I need a solution
In the Syslog export for the Agent Risk logs, the key for the filepath field seems to be misplaced. The value of the filepath is in the position within the CSV where I would expect the field header for Filepath to exist.
Is anyone else able to corroborate this?
(sample below)
Header from the Syslog Export:
Source: Auto-Protect scan,
Risk name: EICAR Test String,
Occurrences: 1,
C:\Users\Administrator\Documents\Symantec\eicar.com,,
Actual action: Cleaned by deletion,
0