When an employee reports a potentially malicious email, it is forwarded to your designated forwarding address. The reported email will appear in the associated inbox as an attachment in EML format. Follow these steps to access the EML file:
Steps to Access the EML File
Open the inbox where the reported email was forwarded.
Locate the reported email. It will include the EML file as an attachment.
Download the EML file attachment directly from the email.
Avoid clicking on or interacting with any links within the reported email itself.
Save the EML file to a secure folder for analysis.
Important Note
DO NOT download or interact with the reported email body (the email file itself). Doing so can potentially alter critical components of the email, such as metadata or headers, which are vital for analysis and proper threat identification. Always download the attached EML file instead.
AVOID THE FOLLOWING DOWNLOAD OPTION