Falcon ‐ On‐demand scans - mluchettii/internship-portfolio GitHub Wiki

Table of Contents

Create a new scan

In the On-demand scans section, create a new scan.

I configured the scan to begin immediately, scanning three Windows hosts, and set it to scan the user's Downloads folder.

The Windows 10 virtual machine's Falcon sensor notifies me that the scan has started.

The scan has completed and suspicious files were detected.

Back on the scans page, I can see the details of the completed scan, showing that three files have been quarantined. I clicked "See full details."

VirusTotal hash investigation

Here, I can manage what to do to each file. I chose to investigate the hash on VirusTotal.

Again, VirusTotal found a matching hash and classifies the file as a trojan.