Go to Analyze > Threat Feed.Click a link in the Subject column.
This URL appeared in 1 message with the same From Domain/Email Source IP and Subject.The failure sample contains several URLs. This one was identified as a threat, and is the same one that appears in the Threat Feed list. You can also see that the message did not pass SPF or DMARC, and did not have a DKIM signature.