Trying to blacklist an event that is generating a lot of logs.
Previously asked this question here Solved: Re: Splunk Blacklist DesktopExtension.exe addition... - Splunk Community but the solution is not working.
Any other thoughts on how to blacklist Desktopextension.exe for windows security events.
blacklist = EventCode=4673 message="DesktopExtension\.exe