rsu
-
Posts
2 -
Joined
-
Last visited
Posts posted by rsu
-
-
hi team,
i want to know what is the exact syslog format and fields given in the events which are sent from kaspersky to a siem solution
log doubt
in Kaspersky Scan Engine
Posted
Event type: Access denied Application\Name: Google Chrome Application\Path: C:\Program Files (x86)\Google\Chrome\Application\ Application\Process ID: 2304 User: SCV\anh.lsq (Initiator) Requested web page:
https:// 199703ac8b8f9b13ae9e7563c3bbb8e4 . safeframe . googlesyndication . com
Result\Decision: Blocked Rule\Rule name: Deny-Web Rule\Content categories: Banners Rule\Content category sources: Local databases Rule\Account: ANY Rule\Address mask: *
this log is generated by which application of kaspersky