riskware-infection (Network Security)
- Published on Aug 25, 2026
Prev Next CEF:0|Trellix|MPS|9.0.2.924861|RI|riskware-infection|1|rt=Oct 16 2020
14:08:36 UTC start=Oct 16 2020 14:05:30 UTC end=Oct 16 2020 14:08:36 UTC
src=xx.xxx.xxx.xxx dst=xx.xx.xx.xx request=xxx.xx.x.x/~kjohnson/CVE-2014-
8439/Exploit.html cs1Label=sname cs1=PUP.Generic.MVX act=notified
dvc=xx.x.x.xxx dvchost=abc.mrl.trellix.com smac=00:50:56:b4:67:9b
dmac=a0:d3:c1:f1:4a:7d spt=50748 dpt=80 cn1Label=vlan cn1=0 externalId=4077
devicePayloadId=ed14f6a4-9796-4dec-9602-f6ce7cec871f msg=risk ware detected:5
cs3Label=osinfo cs3=Microsoft Windows7 32-bit 6.1 sp1 17.0114 cs4Label=link
cs4=https://abc.mrl.trellix.com/detection/objects?uuid\=ed14f6a4-9796-4dec-
9602-f6ce7cec871f .
Was this article helpful?
Related articles
Network Security (NX) > Common Security Platform Product Docs > Trellix Alert Notifications ( CEF | LEEF | CSV | XML | JSON ) > CEF notifications > Sample CEF notifications per event type
Network Security (NX) > Common Security Platform Product Docs > Trellix Alert Notifications ( CEF | LEEF | CSV | XML | JSON ) > CEF notifications > Sample CEF notifications per event type
Network Security (NX) > Common Security Platform Product Docs > Trellix Alert Notifications ( CEF | LEEF | CSV | XML | JSON ) > CEF notifications > Sample CEF notifications per event type
Network Security (NX) > Common Security Platform Product Docs > Trellix Alert Notifications ( CEF | LEEF | CSV | XML | JSON ) > CEF notifications > Sample CEF notifications per event type