EventSentry
  • System32
  • Sysmon
  • Events
  • Compliance
  • Validator
  • TLS/SSL
  • GeoIP
  • Tools


Windows Security Events



Audit Category
  • Policy Change (5)
Operating Systems
  • Windows 10 (5)
  • Windows 2008 (5)
  • Windows 2008 R2 (5)
  • Windows 2012 (5)
  • Windows 2012 R2 (5)
  • Windows 2016 (5)
  • Windows 2019 (5)
  • Windows 2022 (5)
  • Windows 2025 (5)
  • Windows 7 (5)
  • Windows 8 (5)
  • Windows 8.1 (5)
  • Windows Vista (5)
  • Windows 11 (4)
Tags
  • Audit Success (1)
Auditing
  • Conditional (2)
  • Rarely (2)
  • Always (1)
Volume
  • Low (4)
  • Medium (2)
  • High (1)
Audit Subcategory
  • Filtering Platform Policy Change (4)
  • Other Policy Change Events (1)

AppLocker
  • All AppLocker events
EventSentry
  • All EventSentry events
Security
  • All Windows Security events
Sysmon
  • All Sysmon events
ID Event Description
5446 A Windows Filtering Platform callout has been changed.
5447 A Windows Filtering Platform filter has been changed.
Audit Success
5448 A Windows Filtering Platform provider has been changed.
5449 A Windows Filtering Platform provider context has been changed.
5450 A Windows Filtering Platform sub-layer has been changed.



© netikus.net ltd 2002-2026 | EventSentry Events | Codes | Sysmon | STIG | AppLocker | Privacy Policy