Core_Pua_Detection_Sophos Central_General

Alert

Core Pua Detection (Event::Endpoint::CorePuaDetection)

SK4 unified event:
Connector/Service

Sophos Central/General

SK4 Version:

2.3.105

Created Date:

Tue Feb 12 2019 11:04:45 GMT+0000 (Coordinated Universal Time)

Last Update:

Tue Jun 18 2019 11:12:03 GMT+0000 (Coordinated Universal Time)

Category

Security Alert

Description

A potentially unwanted application has been detected.

Search query

cef_vendor="skyformation" cef_name="security-threat-detected" destinationServiceName="Sophos Central" dpriv="PUA_PUP" act="detect"

Parsed CEF
Unparsed raw data

Expand to see an example...

Audit sources