🖥️
Windows DFIR
⌘
Ctrl
k
For the complete documentation index, see
llms.txt
. This page is also available as
Markdown
.
Copy
On this page
Windows Artifacts
Event IDs
Security
File System
4663
Previous
4688 - Process Created
Next
4656