Threat Report Format and Structure
The output generated is in csv format. The threat report file name is in the format Votiro_Threat_Report_<From date>_<To date>.csv, where <From date> and <To date> specify the date range selected by the user.
The header at the beginning of the threat report contains the following fields:
n | Date - Date of generated data, or <start date>-<end date> |
n | Time - Time-frame period of the generated data (based on customer local time) |
n | Files request - Number of files requested to be checked in the time-frame period |
n | Files Sanitized - Number of files sanitized in the time-frame period |
n | Total Threats Identified - Number of threats identified in the time-frame period |
The body of the threat report contains the following fields:
Field | Value | Multi-values | Example |
Timestamp | DD-MMM-YYYY hh:mm:ss ”hrs” *Based on customer local time (Same as the Management dashboard time) | Not supported | 18Mar2022 18:49:29hrs |
Filename | Parent file name | Not supported | VotiroDemo.zip |
File type | Parent file type | Not supported | Zip File |
Threat | List of the threats that have been identified on the Parent and Children *Should be sorted as the file tree from the Management File info | Supported | Suspicious Unknown File Suspicious Unknown File |
Info | List of all threats and the file names associated with these threats | Supported | Suspicious Unknown File detected in VotiroDemo1.shx Suspicious Unknown File detected in VotiroDemo2.shp |
Status | Parent file status result | Not supported | Status options: Infected, Clean, Error, Unknown |
File hash | Parent file hash | Not supported | 7cd6773d80d4cdf28671d9e3a095 c66fdc20feaac15c4e075 4748dbd2541a7e9 |
Comments
0 comments
Please sign in to leave a comment.