You can trigger automatic responses based on a specific file hash. This allows you to automate remediation for known malicious files and reduces false positives from shared file names.
Click Menu → Automation → Automatic Responses.
Click New Response.
Select ePO notification events from the Event Group list.
Select Threat from the Event Type list, then click Next.
Select Target File Hash from the Available Filters list.
Enter the hash value in the comparison field.
Complete the wizard steps to define your response action.
Click Save.