show email-analysis url

Prev Next

Displays the number of URLs submitted, analyzed, identified as malicious, and so on.

This command displays cumulative statistics such as the total number of URLs that were submitted for analysis, total number of URLs that were detected as malicious, and total number of events that were detected. It also shows the total number of URLs with each system status type.

By default, the Email Security — Server appliance displays the detailed statistics for email URLs for the last 24 hours.

Syntax

show email-analysis url

Parameters

None

Output fields

The following table describes the output fields for the show email-analysis url command. Fields are listed in the approximate order in which they appear in the output.

Field

Description

Total URLs Submitted

Total number of URLs submitted for analysis.

Objects Analyzed

Total number of URLs that have been analyzed.

Objects identified as Malicious

Total number of URLs that were detected as malicious.

Total events

Total number of events that were detected.

Objects break down by system status

Total number of URLs with each system status type. This field also displays the number of URLs that were submitted to the virtual machine for dynamic analysis.

Example

The following example displays information about email URLs.

hostname # show email-analysis url
URLs Statistics:
Stats Time - Start Time: 2018/02/04 14:00:00   End Time: 2018/02/05 14:03:59

Total URLs Submitted       :   12042
 Objects Analyzed                         :   12042
  Objects identified as Malicious          :     494
     - VM verified                         :       0
     - Duplicate to VM verified            :       0
     - Known checksum match                :     494

Total events                               :     494
  checksum-match     events                :     494

Objects break down by system status, Total :   12042
  Submitted for VM analysis                :     494
  Submit Disabled                          :   11548

User role

Admin, Analyst, Operator, or Monitor

Command mode

Enable

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Email Security — Server: Before Release 7.5. The command output was enhanced to display the time period in Release 8.1.