key value pair will get automatically extracted by splunk.
Could you please provide any details what exactly you want to match since from your example whatever is present after `=` sign will get store in `aaa` field.
see below url to match everything you mentioned-
https://regex101.com/r/X5Yzo7/1
---
If this reply helps you, an upvote would be appreciated.