🌙
 

Subscribe to the Taegis™ XDR Documentation RSS Feed at .

Learn more about RSS readers or RSS browser extensions.

File Details

search process events files


Taegis Endpoint Agents ingest files from endpoints. The File Details view enables you to view information about file type, size, name, YARA rule matches, creation date, and various other metadata of the file.

Viewing File Details

The program hash in process event details is a hyperlink to file details, if the file has been pulled back via Taegis Endpoint Agents.

Process Event Detail File Hyperlink

Process Event Detail File Hyperlink

File information is also available within alerts generated by the File Analysis Detector. From an alert, select More File Details from the File Information section.

The following information is provided in File Details:

File Details from File Analysis Alert

File Details from File Analysis Alert

 

On this page: