You can generate and schedule the Web AV report by using the appliance Web UI or CLI:
The Web AV report displays charts of all antivirus (AV) reporting over the time period selected (if antivirus support is enabled), and provides a detailed summary in .xls format.
The following fields are part of the Web AV report:
Field | Description |
|---|---|
infected_ip | IP address of the infected machine. |
host_name | Hostname of the infected machine. |
anti_virus | Whether the integrated Sophos detection was used (when the Sophos license is enabled). |
malware_name | Name of the malware. |
infection_source | Source of the malware. |
hits | Number of times the malware was received. |
latest_activity | Most recent time that the malware was active. |
Prerequisites
Administrator or Operator access to the ADD Product Series appliance.