Skip to main content
Skip table of contents

EVID : 1048 : EPO - Scan Error

Vendor Documentation

Classification

Rule Name

Rule Type

Classification

Common Event

EVID : 1048 : EPO - Scan Error

Base Rule

Operations : Error

Scan Process Error

Mapping with LogRhythm Schema

Device Key in Log MessageLogRhythm SchemaData TypeSchema Description
N/AN/AN/AN/A
MachineName<dname>Text/StringName of the system hosting the detecting product.
AgentGuidN/AN/AUnique identifier of the agent that forwarded the event.
AgentVersionN/AN/AN/A
IPAddress<dip>IP AddressIP address of the system hosting the detecting product (if given in the event).
OSNameN/AN/AN/A
UserNameN/AN/AN/A
TimeZoneBiasN/AN/AN/A
RawMACAddress<dmac>Text/StringMAC address of the system hosting the detecting product.
ProductName<vendorinfo>Text/StringName of the detecting managed product.
ProductVersion<version>Text/NumberVersion number of the detecting product.
ProductFamilyN/AN/AN/A
AnalyzerN/AN/AN/A
AnalyzerNameN/AN/AName of the detecting managed product.
AnalyzerVersionN/AN/AVersion number of the detecting product.
EventID<vmid>NumberUnique identifier of the event class.
SeverityN/AN/AN/A
GMTTimeN/AN/AN/A
LocalTimeN/AN/AN/A
AnalyzerDATVersionN/AN/ADAT version on the system that sent the event.
AnalyzerDetectionMethodN/AN/AThe name of the task or task type that was responsible for detecting the threat.
AnalyzerEngineVersionN/AN/AVersion number of the detecting product’s engine (if given in the event).
DetectedUTCN/AN/AN/A
TargetFileName<object>Text/StringLocation of the threat on the detecting system.
TargetProcessName<process>Text/StringThe target process name (if given in the event).
TargetUserName<domainimpacted>
<account>
Text/StringThe threat source user name or email address.
ThreatActionTaken<action>Text/StringThe action taken by the product in response to the threat.
ThreatCategory<subject>Text/StringCategory of the event. Possible categories depend on the product.
ThreatHandledN/AN/ASpecifies whether the action taken was successful.
ThreatSeverity<severity>Text/String/NumberThe severity of the detected threat as defined by each managed product.
ThreatTypeN/AN/AClass of the threat.
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.