Windows Defender event-viewer and logs
Location Windows
C:\Program Files\SplunkUniversalForwarder\etc\apps\SplunkUniversalForwarder\local\input.confWhen to Use Each
Microsoft Defender logs can be accessed via
Make a Index in Splunk
For Event Logs
For Files
Malware test file
Last updated