Update windows/security/threat-protection/auditing/event-5155.md

Co-Authored-By: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com>
This commit is contained in:
MaratMussabekov 2019-08-28 15:31:33 +05:00 committed by GitHub
parent aa4ff89329
commit 3b6c2fabda
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -88,7 +88,7 @@ This event generates every time the [Windows Filtering Platform](https://docs.mi
- **Application Name** \[Type = UnicodeString\]**:** Full path and the name of the executable for the process. - **Application Name** \[Type = UnicodeString\]**:** Full path and the name of the executable for the process.
Logical disk is displayed in format \\device\\harddiskvolume\#. You can get all local volume numbers by using **diskpart** utility. The command to get volume numbers using diskpart is “**list volume**: Logical disk is displayed in the format \\device\\harddiskvolume\#. You can get all local volume numbers by using the **diskpart** utility. The command to get volume numbers using diskpart is “**list volume**:
<img src="images/diskpart.png" alt="DiskPart illustration" width="786" height="246" /> <img src="images/diskpart.png" alt="DiskPart illustration" width="786" height="246" />