The Analysis tab on the Menu bar enables you to perform network and events analysis.
The following table gives a high-level overview of the tab tree and the available options.
| Item | Description |
|---|---|
| Attack Log | Analyze the alerts detected by your network security appliances. |
| Threat Explorer | View the top attacks, attackers, targets, and malware within a given period of time and a direction. |
| Malware Files | Monitor the potential malware downloads on the network and to view or export the related file reports. |
| Callback Activity | Analyze the callback activities participating in the damage of the endpoints including the background of the bot, the time till it was active, the IP address involved, and similar other useful information such as the host name, the operating system, and the user details. |
| High-Risk Endpoints | Monitor the suspicious endpoints infected by the malware by providing the name of the endpoint, the user details, and the operating system of the endpoint. |
| Network Forensics | Capture the network activity information and summarize them for user consumption. |
| Endpoint Executables | View the entire list of executables that makes network connections to either block or allow them. This item works only if at least one NTBA appliance is connected. |
| Quarantine | View the list of endpoints quarantined for all the Sensors |
| Event Reporting | Generate and view the Next Generation and Traditional reports based on the analysis of the events and the network. |