Genian EDR

Download 38
Last updated Aug 6, 2023

Module Log

Normalize module logs in Genian EDR.

TypeFieldDisplay Name
DATE_timeTime
STRINGevent_typeEvent type
STRINGevent_subtypeEvent subtype
INTimportantImportant level
IPhost_ipHost IP
STRINGnt_domainNT domain
STRINGhostnameHostname
STRINGimageProcess name
STRINGimage_pathProcess path
STRINGfile_nameFile name
STRINGfile_typeFile type
STRINGfile_extFile extension
STRINGfile_pathFile path
STRINGmd5MD5
STRINGsha256SHA256
STRINGlogon_idLogon ID
INTpidPID
STRINGpguidProcess GUID
STRINGdevice_idDevice ID
LONGevent_seqEvent sequence