add test file #165

This commit is contained in:
DastInDark
2022-07-24 23:47:32 +09:00
parent bb4b13736b
commit faaf17fc90
2 changed files with 57 additions and 0 deletions

View File

@@ -0,0 +1,13 @@
Timestamp: '%Timestamp%'
Computer: '%Computer%'
Channel: '%Channel%'
Level: '%Level%'
EventID: '%EventID%'
MitreAttack: '%MitreAttack%'
RecordID: '%RecordID%'
RuleTitle: '%RuleTitle%'
Details: '%Details%'
RecordInformation: '%RecordInformation%'
RuleFile: '%RuleFile%'
EvtxFile: '%EvtxFile%'
Tags: '%MitreAttack%'

View File

@@ -0,0 +1,44 @@
minimal:
Timestamp: '%Timestamp%'
Computer: '%Computer%'
Channel: '%Channel%'
EventID: '%EventID%'
Level: '%Level%'
RuleTitle: '%RuleTitle%'
Details: '%Details%'
default:
Timestamp: '%Timestamp%'
Computer: '%Computer%'
Channel: '%Channel%'
EventID: '%EventID%'
Level: '%Level%'
Tags: '%MitreAttack%'
RecordID: '%RecordID%'
RuleTitle: '%RuleTitle%'
Details: '%Details%'
verbose-1:
Timestamp: '%Timestamp%'
Computer: '%Computer%'
Channel: '%Channel%'
EventID: '%EventID%'
Level: '%Level%'
Tags: '%MitreAttack%'
RecordID: '%RecordID%'
RuleTitle: '%RuleTitle%'
Details: '%Details%'
RulePath: '%RulePath%'
FilePath: '%FilePath%'
verbose-2:
Timestamp: '%Timestamp%'
Computer: '%Computer%'
Channel: '%Channel%'
EventID: '%EventID%'
Level: '%Level%'
Tags: '%MitreAttack%'
RecordID: '%RecordID%'
RuleTitle: '%RuleTitle%'
Details: '%Details%'
AllFieldInfo: '%RecordInformation%'