API Support for Sample Behavior Evidence
Table of Contents
Expand all | Collapse all
-
- New Features October 2020
- New Features September 2020
- New Features: August 2020
- New Features: April 2020
- New Features: November 2019
- New Features: May 2019
- New Features: March 2019
- New Features: February 2019
- New Features: November 2018
- New Features: October 2018
- New Features: September 2018
- New Features: August 2018
- New Features: July 2018
- New Features: June 2018
API Support for Sample Behavior Evidence
The AutoFocus™ API now provides a summary of behavior
evidence, when applicable, in sample analysis. This
is an extension of behavior evidence that is available through the AutoFocus portal. Behavior evidence lists
the behaviors seen for a given sample in the WildFire® analysis
environment, such as whether a sample has created files, started
a process, or modified registry settings.
Truncated response:
{ "line":"sample.exe , CreateFileFail , WINDOWS\\lsass.exe , 00120089 , 00000060 , c0000043", "b":591, "m":176025, "g":0, "behaviors":[ 33, 96 ] }