Hello,
I just started the evaluation of Eventlog Analyzer and would like to know if it is possible to summarize the log by its contained keywords.
Concretely, I would like to make a summary from the example log below.
In case of "type= =
"type=virus =infected " I would like to know the number of the log by "virus" as well.
========== example log ==========
date= =::11 = = = service=Microsoft-DS
date= =::12 = = = service=dns-request
date= =::13 = = = service=mail
date= =::14 = = = service=ping
date= =::22 =virus =infected = virus="wel-known123!"
date= =::23 =virus =infected = virus="famous-xyz!"
date= =::24 =virus =infected = virus="wel-known123!"
===============================
I would appreciate your advice.
Thank you
Yoshihiro Mochizuki