Ad slot: top

SPL

File Accesses in a Windows Environment by user

Description

Submitted by Go Splunk

File Accesses in a Windows Environment by user
1 0
sourcetype="WinEventLog:Security" user=* (EventCode=560 OR EventCode=4656) | chart count by Type

Comments

0 total

Be the first to comment on this SPL.

Leave a comment

You must log in to post a comment.

Ad slot: bottom