Splunk Search

Splunk query to find browsers installed on a machine

Roy_9
Motivator

Hi,

can someone help me with splunk search to identify browsers installed on a machine, im looking for a specific field where i can capture this data.


thanks

Labels (4)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

What data do you have ingested into Splunk?

0 Karma

Roy_9
Motivator

@ITWhisperer we have splunk add-on windows deployed on all machines.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

Extending @ITWhisperer 's answer - unless you have a third-party solution (some form of asset inventory software or even your own scripted input listing installed software), Splunk on its own cannot tell you since it only works on the data you give it. So by default you can only pull what your Windows machine produces (event logs, maybe some log files). So if you can find this info in what Windows report on its own - good, you can use it. But I don't recall that it does.

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

OK so what information have managed to ingest into Splunk from them? Essentially, you can only query information which has been ingested (with a few exceptions).

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Design, Compete, Win: Submit Your Best Splunk Dashboards for a .conf26 Pass

Hello Splunkers,  We’re excited to kick off a Splunk Dashboard contest! We know that dashboards are a primary ...

May 2026 Splunk Expert Sessions: Security & Observability

Level Up Your Operations: May 2026 Splunk Expert Sessions Whether you are refining your security posture or ...