show file-analysis events

Prev Next

Displays the file analysis jobs with events and includes event information such as the event's type, occurrence time, name, match type, and so on. The malware records are listed in descending order by malware ID. For more information, see File Protect User Guide.

Syntax

show file-analysis events

Parameters

None

Example

The following example shows one of the file analysis jobs returned by this command.

hostname > show file-analysis events
Malware ID 308001
    Analysis Type:             sandbox
    URL:                       file:5650.file-51.pdf
    Analysis Timeout:          240
    Analysis Priority:         normal
    Force:                     false
    Profile Name:           
    Profile ID:                  
    Md5Sum:                    d60e9d9d44b3a912955ff563e2a22986
    State:                     done
    Status:                    Aborted by user
    Submitted Time:            2014-09-26 11:06:49 UTC
    Run End Time:              2014-09-26 11:06:52 UTC
    IM:                        NO
    Number of Events:          0
    Children Malware ID(s):    -
    Parent Malware ID:         -
    State:                     done
    Status:                    Aborted by user
    Submitted Time:            2014-09-17 04:00:05 UTC
    Run End Time:              2014-09-17 04:00:07 UTC
    IM:                        NO
    Number of Events:          0
    Children Malware ID(s):    -
    Parent Malware ID:         590
  Event 273821:
   Occurrence Time            : 2014-09-26 11:06:53 UTC  
   Event Type                 : checksum-match
   Analysis Type              : Malware
   Trace ID                   : 305976
   Malware ID                 : 305976
   Original Malware ID        : 0
   Name                       : Pdf.Exploit.CVE_2010_
   Match Type                 : av-match  
   EDP URL                    : https//abc.xyc.com/nnn.ppp?sname=Pdf.Exploit.CVE_2020_

User role

Monitor, Analyst, Operator, or Admin

Command mode

Standard

Supported appliances

Command deprecated in File Protect Release 7.5.0.