Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
| Attribute | Value |
|---|---|
| Ingestion API Supported | ✓ Yes |
Source: Connector definition
| Column Name | Type | Description |
|---|---|---|
| Artifact | string | File or process path |
| Country | string | Geographic location of the event |
| CovewareHostName | string | Coveware server hostname |
| EventActivity | string | Description of security activity |
| EventTime | datetime | Timestamp when event occurred |
| EventType | string | Type of security event |
| FirstRunOrAccessed | datetime | First time artifact was run or accessed |
| Hostname | string | Machine hostname where event occurred |
| Id | string | Unique finding identifier |
| MachineId | string | Unique machine identifier |
| Md5Hash | string | MD5 hash of the file |
| RiskLevel | string | Security risk level assessment |
| ScanTime | datetime | Timestamp when scan was performed |
| Sha1Hash | string | SHA1 hash of the file |
| Sha256Hash | string | SHA256 hash of the file |
| TechniqueId | string | MITRE ATT&CK technique identifier |
| TimeGenerated | datetime | |
| Username | string | User account associated with event |
Official Microsoft Learn documentation for field/column information:
This table is used by the following solutions:
This table is ingested by the following connectors:
| Connector | Selection Criteria |
|---|---|
| Veeam Data Connector (via Codeless Connector Framework) |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊