The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Endpoint Security Process Tracker hit found

Prev Next

Sample Process Tracker Hit Found message.

CEF:0|fireeye|hx|9.9.0|Process Tracker Hit Found|Process Tracker Hit Found|10|rt=May 01 2018 05:42:14 UTC dvchost=abc-hx.helix.apps.fireeye.com categoryDeviceGroup=/IDS categoryDeviceType=Process Tracker categoryObject=/Host cs1Label=Host Agent Cert Hash cs1=Doug5I839radPSmAwf3512 dst=10.1.49.81 dmac=00-50- 56-88-e5-99 dhost=Home-PC-11 dntdom=WORKGROUP deviceCustomDate1Label=Agent Last Audit deviceCustomDate1=May 01 2018 04:54:30 UTC cs2Label=FireEye Agent Version cs2=26.21.8 cs5Label=Target GMT Offset cs5=+PT2H cs6Label=Target OS cs6=Windows 10 Pro 16299 externalId=3407 start=May 01 2018 05:42:13 UTC categoryOutcome=/Success categorySignificance=/Compromise categoryBehavior=/Found cs7Label=Resolution cs7=ALERT cs8Label=Alert Types cs8=PRT cs13Label=Malware Engine cs13=AV cs12Label=Malware Category cs12=file-event act=Detection PRT Hit msg=Host Home-PC-11 Malware alert categoryTupleDescription=Process Tracker found a compromise indication. cs4Label=Process Name cs4=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe cs9Label=MD5 cs9=94bcdff4b00947b34795c6f2209c9707 cs10Label=SHA1 cs10=918652d77d2ffce0ea282fe1f61fffd207b5d6ab cs11Label=Malware Signature cs11=Trojan.GenericKD.30688709 categoryTechnique=Malware