You must properly configure Cloud App Security before being able to correlate email message information.
The following table outlines information and actions available on details panels.
Item
Description
Object name
Displays the object type icon and object name
Object rating
Displays the threat rating icon and the threat rating
Objects are classified using the following ratings:
  • Normal: Not known to pose any threat
  • Unrated: The object has not yet been rated
  • Suspicious: Exhibits behaviors that are similar to known threats
  • Malicious: Matches a known threat
Object details
Displays information about the selected object
Threat Investigation displays one of the following details sections depending on the object type:
  • File Details
  • URL Details
  • Process Details
  • Registry Details
  • Message Details
    Note
    Note
    The Message Details section contains a special set of email specific information and available actions.
    For more information, see Message Details.
Available actions
The availability of the following actions depends on the type and threat rating of the selected object. If multiple actions are available click up-carrot-icon.jpg next to Actions.
  • Click Block Object to add an object to the suspicious object list.
  • Click Quick Assessment to create a Quick Assessment using attributes of the selected object as criteria.
    For more information about Quick Assessments, see Creating a Quick Endpoint Assessment.