Skip to main content
Skip table of contents

V 2.0 Malicious File Blocked By Amp Event

Vendor Documentation

Classification

Rule NameRule TypeClassification

Common Event

V 2.0 Malicious File Blocked By Amp EventBase RuleActivityGeneral Threat Protection Event

Mapping with LogRhythm Schema

Device Key in Log MessageLogRhythm SchemaData TypeSchema Description
url<url>Text/Stringurl
src<sip>
<sport>
IP Address
Number
N/A
dst<dip>
<dport>
IP Address
Number
N/A
mac<dmac>Text/Stringmac_addr
name<subject>Text/Stringname
sha256<hash>Text/Stringsha256_hash
disposition<result>Text/Stringdisposition
action<action>Text/Stringaction
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.