<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Threat Detail report: Full url after virus detected? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/threat-detail-report-full-url-after-virus-detected/m-p/67855#M39699</link>
    <description>&lt;P&gt;That doesn't appear to work...I still only get the filename in the URL field.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;IMG src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/1120i717BC859E61F3A69/image-size/original?v=mpbl-1&amp;amp;px=-1" border="0" alt="2015-11-09 11_01_11-PA-VM.png" title="2015-11-09 11_01_11-PA-VM.png" /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;IMG src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/1121i92C616D4F6DAD476/image-size/original?v=mpbl-1&amp;amp;px=-1" border="0" alt="2015-11-09 11_01_18-PA-VM.png" title="2015-11-09 11_01_18-PA-VM.png" /&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 09 Nov 2015 16:11:19 GMT</pubDate>
    <dc:creator>DougSuerich</dc:creator>
    <dc:date>2015-11-09T16:11:19Z</dc:date>
    <item>
      <title>Threat Detail report: Full url after virus detected?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-detail-report-full-url-after-virus-detected/m-p/67744#M39660</link>
      <description>&lt;P&gt;Is there a way to see the full URL of the file in the custom “Threat Detail” report, which was blocked by firewall as a threat?&lt;/P&gt;
&lt;P&gt;We were able to retrieve the file name using this report but for our application, we need the full URL as well.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Nov 2015 16:03:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-detail-report-full-url-after-virus-detected/m-p/67744#M39660</guid>
      <dc:creator>DougSuerich</dc:creator>
      <dc:date>2015-11-06T16:03:45Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Detail report: Full url after virus detected?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-detail-report-full-url-after-virus-detected/m-p/67830#M39684</link>
      <description>&lt;P&gt;For threat reports based off the threat logs (detailed), you should be able to add 'URL' as a column visible in the report:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;IMG src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/1114i4A9721A772877435/image-size/original?v=mpbl-1&amp;amp;px=-1" border="0" alt="2015-11-09_09-39-42.png" title="2015-11-09_09-39-42.png" /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In the Threat Summary database URL is not available as this&amp;nbsp;database is preparsed of purely threat data&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;regards&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Mon, 09 Nov 2015 08:43:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-detail-report-full-url-after-virus-detected/m-p/67830#M39684</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2015-11-09T08:43:18Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Detail report: Full url after virus detected?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-detail-report-full-url-after-virus-detected/m-p/67855#M39699</link>
      <description>&lt;P&gt;That doesn't appear to work...I still only get the filename in the URL field.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;IMG src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/1120i717BC859E61F3A69/image-size/original?v=mpbl-1&amp;amp;px=-1" border="0" alt="2015-11-09 11_01_11-PA-VM.png" title="2015-11-09 11_01_11-PA-VM.png" /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;IMG src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/1121i92C616D4F6DAD476/image-size/original?v=mpbl-1&amp;amp;px=-1" border="0" alt="2015-11-09 11_01_18-PA-VM.png" title="2015-11-09 11_01_18-PA-VM.png" /&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Nov 2015 16:11:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-detail-report-full-url-after-virus-detected/m-p/67855#M39699</guid>
      <dc:creator>DougSuerich</dc:creator>
      <dc:date>2015-11-09T16:11:19Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Detail report: Full url after virus detected?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-detail-report-full-url-after-virus-detected/m-p/67857#M39700</link>
      <description>&lt;P&gt;Add destination address also to the report.&lt;/P&gt;
&lt;P&gt;And when you have destination address then go to URL log and search with filter below (change ip to your threat source one).&lt;/P&gt;
&lt;P&gt;( addr in 1.1.1.1 )&lt;/P&gt;
&lt;P&gt;Any result there?&lt;/P&gt;
&lt;P&gt;Maybe this threat is downloaded from ip address not url.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Nov 2015 16:46:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-detail-report-full-url-after-virus-detected/m-p/67857#M39700</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2015-11-09T16:46:41Z</dc:date>
    </item>
  </channel>
</rss>

