The sandbox constructs an isolated threat detection environment. The FW sends network traffic to the sandbox for isolated analysis, and the sandbox concludes on whether a threat exists. The display aapt statistics command helps you understand data generated when the FW submits files to a sandbox.
# Display statistics on files sent by the FW to a sandbox for detection.
<sysname> display aapt statistics sample
Slot 11 Cpu 0:
Sandbox Local Statistics for the latest seven days
Malicious Sample Number : 66
Suspicious Sample Number: 79401
Normal Sample Number : 389003
Statistics by Application
App Name Submit Times Duplicated Malicious Suspicious
---------------------------------------------------------------------
http 234235 2354 54 4545
ftp 234235 324 12 74856
Statistics by File Type
File Type Submit Times Duplicated Malicious Suspicious
---------------------------------------------------------------------
pdf 234235 2354 54 4545
ppt 234235 324 12 74856
Slot 11 Cpu 0:
Sandbox Cloud Statistics for the latest seven days
Malicious Sample Number : 66
Suspicious Sample Number: 79401
Normal Sample Number : 389003
Statistics by Application
App Name Submit Times Duplicated Milicious Suspicious
---------------------------------------------------------------------
http 234235 2354 54 4545
ftp 234235 324 12 74856
Statistics by File Type
File Type Submit Times Duplicated Milicious Suspicious
---------------------------------------------------------------------
pdf 234235 2354 54 4545
ppt 234235 324 12 74856
Item |
Description |
|---|---|
Slot 11 Cpu 0 |
Slot ID and CPU ID for the interworking between the FW and local/cloud sandbox |
Sandbox Local Statistics for the latest seven days |
Local sandbox statistics in the last seven days |
Sandbox Cloud Statistics for the latest seven days |
Cloud sandbox statistics in the last seven days |
Malicious Sample Number |
Number of malicious files |
Suspicious Sample Number |
Number of suspicious files |
Normal Sample Number |
Number of normal files |
Statistics by Application |
Statistics by application protocol |
Statistics by File Type |
Statistics by file type |
App Name |
Application protocol name |
Submit Times |
Number of times files are submitted |
Duplicated |
Number of duplicate files |
Malicious |
Number of malicious files |
Suspicious |
Number of suspicious files |
File Type |
File type |