Jump to content
Devora

Blank reports on demand and scheduled EP Cloud

Recommended Posts

MWB- Endpoint Cloud- Reporting

After suffering through a couple weeks of empty scheduled reports last month we started getting them again in March, but two days ago I started receiving blank reports again, so checked the cloud console and find no data in any detection reports at all- not on dashboard, not in on-demand reports. The Excel add-in(API) also reports no results. 

Since we were averaging 2-3 machines reporting daily on blocked websites on endpoints, I find it hard to believe that we are suddenly not encountering any risk at all!  Reporting MUST be reliable folks!  What's going on??

Share this post


Link to post
Share on other sites

Hi @Devora, I understand the frustration, plus you and I just worked together not too long ago for the reports! I do not see any backend service or availability issues at the moment. As a test, please invoke a web detection hit manually by going to - iptest.malwarebytes.org - on a machine to test that the results are making it to your dashboard, if they happen. Let me know how that turns out, thanks Devora!

Share this post


Link to post
Share on other sites

Hi again Dyllon-  I just went to  iptest.malwarebytes.org  and the endpoint blocked it, the console detected it, and the detection report identified 3 endpoints with blocked websites for today. The report had reported zero results just 4 hours ago run as either a scheduled report and an on-demand report but look at these time stamps below. I did run a manual scan & report of all endpoints between these two events, but received no notification on any detection until I tried your test.  So I cannot tell if it is suddenly fixed, or not. Can you?  <g>

Scanned At Reported At
2019-03-08T17:37:59Z 2019-03-08T17:38:00.17448Z
2019-03-08T17:15:45Z 2019-03-08T17:15:42.515204Z
2019-03-08T16:45:13Z 2019-03-08T16:45:14.852075Z

Share this post


Link to post
Share on other sites

I know there can be local time versus UTC time discrepancies, the 17:15:45 to 17:15:42 is close enough that it was just likely some network lag time for that. If it perked up and saw those ip test blocks, I'm inclined to lean towards there just not really being any hits earlier that day to report. 

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.