File: ics.yaml

package info (click to toggle)
forensic-artifacts 20230928-1
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid, trixie
  • size: 996 kB
  • sloc: python: 1,939; sh: 22; makefile: 11
file content (19 lines) | stat: -rw-r--r-- 838 bytes parent folder | download
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
# Artifacts related to ICS related software
---
name: WindowsSiemensWinCCLogFile
doc: Siemens WinCC software logs.
sources:
- type: FILE
  attributes:
    paths:
    - '%%environ_programfiles%%\Siemens\WinCC\Diagnose\*'
    - '%%environ_programfiles%%\Common Files\Siemens\ace\bin\Diagnosis\*'
    - '%%environ_programfilesx86%%\Siemens\WinCC\Diagnose\*'
    - '%%environ_programfilesx86%%\Common Files\Siemens\ace\bin\Diagnosis\*'
    - '%%environ_windir%%\security\SecurityController\*'
    - '%%environ_allusersappdata%%\Siemens\Automation\Logfiles\*'
    - '%%environ_allusersappdata%%\Siemens\Automation\Logfiles\Setup\*'
    - '%%environ_allusersappdata%%\Siemens\Logs\*'
    separator: '\'
supported_os: [Windows]
urls: ['https://cache.industry.siemens.com/dl/files/865/109757865/att_963121/v5/109757865_WinCC_Diagnostics_en.pdf']