This repository was archived by the owner on Dec 30, 2023. It is now read-only.
Releases: nextpart/Defender_TA_nxtp
Releases · nextpart/Defender_TA_nxtp
Defender_TA_nxtp 0.4.2
Application | Microsoft Defender AntiVirus - Technical Add-On |
Version | 0.4.2 |
Author | Nextpart Security Intelligence GmbH |
Package | Defender_TA_nxtp-0.4.2.tar.gz |
Creation | 02.08.2022 19:17 UTC |
Hash | 8642251ca1b967be94707f75e3ae7460 |
This addon takes care that the windows event log entries of defender parsed and converted correctly to the CIM format. Mainly XML formats are supported, but some raw formats work as well.
Application Details
[info]
|-- Microsoft Defender AntiVirus - Technical Add-On: This addon takes care that the windows event log entries of defender parsed and converted correctly to the CIM format. Mainly XML formats are supported, but some raw formats work as well.
| |-- by Nextpart Security Intelligence GmbH
| |-- defined as Defender_TA_nxtp version 0.4.2
[dependencies]
[tasks]
[input-groups]
[incompatible-apps]
[platform-requirements]
[dependency-graph]
|-- Defender_TA_nxtp@0.4.2
CloudVetting Summary
Totals:
Status | Count |
---|---|
Failures | 0 |
Warnings | 0 |
Errors | 0 |
Not Applicable | 142 |
Manual Checks | 13 |
Skipped | 0 |
Successes | 186 |
0.3.9
[info]
|-- Microsoft Defender Technical Add-On: This addon takes care that the windows event log entries of defender parsed and converted correctly to the CIM format. Mainly XML formats are supported, but some raw formats work as well.
| |-- by Nextpart Security Intelligence GmbH
| |-- defined as TA-nextpart-defender version 0.3.9
[dependencies]
[tasks]
[input-groups]
[incompatible-apps]
[platform-requirements]
[dependency-graph]
|-- TA-nextpart-defender@0.3.9
| |-- TA-splunk-add-on-for-microsoft-windows@8.1.2
0.3.6
0.3.0 - CIM extraction/mapping with detection details
Merged PR 252: Simplify logic in regex and field for file_path & file…