web_request aggregate NXQL (classic)

NameTypeOperating systemsProperties

total_web_traffic

byte

Windows | macOS

NU

Web traffic

outgoing_web_traffic_per_device

byte

Windows | macOS

NU

Outgoing web traffic per device

incoming_web_traffic_per_device

byte

Windows | macOS

NU

Incoming web traffic per device

number_of_devices

integer

Windows | macOS

FP

Number of devices

number_of_domains

integer

Windows | macOS

FP

Number of domains

number_of_users

integer

Windows | macOS

FP

Number of users

number_of_applications

integer

Windows | macOS

FP/NU

Number of applications

number_of_executables

integer

Windows | macOS

FP

Number of executables

number_of_binaries

integer

Windows | macOS

FP

Number of binaries

number_of_destinations

integer

Windows | macOS

Number of destinations

number_of_ports

integer

Windows | macOS

Number of ports

activity_start_time

datetime

Windows | macOS

NU

Start time of investigated activity

activity_stop_time

datetime

Windows | macOS

NU

Stop time of investigated activity

average_network_response_time

microsecond

Windows | macOS

Average TCP connection establishment time

highest_local_privilege_reached

privileges_level

Windows | macOS

NU

Highest local privilege level reached for executions (user, power user, administrator)

number_of_web_requests

integer

Windows | macOS

Number of web requests

protocols_used_in_requests

web_protocol_combination

Windows | macOS

NU

Protocols used in web requests (HTTP, TLS, HTTP/TLS)

lowest_protocol_version

min_web_protocol_version

Windows | macOS

NU

Lowest protocol version observed in web requests (excluding web requests with unknown protocol version)

incoming_traffic

byte

Windows | macOS

NU

Total web incoming traffic

outgoing_traffic

byte

Windows | macOS

NU

Total web outgoing traffic

average_incoming_bitrate

bps

Windows | macOS

NU

Average incoming bitrate of all underlying web requests, consolidated over time

average_outgoing_bitrate

bps

Windows | macOS

NU

Average outgoing bitrate of all underlying web requests, consolidated over time

cumulated_web_request_duration

millisecond

Windows | macOS

NU

Cumulated duration of web requests

cumulated_web_interaction_duration

millisecond

Windows | macOS

NU

Cumulated time during which web requests occurred, counted with a 5 minutes resolution.

average_request_size

byte

Windows | macOS

NU

Average size of web requests

average_response_size

byte

Windows | macOS

NU

Average size of web responses

average_request_duration

millisecond

Windows | macOS

Average time between request and last response byte

successful_http_requests_ratio

permill

Windows | macOS

NU

Percentage of successful HTTP requests (1xx, 2xx and 3xx)

number_of_events

integer

Windows | macOS

NU

Number of events

Last updated