Investigate App Flashcards
1
Q
Search by Host Name or Agent ID
A
Host Search
2
Q
Recommended range is 3 days
A
Host Search
3
Q
Local IP
A
Host Info
4
Q
Product Type
A
Host Info
5
Q
Model
A
Host Info
6
Q
File Name
A
Detect History
7
Q
Scenario
A
Detect History
8
Q
Description of the detection
A
Detect History
9
Q
Logon Activities (30 days)
A
User Search
10
Q
Detect History (30 days)
A
User Search (also Hash Search)
11
Q
Unresolved Detects (7 days)
A
User Search (also Hash Search)
12
Q
Process Executions
A
User Search (also Hash Search)
13
Q
Admin Tool Usage
A
User Search
14
Q
Files written such as JAR, OLE, OOXML, PDF, RAR, RTF, ZIP and dumps
A
User Search
15
Q
Search for multiple space-delimited hashes
A
Hash Execution Search