Files and Dumps

The section contains two tables: Created files and Dumps. The number of objects detected during the analysis is displayed to the right from the table name.

To open a necessary table, click its name.

To sort table columns in ascending or descending order click the column titles.

To download a file from the table, click Download the file 17_Download. If Dr.Web vxCube has not collected the file due to resource constraints, you are not able to download the file. In this case the not_download icon is displayed.

Created files

The table contains information about files created during the analysis. The table displays a path, hash, and name of a detected threat.

Dumps

The table contains information about the following objects:

Dumps.

Injections.

Memory blocks that are allocated by the running sample. Memory allocations may contain traces of malicious activity.

The table displays a file name, hash, unique number of a process (PID), and name of the detected threat.

warning_green

The name of the detected threat is displayed only if it is in the Dr.Web database.