Files
splunk-security_content/data_sources/endpoint/Windows_Security_4742.yml
2023-03-27 11:12:42 +02:00

17 lines
473 B
YAML

name: Windows Security 4742
id: 450ed10f-fe09-4289-9e96-d3fcee7769e7
date: '2023-03-16'
author: Patrick Bareiss, Splunk
type: wineventlog_security
source: WinEventLog:Security
sourcetype: WinEventLog
service: security
product: windows
supported_TA:
- name: Splunk Add-on for Microsoft Windows
version: 8.5.0
url: https://splunkbase.splunk.com/app/742
references:
- https://www.ultimatewindowssecurity.com/securitylog/encyclopedia/event.aspx?eventID=4742
raw_fields: []