Quantcast
Channel: Questions in topic: "universal-forwarder"
Viewing all articles
Browse latest Browse all 1551

Universal forwarder executes regmon, powershells and others with out them beeing explicitly configured

$
0
0
Hi, why is my UF on Windows executing various splunk-* tools without them beeing configured in any input? Every few minutes I see them in sysmon: splunk-powershell.exe splunk-regmon.exe splunk-powershell.exe splunk-netmon.exe splunk-admon.exe splunk-MonitorNoHandle.exe splunk-winprintmon.exe I do not see them in any inputs.conf. thx afx

Viewing all articles
Browse latest Browse all 1551

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>