Skip to main content

30 docs tagged with "file-analysis"

View all tags

Classification Status API

Spectra Analyze Classification Status API retrieves threat classification, risk scores, and detection status for analyzed samples.

Containers API

Get a list of all top-level containers from which the requested sample has been extracted during analysis.

Delete API

Spectra Analyze Delete API enables removal of malware samples and associated analysis data from the appliance with bulk operation support.

Discussion

The Discussion page displays the comments that have been added to a sample, either by the user who uploaded it or by other users.

Download API

Download samples from the appliance to local storage.

Dynamic Analysis Results

The Sample Details page shows any dynamic analysis service reports, if dynamic analysis services are configured on the appliance.

Extracted Files

A page that allows browsing through the entire hierarchy of files extracted from a sample.

File and URL Submissions

Spectra Analyze File and URL Submissions enable manual and automated analysis with sandbox integration, extraction, and multi-service threat detection.

File Preview / Visualization

The file preview window can be used to preview image samples, text documents and some script languages. It also provides Entropy and Structure tabs, and a HEX preview.

Graph Page [PREVIEW]

Spectra Analyze Graph visualizes relationships between malware samples, files, domains, and IPs for interactive threat connection exploration and analysis.

Network Threat Intelligence API

Spectra Analyze Network Threat Intelligence API provides reputation data and threat analysis for URLs, domains, and IP addresses.

Network Threat Intelligence Page

Spectra Analyze Network Threat Intelligence reveals URL, IP, and domain reputation with threat analysis, DOM inspection, and historical threat intelligence data.

PDF Report API

Download a PDF report of the analysis results for any sample on the appliance.

Processing Status API

Spectra Analyze Processing Status API monitors analysis progress for submitted files and URLs with real-time status updates.

Risk Tolerance [PREVIEW]

Spectra Analyze Risk Tolerance feature extends sample classification with additional analysis services for customized threat assessment.

Sample Details Page

The Sample Details page presents all the available information about a sample.

Sample Details Summary

The Report Summary page highlights the most interesting information about an analyzed sample.

Search & Submissions Page

Spectra Analyze Search & Submissions provides local and cloud file queries, bulk operations, filtered results, and network resource analysis tools.

Set Classification API

Override the classification of a sample, either locally or in the Spectra Intelligence cloud.

Sources

The Sources page displays different types of sources for the selected sample, their time and date of retrieval, as well as any additional information.

Spectra Core - Static Analysis Results

Spectra Analyze Spectra Core results display static analysis reports with file information, behavior indicators, and risk assessment organized by section.

Submissions API

Spectra Analyze Submissions API enables programmatic submission of files and URLs for static analysis and malware detection.

Tags

Spectra Analyze Tags enable system and user-defined sample categorization with search filtering and bulk tagging for efficient malware organization.

Tags API

Create, delete or retrieve user tags for any sample on the appliance.

Threat Classification Sources

Threats can be classified by Spectra Core, Spectra Intelligence, dynamic analysis, or manually overridden. This page also contains a list of all possible classification reasons for a sample.