Skip to main content
Skip table of contents

Watchlist Hit : Storage Process

Vendor Documentation

Classification

Rule Name

Rule Type

Common Event

Classification
Watchlist Hit : Storage ProcessBase RuleWatchlist HitActivity

Mapping with LogRhythm Schema

Device Key in Log MessageLogRhythm SchemaData Type
 cb_version<version>Number
host_type<useragent>Text/String
parent_name<parentprocessname>Text/String
parent_id<parentprocessid>Number
path<process>Text/String
process_md5<objectname>Text/String
process_md5<hash>Text/String
process_name<object>Text/String
process_pid<processid>Number
server_name<sname>Text/String
type<objecttype>Text/String
watchlist_name<vmid>Text/String
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.