Virus Reports


 

The Virus Reports section includes reports that show details on viruses that have been identified by the firewall. These reports help in identifying the top viruses and worms that have affected the network, analyze the extent of damage, and also track the source of the attack.

 

The Show bar lets you choose the level of detail in the reports. By default, the top five values are shown. To show more than ten values, the report uses only tables. Click on the pdf export icon to export this report to PDF. Click on the csv export icon to export this report to CSV format (comma separated values).


Below each graph click the Hide Table link to hide the table. Click the Show Table link to see the table again

 

The Top Virus Sending Hosts report shows the top source IP addresses or host names from which viruses have been sent, along with the protocol used to send the virus. The Top Virus Affected Hosts report shows the top destination IP addresses or host names that have been affected by viruses, along with the protocol that was used to receive the virus.

 

Drill down from these graphs to see the following details:

 

Field Description
Virus The name of the virus that was sent or received
Destination/ Host The destination host or IP address to which the virus was sent/
The host or IP address that sent the virus
Severity The severity level of the virus, as defined by the firewall
File The name of the virus file that was sent or received
Hits The number of times the virus was sent to or received by the same host
Subtype The subtype of the virus, as defined by the firewall
Time The timestamp when the virus was sent or received
Message The virus message generated by the firewall

 

 

The Top Protocols Used By Viruses report shows the top protocols used by each virus. The Top Viruses By Priority report shows the top severities with which viruses have been sent.

Drill down from these graphs to see the following details:

 

Field Description
Host The host or IP address that sent the virus
Destination The destination host or IP address to which the virus was sent
Severity/ Protocol The severity level of the virus, as defined by the firewall/
The protocol used to send the virus
File The name of the virus file that was sent or received
Hits The number of times the virus was sent to or received by the same host
Subtype The subtype of the virus, as defined by the firewall
Time The timestamp when the virus was sent or received
Message The virus message generated by the firewall

 

 

The Top Virus Files report shows the top virus files that have been sent. The Top Virus with Status report shows the status of the Top Virus. Drill down from these graphs to see the following details:

 

Field Description
Virus The name of the virus that sent this file
Host The host or IP address that sent the virus file
Destination The destination host or IP address to which the virus file was sent
Protocol The protocol used by the virus to send this virus file
Severity The severity level of the virus, as defined by the firewall
Hits The number of times the virus file was sent to the same host
Subtype The subtype of the virus, as defined by the firewall
Time The timestamp when the virus file was sent
Message The virus message generated by the firewall


Copyright © 2008, AdventNet Inc. All Rights Reserved.