Apex One stores sample submission data in the system events logs. For a more comprehensive summary of the sample submission data, Trend Micro recommends viewing the logs using the Apex Central console. Apex Central provides a detailed analysis of the suspicious object file handling process, providing better visibility regarding how suspicious objects may affect your network.
- Go to .
-
Under Event, check for the following log types:
-
"Sample submitted to Virtual Analyzer [file[<file_name], SHA1[<file_SHA1_value>]"
-
"Virtual Analyzer sample analysis complete [<date_time_analysis_completed>, file[<file_name], SHA1[<file_SHA1_value>], virus[<detection_type], rule[<virtual_analyzer_rule_type]]"
-