show submission running

Prev Next

Displays the total number of malware submissions that are currently running and have not yet completed. You can display up to 100 jobs by default.

Note

The show submission running command is not supported on a Network Security sensor or sensor-enabled integrated appliance.

Syntax

show submission running [limit <number>]

Parameters

limit <number>

(Optional) Displays the specified number of entries that are currently running. A higher number might increase command response time.

Output fields

The following table describes the output fields for the show submission running command. Fields are listed in the approximate order in which they appear in the output.

Field

Description

Submission ID

Specific malware submission job number.

File type

File type that is associated with the malware submission job.

Status

Status of a specific malware submission job that is currently running.

Analysis Object ID

Analysis object job number that is associated with the malware submission.

Analysis Object Name

Analysis object name that is associated with the malware submission job.

Analysis File Type

Analysis file type that is associated with the malware submission job.

Job ID

Job number that is associated with the malware submission.

OS name

Type of guest image profile.

Application name

Type of application.

OS Changes weight

Weight assigned based on a correlation between a set of rules and a set of operating system (OS) change activities detected by the virtual machine (VM) during dynamic analysis.

CNC Match weight

Weight that is assigned by a custom rule that is used for callback detection on a VM during dynamic analysis.

Examples

The following example displays the total number of malware submissions that are currently running and have not yet completed:

hostname # show submission running
Submission ID: 23781
   File type             : url
   Status                : running
      Analysis Object ID      : 17395
      Analysis Object Name    :http://lp.jzip.com/?sysid=102&appid=398&lpid=3828&subid=9575172300&id=52219
      Analysis File Type      : url
            Job ID                 : 12692
            OS name                : win7x64-sp1
            Application name       : Chrome 36.0
            OS Changes weight      : 0
            CNC Match weight       : 0
Submission ID: 23787
   File type             : url
   Status                : running
      Analysis Object ID      : 17396
      Analysis Object Name    : http://www.zara.com/us/en/sale/woman/knitwear-c437626.html
      Analysis File Type      : url
            Job ID                 : 12693
            OS name                : win7x64-sp1
            Application name       : Chrome 36.0
            OS Changes weight      : 0
            CNC Match weight       : 0

User role

Administrator, Monitor, or Analyst.

Command mode

Enable

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Malware Analysis: Release 7.7

  • File Protect: Release 7.7

  • Network Security: Release 7.7

  • Email Security — Server: Release 7.8