Batch File Write To System32

Description

The search looks for a batch file (.bat) written to the Windows system directory tree.

   Help

Batch File Write To System32 Help

You must be ingesting data that records the file-system activity from your hosts to populate the Endpoint file-system data-model node. If you are using Sysmon, you will need a Splunk Universal Forwarder on each endpoint from which you want to collect data.

   Search

Open in Search