Quantcast
Channel: Symantec Connect - Products - ディスカッション
Viewing all articles
Browse latest Browse all 11815

Application and Device Control Blank Rule ID in Logs

$
0
0
ソリューションが必要です

We are testing Application and Device Control and when we look in the logs we get many lines with Blank Rule Names as below

Time StampEvent TypeEvent TimeSeverityHost NameActionTest ModeDescriptionAPIEncoded API NameBegin TimeEnd TimeRule IDRule NameCaller Process IDCaller Process NameReturn AddressReturn ModuleTargetAlertSend Snmp TrapUser NameFile SizeDevice IDIP AddressDomain NameSite NameServer NameGroup NameComputer NameAction TypeRepetition
7/22/2014 7:08Tamper Protection########MinorMouseBlock0HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec Endpoint Protection\################  3924C:\WINDOWS\EXPLORER.EXEHKEY_LOCAL_MACHINE/SOFTWARE/Symantec/Symantec Endpoint Protection/1 Mickey  ...DefaultSEP PRODSEPBEDPRODMy Company\MITRE Production DesktopMouseBlock1

Viewing all articles
Browse latest Browse all 11815

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>