Synopsis
SIEM Pull Service has detected via Splunk query that, on this Windows system, a service or daemon was started.
Description
SIEM Pull Service has detected via Splunk query that, on this Windows system, a service or daemon was started. The query used was source="WinEventLog:*" AND (Message="*service*running state*" OR Message="*service*start*")