We’re pleased to announce that Cloudmersive Managed Instance Deployment customers may now view detailed post-scan analytics for scanned files on a dedicated Threat Detection Analytics
page in their Cloudmersive Management Portal (CMP).
This change improves threat visibility and auditing across all scanning operations through a simple interface.
Real-time log insights across all API keys
Managed Instance customers can view threat detection data across all their Cloudmersive API keys in a single view or instead choose to drill down on data for specific keys.
The Threat Detection Analytics
page can be adjusted to show 25, 50, 100, or all entries at once. Its logs can be filtered and searched by timestamp, detection category, or specific file characteristics. Logs are stored for 90 days, which is ideal for active threat management.
What you’ll find on your Threat Detection Analytics
page
After clicking View Logs
on your Threat Detection Analytics
page, you’ll find key fields broken down into several relevant categories.
Timestamp
The timestamp field indicates the specific time a file was scanned (following a general date/time pattern format).
Event type
The Event Type field describes the type of threat detection event which occurred for that specific entry – e.g., VIRUS_SCAN_THREAT_DETECTION
.
Scan type
The Scan Type field distinguishes between Advanced (360-degree content protection) and Basic (signature-based virus and malware detection) scan types for the given file.
Clean result
The Clean Result field displays the Boolean response a given file received post-scan. False
describes files which were deemed unsafe, and True
describes files which were deemed safe.
Advanced scan threat vector flags
For files scanned with the Advanced Virus Scan API, each threat vector flag (i.e., ContainsExecutable
, ContainsScript
, ContainsRestrictedFileFormat
, etc.) will be represented in its own field with its corresponding Boolean.
File hashes
The SHA1 Hash and MD5 Hash fields will display their respective hash strings for each file entry.
How to access your Threat Detection Analytics
page
The following steps will help you access the Threat Detection Analytics
page in your CMP (as a reminder, this feature is currently only available to Cloudmersive Managed Instance customers):
- Navigate to the
Cloudmersive Management Portal
- Click on
Analytics
- Click on
Threat Detection Analytics
(if this is not visible, contact your account team to enable the feature)
- Select
All API Keys
to see a view across all API keys, or select a specific API key
- Select the number of results to view
- Click on
View Logs
Learn more today
To learn more about accessing or making the most of your Threat Detection Analytics
page, please do not hesitate to reach out to your account team or contact any sales representative.