14 lines
314 B
YAML
14 lines
314 B
YAML
Timestamp: "%Timestamp%"
|
|
Computer: "%Computer%"
|
|
Channel: "%Channel%"
|
|
Level: "%Level%"
|
|
EventID: "%EventID%"
|
|
MitreAttack: "%MitreAttack%"
|
|
RecordID: "%RecordID%"
|
|
RuleTitle: "%RuleTitle%"
|
|
Details: "%Details%"
|
|
RecordInformation: "%RecordInformation%"
|
|
RuleFile: "%RuleFile%"
|
|
EvtxFile: "%EvtxFile%"
|
|
Tags: "%MitreAttack%"
|