Getting Data In

monitor specific window services

ajit2548
New Member

I want to monitor specific windows services. Say example "abcd" & "xyz". I was able to create a visualization but it lists down all services.

below is the query:
| pivot monitorService RootObject count(RootObject) AS "Count of 1563262316.19" SPLITROW DisplayName AS DisplayName SPLITCOL State SORT 100 DisplayName ROWSUMMARY 0 COLSUMMARY 0 NUMCOLS 100 SHOWOTHER 1

Can somebody help in modifying the query?
early help is much appreciated. thanks 🙂

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...