tm-v1-schema

Trend Micro Apex One On-Premises

Layer: Endpoint

This documentation provides detailed information about all fields available for Trend Micro Apex One On-Premises.

Field Name Type Searchable General Field Description Example Products
detectionMeta dynamic true - The descriptions of the detected techniques ['T1204 some description about this technique', 'T1573.001_AES another description about this technique']
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
  • Trend Cloud One - Endpoint & Workload Security
  • Trend Micro Deep Security
detectionNames dynamic true - The rules that triggered the event ['HS_EMOTET.SMAA', 'HM_AVEDOWN.SMZTIG-A', 'HE_DOCQRPHISH.SM']
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
  • Trend Cloud One - Endpoint & Workload Security
  • Trend Micro Deep Security
objectSignerFlagsAdhoc dynamic true - The list of object process signature adhoc flags -
  • Endpoint Sensor
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
objectSignerFlagsLibValid dynamic true - The list of object process signature library validation flags -
  • Endpoint Sensor
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
objectSignerFlagsRuntime dynamic true - The list of object process signature runtime flags -
  • Endpoint Sensor
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
parentSignerFlagsAdhoc dynamic true - The list of parent process signature adhoc flags -
  • Endpoint Sensor
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
parentSignerFlagsLibValid dynamic true - The list of parent process signature library validation flags -
  • Endpoint Sensor
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
parentSignerFlagsRuntime dynamic true - The list of parent process signature runtime flags -
  • Endpoint Sensor
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
processSignerFlagsAdhoc dynamic true - The list of process signature adhoc flags -
  • Endpoint Sensor
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
processSignerFlagsLibValid dynamic true - The list of process signature library validation flags -
  • Endpoint Sensor
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
processSignerFlagsRuntime dynamic true - The list of process signature runtime flags -
  • Endpoint Sensor
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
quarantineFileId string true - The unique identifier of the quarantined object ASLUMVS0.4FC
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
  • Trend Cloud One - Endpoint & Workload Security
  • Trend Micro Deep Security
quarantineFilePath string true FileFullPath The file path of the quarantined object C:\ProgramData\Trend Micro\AMSP\quarantine\ASLUMVS0.4FC
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
  • Trend Cloud One - Endpoint & Workload Security
  • Trend Micro Deep Security
quarantineFileSha256 string true FileSHA2 The SHA-256 of the quarantined object 84B2FA19B05EA88D6E785B4ADB528120485AA3F72F3E5E114DE6D3696B0D151F
  • Trend Micro Apex One as a Service
  • Trend Micro Apex One On-Premises
  • Trend Cloud One - Endpoint & Workload Security
  • Trend Micro Deep Security

Field Statistics


Generated by XDR Common Schema Public Doc Generator V2