yara_events

Track YARA matches for files specified in configuration data.

Table schema

Name Type Description
target_path TEXT The path scanned
category TEXT The category of the file
action TEXT Change action (UPDATE, REMOVE, etc)
transaction_id BIGINT ID used during bulk update
matches TEXT List of YARA matches
count INTEGER Number of YARA matches
strings TEXT Matching strings
tags TEXT Matching tags
time BIGINT Time of the scan
eid TEXT Event ID