WindowsUpdate.log Audit - Windows
Log In or Register to download the BES file, and more.

0 Votes

Description

<enter a description of the analysis here>

Property Details

ID2995914
StatusAlpha - Code that was just developed
TitleWindowsUpdate.log Audit - Windows
DomainBESC
Added by on 3/29/2016 12:02:24 PM
Last Modified by on 3/29/2016 12:02:24 PM
Counters 5538 Views / 92 Downloads
User Rating 1 star 2 star 3 star 4 star 5 star * Average over 0 ratings. ** Log In or Register to add your rating.

Properties

Last 100 lines of WindowsUpdate.log
Period 2 days
 
  * Results in a true/false
Show indented relevance
(item 1 of /* -> This "it" refers to the last 100 lines of the file -> */ it) whose( /* -> remove empty lines, which is why this relevance can return less than 100 lines per file -> */ it as trimmed string != "") of ( /* -> this is the number of lines of the file from the previous statement -> */ item 1 of it, (lines of /* -> the file object -> */ item 0 of it) ) /* -> This whose statement is responsible for filtering for only the last 100 lines of the file -> */ whose ( (line number of /* -> lines of the file -> */ item 1 of it) > ( /* -> number of lines of the file -> */ item 0 of it - 100 /* <- This is the number of lines to return, which is subtracted from the total # of lines <- */ ) ) of ( /* -> the parent file object itself -> */ it, number of lines of it) of files "WindowsUpdate.log" whose( not exists lines whose(it contains "Get-WindowsUpdateLog PowerShell") of it ) of ( windows folders ; folders "Logs" of folders "__Global" of data folders of clients)

Relevance

Windows Only (Relevance 2997197)
Used in 6452 fixlets and 32 analyses   * Results in a true/false
Show indented relevance
/* Windows Only */ windows of operating system
Used in 158 fixlets and 17 analyses   * Results in a true/false
Show indented relevance
/* Windows XP or Higher */ version of operating system >= "5.1"
Used in 1 analsis   * Results in a true/false
Show indented relevance
exists files "WindowsUpdate.log" whose( exists lines of it AND not exists lines whose(it contains "Get-WindowsUpdateLog PowerShell" OR it contains "Checking write access") of it ) of ( windows folders ; folders "Logs" of folders "__Global" of data folders of clients )

Sharing

Social Media:
Share this page on Yammer

Comments

Log In or Register to leave comments!