How do I find the correct event IDs and patterns for file access?

I

iKAYAKIRAN

we have problem with parsing event types in windows event log. for example some events occured with same event id like (4656) that id can be a delete event or some times read like. we are parsing event types in description text of event log. can we make sure first , can you find all kind of events in event log ? we need

File Create
File Modify
File Delete
Fİle Move
File Rename
File Read Access
Folder Permission Change
Folder Audit Setting Changes
Failed Attemp ro Read File
Failed Attempt to Delete File

that events parsings enough to us just please check on internet to find parsing styles for event log to use correct event names

Continue reading...
 
Back
Top Bottom