Azure-Sentinel/Sample Data/CommvaultSecurityIQ_Commvau...

29 строки
1.4 KiB
JSON

[{
"severity": 6,
"anomaly_sub_type": "File Type",
"severity": "High",
"originating_client": "client_name",
"affected_files_count": 100,
"modified_files_count": 20,
"deleted_files_count": 5,
"renamed_files_count": 10,
"created_files_count": 15,
"job_start_time": "2023-01-01 12:00:00",
"job_end_time": "2023-01-01 13:00:00",
"eventCode": "234881361",
"jobId": 176312,
"acknowledge": 0,
"eventCodeString": "14:337",
"subsystem": "CvStatAnalysis",
"files_list": ["file1.txt", "file2.txt"],
"scanned_folder_list": ["/folder1", "/folder2"],
"description": "<html>Detected file type classification anomaly in job [176312] for client [client_name]. Number of files affected [1340]. Please click <a href='http://webservice_url.commvault.com:80/commandcenter/#/fileAnomaly/5185?anomalyTypes=mime'> here</a> for more details.<span style='display: none'>AnomalyType:[2];ClientName:[client_name];BackupSetName:[defaultBackupSet];SubclientName:[AnomalySubclient];SuspiciousFileCount:[1340];ModifiedFileCount:[0];RenamedFileCount:[0];CreatedFileCount:[0];DeletedFileCount:[0];ApplicationType:[33];BackupSetId:[0];SubclientId:[0];JobId:[176312]</span></html>'",
"id": 4627966,
"timeSource": 1683622448,
"type": 0,
"clientEntity": {
"clientId": 5185,
"clientName": "client_name",
"displayName": "client_name"
}
}]