Investigate App Flashcards
Search by Host Name or Agent ID
Host Search
Recommended range is 3 days
Host Search
Local IP
Host Info
Product Type
Host Info
Model
Host Info
File Name
Detect History
Scenario
Detect History
Description of the detection
Detect History
Logon Activities (30 days)
User Search
Detect History (30 days)
User Search (also Hash Search)
Unresolved Detects (7 days)
User Search (also Hash Search)
Process Executions
User Search (also Hash Search)
Admin Tool Usage
User Search
Files written such as JAR, OLE, OOXML, PDF, RAR, RTF, ZIP and dumps
User Search
Search for multiple space-delimited hashes
Hash Execution Search
Provides a summary of files that have been loaded or executed and the number of times those actions have occurred.
Hash Execution Search
Search by hash across all OSs
Hash Search
search by hash for exe and DLLs, not PDF or Doc
Hash Search
Hash written history for sha 256 only
Hash Search
Module Load History
Hash Search
Process Execution History
Hash Search (also User Search)
Detect history (14 days)
Hash Search (also User Search)
Unresolved detects (7 days)
Hash Search (also User Search)
search for host info by Source IP, Destination IP or External IP
IP Search