CIRT Technical Manual

Table of Contents. Overview 4. ... PowerShell, batch, etc. Microsoft Windows perfmon, Event Logs, registry, WMI, etc. These methods are covered in detail at the Splunk Docs site . ... Use clear key-value pairs. When using key-value pairs, leverage the Common Information Model . ................
................