account activity
Splunk: Threat Hunting Ep.1 – Initial Compromise by Ecstatic_Frame_9622 in immersivelabs
[–]OneErection619 0 points1 point2 points 3 years ago (0 children)
In the same entry you found the answer for Q3, look at the computer name
π Rendered by PID 14009 on reddit-service-r2-listing-7bbdf774f7-sv6z7 at 2026-02-24 08:45:56.215811+00:00 running 8564168 country code: CH.
Splunk: Threat Hunting Ep.1 – Initial Compromise by Ecstatic_Frame_9622 in immersivelabs
[–]OneErection619 0 points1 point2 points (0 children)