System32
Events
Compliance
Validator
TLS/SSL
PingSentry
GeoIP
Tools
Source
Microsoft-Windows-Sysmon
(1)
Category
WmiEventFilter activity detected
(1)
Tags
Sysmon
All events
ID
Event Message
19
WmiEventFilter activity detected: RuleName: %1!s! EventType: %2!s! UtcTime: %3!s! Operation: %4!s! User: %5!s! EventNamespace: %6!s! Name: %7!s! Query: %8!s!