Synopsis
SIEM Pull Service has detected via Splunk query that, on this Windows system, a user account was created.
Description
SIEM Pull Service has detected via Splunk query that, on this Windows system, a user account was created. The query used was (sourcetype="WinEventLog:Security" Message="*user*created*")