Getting Started Guide
Automate a VirusTotal Analysis
Add Parsing Detail to the Suspicious Emails Task
1 min
you have now set up a virustotal task to map output from virustotal into your import suspicious emails application next, you set up the parsing detail in the swimlane import suspicious email task that will grab the ip address from the emails that come in and input them into the ip(s) from body field to add parsing detail from the global navigation menu, select integrations and then open the import suspicious emails task on integration/import suspicious emails, click the outputs tab and then expand the create/update records mappings update the body parameter to map to the ip(s) from body field access the ellipsis pulldown menu for the body parameter and select add configuration this adds an additional, configurable mapping to the task select regex from the parse with field dropdown, and then click the pencil icon to access the regex editor within the regex editor, enter the following code in the regular expression and then click ok (\d+\\ \d+\\ \d+\\ \d+) review the mappings and then click save related links configure task input docid\ a18jba9dkqbggtr8d4kjg integrations docid\ tb1tjlesulioaveek1jsg configure task output docid\ ocwbk73t 1mq2bihofc5p create or edit a task docid\ ryxk0zn8kfyu4nr zkwjm