Unknown Command
Vendor Documentation
Classification
Rule Name | Rule Type | Classification | Common Event |
---|---|---|---|
Unknown Command | Base Rule | Ops/Information | Unknown Command |
Mapping with LogRhythm Schema
Device Key in Log Message | LogRhythm Schema | Data Type | Schema Description |
ICID | <processid> | Number | |
<object> | Text\String |