Keywords,Date and Time,Source,Event ID,Task Category Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read....

1 answer below »

Python programming help:


I need to have a python script that will process a csv file that it takes as input. The csv file will be the Windows event security logs exported to a CSV file. The program will process the csv file and filter the data for only events with an ID of 4625 and write them to a new csv file. Please do not use any third party libraries like Pandas.




Keywords,Date and Time,Source,Event ID,Task Category Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Read Credential This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential Manager credentials were read. Subject: Security ID:JAKE-PC\Admin Account Name:Admin Account Domain:JAKE-PC Logon ID:0xEE27E8 Read Operation:Enumerate Credentials This event occurs when a user performs a read operation on stored credentials in Credential Manager." Audit Success,8/24/2021 12:29:56 PM,Microsoft-Windows-Security-Auditing,5379,User Account Management,"Credential
Answered Same DayAug 24, 2021

Answer To: Keywords,Date and Time,Source,Event ID,Task Category Audit Success,8/24/2021 12:29:56...

Arun Shankar answered on Aug 25 2021
148 Votes
infile = input("Enter input filename: ")
outfile = input("Enter output filename: ")
f = open(infil
e, "r")
lst = f.readlines()
res = ""
count = 0
for line in lst:
if(count < 1):
pass
else:
res = res + line
count += 1
lst = res.split(",")
my_list = list()
counter = 0
for...
SOLUTION.PDF

Answer To This Question Is Available To Download

Related Questions & Answers

More Questions »

Submit New Assignment

Copy and Paste Your Assignment Here