Skip to main content

73 docs tagged with "spectra-analyze"

View all tags

Advanced Search

Spectra Analyze Advanced Search delivers metadata search with 100+ keywords, Boolean operators, and cross-cloud discovery for malware identification.

Analysis services

Spectra Analyze Analysis services integrate dynamic and static analysis with ReversingLabs Cloud Sandbox, Cuckoo, Joe Sandbox, and third-party sandboxes.

Configuration

System configuration settings and options for the Spectra Analyze appliance.

Connectors

Spectra Analyze connectors configuration for external system integration with SIEM and orchestration platforms.

Containers API — Spectra Analyze

Retrieve top-level container files from which requested samples were extracted during Spectra Analyze static analysis, supporting bulk hash lookups.

Discussion

The Discussion page displays the comments that have been added to a sample, either by the user who uploaded it or by other users.

Dynamic Analysis Results

The Sample Details page shows any dynamic analysis service reports, if dynamic analysis services are configured on the appliance.

Extracted Files

A page that allows browsing through the entire hierarchy of files extracted from a sample.

Factory Reset

Perform factory reset operations and Solr index reset for troubleshooting.

File and URL Submissions

Spectra Analyze File and URL Submissions enable manual and automated analysis with sandbox integration, extraction, and multi-service threat detection.

File Preview / Visualization

The file preview window can be used to preview image samples, text documents and some script languages. It also provides Entropy and Structure tabs, and a HEX preview.

Flexible Intel Feed

Spectra Analyze Flexible Intel Feed configuration for STIX/TAXII threat intelligence integration with Spectra Intelligence.

Getting started with Spectra Analyze

Get started with Spectra Analyze: configure the Spectra Intelligence cloud connection, access the web interface, upload your first file for analysis, and interpret the results.

Graph — Spectra Analyze [PREVIEW]

Spectra Analyze Graph visualizes relationships between malware samples, files, domains, and IPs for interactive threat exploration, node navigation, and connection analysis.

Integrations

Spectra Analyze service integrations configuration for dynamic analysis sandboxes, threat feeds, and analysis enhancement.

Layouts Editor

Spectra Analyze Layouts Editor for customizing sample summary displays with data blocks, sharing, and personalization options.

Licensing

Manage appliance licensing and license configuration.

Licensing API — Spectra Analyze

Generate machine IDs, upload license files, and check license status on Spectra Analyze appliances using the Licensing API endpoints.

Network Threat Intelligence Page

Spectra Analyze Network Threat Intelligence reveals URL, IP, and domain reputation with threat analysis, DOM inspection, and historical threat intelligence data.

Quota Usage Alerts

Spectra Analyze quota usage alerts configuration for email notifications on Spectra Intelligence usage and threshold monitoring.

Redundancy System

Configure and manage redundancy system settings for high availability.

Risk Tolerance [PREVIEW]

Spectra Analyze Risk Tolerance feature extends sample classification with additional analysis services for customized threat assessment.

Sample Details Page

The Sample Details page presents all the available information about a sample.

Sample Details Summary

The Report Summary page highlights the most interesting information about an analyzed sample.

Search & Submissions Page

Spectra Analyze Search & Submissions provides local and cloud file queries, bulk operations, filtered results, and network resource analysis tools.

Self-Service Registration

Spectra Analyze self-service registration setup with identity providers like Okta using SAML and OIDC integration.

Setup and initial configuration

Spectra Analyze initial setup and configuration guide covering system requirements, deployment, licensing, and first-time appliance configuration.

Sources

The Sources page displays different types of sources for the selected sample, their time and date of retrieval, as well as any additional information.

Spectra Core - Static Analysis Results

Spectra Analyze Spectra Core results display static analysis reports with file information, behavior indicators, and risk assessment organized by section.

System Status

Spectra Analyze System Status monitoring for appliance health, service status, resource utilization, and system log retrieval.

System Update

Manage system updates and software upgrades for the appliance.

Threat Classification Sources

Threats can be classified by Spectra Core, Spectra Intelligence, dynamic analysis, or manually overridden. This page also contains a list of all possible classification reasons for a sample.

Tokens

Spectra Analyze authentication token management for API access control and per-user key configuration and administration.

User Roles

Spectra Analyze role-based access control for creating, editing, and managing custom user roles and permission assignments.

Users

Spectra Analyze user management for creating accounts, configuring access, and managing user directory and authentication settings.

YARA Hunting

Spectra Analyze YARA Hunting enables custom ruleset creation, cloud synchronization, and malware detection with continuous and retroactive scanning.

YARA Repositories

Spectra Analyze YARA repositories management for rule synchronization, online sources, and custom GitHub configuration.

YARA Retroactive Hunting

Spectra Analyze YARA Retroactive Hunting scans historical samples and cloud data for rule matches, uncovering previously hidden malware detections.