Event Log Was Cleared

Event Log was Cleared

Configuration

query

EventID:104

config

Key | Value — | — type | aggregation-v1 query | EventID:104 streams | [5f74fe0891d2ba1b645adb8d] conditions | {expression:null} search_within_ms | 3600000 execute_every_ms | 3600000

Windows Clearing Event Logs

When an event log gets cleared, it is often suspicious.


Last modified December 31, 1969