|
看SECURITY日志的详细信息:
C:Windowssystem32>wevtutil gl security
name: security
enabled: true
type: Admin
owningPublisher:
isolation: Custom
channelAccess: O:BAG:SYD:(A;;0xf0005;;;SY)(A;;0×5;;;BA)(A;;0×1;;;S-1-5-32-573)
logging:
logFileName: %SystemRoot%System32WinevtLogssecurity.evtx
retention: false
autoBackup: false
maxSize: 20971520
publishing:
fileMax: 1
清空SECURITY/SYSTEM/APPLICATION日志:
C:Windowssystem32>wevtutil cl security
C:Windowssystem32>wevtutil cl system
C:Windowssystem32>wevtutil cl application |
|
|
|
|
|
|