Hi @spayneort , Thank you so much for your reply. Unfortunately, both the blacklist stanza did not work. I applied this under monitoring stanza of UF. [WinEventLog://Security] disabled = 0 ignoreOlderThan = 7d evt_resolve_ad_obj = 1 checkpointInterval = 5 current_only=1 renderXml=false index = win_event_logs blacklist1= EventCode="^515[68]$" Message="Application\sName:\s.*(?:zabbix_agentd|splunkd)\.exe$" Any suggestions.
... View more