Queries Virusscan Enterprise Summary of detection sources by first occurrence
To pick up virus infected websites so I can have them blocked.
I'm trying to come up with a similar query in EPO 4.0 but although I can identify the same events and filter this down for ones that were just from Http that should show this info, even when I add in every single VSE field there is nothing in the threat source URL where Threat Source Host Name is equal to http.
Has anyone done this or can anyone suggest which fields I'm missing. Or perhaps has someone found that the fields in question are not actually available in 4.0.