box.all.win

box.all.win

Scope

This union table collects information from multiple tables containing system events generated and sent from Windows machines. Working with this table will help you monitor and detect any threats or suspicious behavior in Windows-related events.

Send data to Devo

Among the 17 compatible data sources, the most popular and security-critical are:

Secure it

The following Exchange Alert Packs, Activeboards, and Query Pack help monitor events from this table: