Microsoft-Windows-EDP-Audit-Regular
2 events across 1 channel
| Event ID | Title | Channel |
|---|---|---|
| 201 | %8 has been copied (%2) from %5 (tagged as %4) to %7 (tagged as %6). | Admin |
| 301 | %3 has been changed from %5 (tagged as %6) to %7 (tagged as %8) in %9. | Admin |
Event ID 201 — %8 has been copied (%2) from %5 (tagged as %4) to %7 (tagged as %6).
Message
Fields
| Name | Description |
|---|---|
UserId | — |
Policy | — |
Justification | — |
SourceEnterpriseId | — |
SourceAppName | — |
DestinationEnterpriseId | — |
DestinationAppName | — |
DataInfo | — |
Event ID 301 — %3 has been changed from %5 (tagged as %6) to %7 (tagged as %8) in %9.
Message
Fields
| Name | Description |
|---|---|
UserId | — |
Policy | — |
Object | — |
Action | — |
SourceName | — |
SourceEnterpriseId | — |
DestinationName | — |
DestinationEnterpriseId | — |
ApplicationName | — |