File Modification Ingress Event

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification

File Modification Ingress Event

Base Rule

Object Modified

Activity

Mapping with LogRhythm Schema

Device Key in Log Message

LogRhythm Schema

Data Type

vmid

<vmid>

Text/String

action

<command>

<action>

Text/String

computer_name

<dname>

Text/String

fileType_name

<objecttype>

Text/String

md5

<objectname>

<hash>

Text/String

path

<process>

Text/String