Skip to main content

Log4J - Log4Shell - Detections

Summary

This document displays information about the EDFs filled by the SEC - Endpoint Protection - Script - Log4J (Log4Shell) File Scan. These EDFs indicate vulnerability information about the Log4J/Log4Shell exploit.

Dependencies

Columns

ColumnDescription
ClientThe client of the displayed computer.
ComputerIDThe ID of the displayed computer.
ComputerThe name of the displayed computer.
Last ScanThe last time that a scan was performed.
Attack Attempts DetectedTrue if the YARA scan detected attack attempts; otherwise, False.
Vulnerable Files PresentTrue if vulnerable files were detected; otherwise, False.
Vulnerable Libraries PresentTrue if the Luna scan detected vulnerable libraries; otherwise, False.
Log LocationThe location on the computer of the script log file.
YARA Log LocationThe location on the computer of the YARA log file.
Luna Log LocationThe location on the computer of the Luna log file.