29F02128-C5CB-4D61-B9DF-91EAEFBA4937
29F02128-C5CB-4D61-B9DF-91EAEFBA4937
Message Analyzer Parsing Levels
ParsingLevelAsset
1
Message Analyzer
2014-08-01T00:00:00
2014-08-01T00:00:00
4
The official release of parsing levels from the Message Analyzer Team. Download and sync this set to get periodic updates.
0
FE44401A-6D5C-4F94-9E9F-6BEC59054B42
Full
Default
805106C0-A1A8-4268-A567-E9FFE8037F08
Network Analysis
Default
TCP
TCP.Port == 53 or TCP.Port==42
UDP
UDP.Port == 53 or UDP.Port==546 or UDP.Port==67 or UDP.Port==137 or UDP.Port==1512
1AAD2E3B-FA33-4FE1-BD2A-61F3CF23FD6E
File Sharing
Default
TCP
TCP.Port == 445 or TCP.Port==135
SMB
SMB2
UDP
UDP.Port == 53 or UDP.Port==546 or UDP.Port==67 or UDP.Port==137 or UDP.Port==1512
319852F0-7C77-4045-AD0B-3A800C08186E
High Performance Capture without Parsing
Default
Etw
CapFile
PcapFile
229A1D7D-7E60-4F4F-B6E9-A9D0B32DCF80
HTTP
Default
IPv4
IPv4.Protocol == 6
IPv6
IPv6.NextHeader ==6
WFPCapture
WFPCapture.Protocol ==6
TCP
TCP.Port == 80
HTTP
4DCB430D-35C1-4862-A423-ACBBDA3D7084
Identity and Active Directory
Default
IPv4
IPv4.Protocol == 6
IPv6
IPv6.NextHeader ==6
TCP
TCP.Port==389 or TCP.Port==3268