Cross Process Open Ingress Event

Vendor Documentation


Classification

Rule Name

Rule Type

Common Event

Classification

Cross Process Open Ingress Event

Base Rule

Process/Service Started

Activity

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

vmid

<vmid>

Text/String

computer_name

<dname>

Text/String

target_md5

<objectname>

<hash>

Text/String

target_path

<process>

Text/String

target_pid

<processid>

Number