Catch All : Level 2 (Syslog - Cylance Optics Detection\Protect Events)

Vendor Documentation


Classification

Rule Name

Rule Type

Classification

Common Event

Catch All : Level 2

Base Rule

Activity

Virus Scan Activity

Mapping with LogRhythm Schema 

Device Key in Log Message

LogRhythm Schema

Data Type

N/A

<vmid>

Text/String

N/A

<login>

Text/String