The Hosts section displays the following information about hosts on which the TAA (IOA) rule was triggered:
Host name—IP address or domain name of the computer where the event occurred. Clicking the link opens the Threat Hunting section with the search condition containing the ID of the selected rule and the selected host.
Number of events—Number of events that occurred on the host.
Find events. Clicking the link opens the Threat Hunting section with the search condition containing the ID of the selected rule.