Active View Snapshot

Created by: esecadm

Created on: Wed Aug 17 14:25:15 IST 2011

Disclaimer: All events may not be displayed. Active Views event table shows a maximum of 750 events per 30 second interval.

SeverityCollectorEventNameMessageVulnerabilityDeviceNameDeviceAttackNameTargetIPMSSPCustomerNameEventTimeDeviceEventTimeDeviceEventTimeStringTaxonomyLevel1TaxonomyLevel2TaxonomyLevel3XDASTaxonomyNameXDASOutcomeNameInitUserNameInitUserDomainInitUserFullNameInitUserDepartmentEffectiveUserNameInitIPInitAssetFunctionInitServicePortNameTargetUserNameTargetUserDomainTargetUserFullNameTargetUserDepartmentTargetAssetFunctionTargetServicePortNameTargetTrustNameFileNameDataContextObserverHostNameObserverIPReporterHostNameReporterIPInitHostNameTargetHostNameCustomerVar141CustomerVar142CustomerVar143ReservedVar131ReservedVar150ObserverHostDomain
1 NewConnectionA new connection from machine 192.168.170.74 was made with the Syslog Event Source Server: Syslog Server (ID 84E9A4F2-999D-102E-B900-0016E699F453).; reqId(5E4858D6-A570-102E-A971-0016E699F453)0  192.168.170.103 8/17/11 2:20:20 PM       System                Collector_Manager SLES10SP264.applabs.com  SLES10SP264      
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER 
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER 
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER 
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER 
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER 
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER 
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER 
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER 
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER 
1Red Hat Enterprise Linuxsendmail: Fromfrom=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]sendmail[3492]: p3D3nlMg003492: from=<oracle@pacrabp02.astro.com.my>, size=768, class=0, nrcpts=6, msgid=<201104130349.p3D3nlXs003490@pacrabp02.astro.com.my>, proto=ESMTP, daemon=MTA, relay=localhost.localdomain [127.0.0.1]0Enterprise Linux 192.168.170.74unknown8/17/11 2:20:20 PM8/17/11 2:20:20 PMWed Aug 17 2011 14:20:20 GMT+0530 (IST)     oraclepacrabp02.astro.com.my   192.168.170.74 sendmail          192.168.170.74 192.168.170.74      USER