The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Anomaly measure data block

Prev Next

The anomaly measure data block contains a set of measures. The first byte in the block represents a count which tells how many measures are in the data block. The measures are followed by the count byte as shown in the following figure.

Anomaly measure data block
Anomaly measure data block


Each measure contains two sets of floating point (4 bytes) values. The first set represents the bins and the second set represents the bin-count data values.

The first byte in the measure contains the measure id, the second byte contains a count that tells how many four byte values are in each set, and rest of the bytes contain floating point values as shown in the following figure.

Measure
Measure