Common Fields
Field |
Description |
---|---|
Bin attr ctime |
Changed time in linux/ Create time in windows of the binary |
Bin attr hash |
Sha256 hash of the binary |
Bin attr mtime |
Modified time of the binary |
Bin attr name |
Name of the binary on the file system |
Bin attr size |
Size of the binary on the file system |
Bin exec path |
Full path of the binary |
Cmdline |
Full command line of the process that gets executed |
Event time usec |
Time (in microseconds) when this event is observed |