(TargetObject:\\SYSTEM\\CurrentControlSet\\Services\\EventLog\\* TargetObject:\\File) (-Details:\\System32\\Winevt\\Logs\\*)