

Get Agent Info script can be used to collect SES Linux Agent logs. Mark the file as executable to run as superuser.

Save n to a directory on the computer.Right-click this link and choose "Save Target As" or "Save Link As". The method used to gather logs on a Linux system is dependent upon whether the SEP for Linux client or the SES Linux Agent is being used. Follow the on-screen instructions or consult the Table of Contents below to find further instructions for using SymDiag depending on what you want to accomplish with SymDiag.On the Windows desktop, double-click the SymDiag.exe icon.Traffic has been blocked for this application: C:\PROGRAM FILES (X86)\SYMANTEC\SYMANTEC ENDPOINT PROTECTION MANAGER\APACHE\BIN\HTTPD.EXEĪpplication: C:/PROGRAM FILES (X86)/SYMANTEC/SYMANTEC ENDPOINT PROTECTION MANAGER/APACHE/BIN/HTTPD.Download SymDiag SymDiag for Windows (2.1.318.11278) Intrusion URL: /vxvut0g6.do?Įvent Description: Attack: OpenSSL Heartbleed CVE-2014-0160 3 attack blocked. Application path: SYSTEMĬIDS Signature string: Audit: Nessus Vulnerability Scanner Activity 3 Traffic has been blocked for this application: SYSTEMĬIDS Signature string: Web Attack: Passwd File Download Attempt The traffic from IP address 192.168.1.58 was blocked for 600 second(s).Įvent Description: Web Attack: Passwd File Download Attempt attack blocked. Your computer's TCP ports: 3306, 53, 1720, have been scanned from 192.168.1.58.Įvent Description: Active Response that started at 6:53:23 AM is disengaged. Permitted application reason: Not on the permitted application listĪpplication hash: 275A021BBFB6489E54D471899F7DB9D1663FC695EC2FE2A2C4538AABF651FD0FĮvent Description: The client will block traffic from IP address 192.168.1.58 for the next 600 seconds (from 6:53:23 AM to 7:03:23 AM).Įvent Description: Somebody is scanning your computer. Prevalence: Reputation was not used in this detection.Ĭonfidence: Reputation was not used in this detection.įirst Seen: Reputation was not used in this detection. File path: C:\Users\user\Downloads\eicar_com\ĭisposition: Reputation was not used in this detection.
