Log reference

Use the following raw log examples to validate parsing and normalization.

Raw log examples

Trend Micro Deep Security (CEF)

CEF:0|Trend Micro|Deep Security Agent|11|4000000|TROJ_KOVTER|6|...

Trend Micro Deep Discovery (CEF)

<156>CEF:0|Trend Micro|Deep Discovery Email Inspector|2.5.1300|100132|URL_DETECTION|6|...

Trend Micro Control Manager (syslog key=value)

<133>Oct 24 17:04:03 TMCM:SLF_INCIDENT_EVT_VIRUS_FOUND_DELETE_SUCCESS Security ...

Trend Micro IWSVA (key=value separated by commas)

<134>... Access tracking log tk_username=... ,tk_url=... ,tk_client_ip=...

Trend Micro IWSVA (pipe-separated)

2021/02/15 10:29:20 ... | device_ip=... | device_name=IWSVA | ...

Trend Micro IMSVA (syslog)

<183>Aug 30 12:29:34 ... [NORMAL]LOG_LEVEL_INFO: ... Rate result ...

Trend Micro IMSS (syslog)

Trend Micro ISMS (syslog)

Trend Micro Office Scan (JSON)

Trend Micro Cloud App Security (CEF)

Trend Vision One

Database query examples (ODBC/MSSQL)

Trend Micro DB v11

Trend Micro DB v12

Last updated

Was this helpful?