I need to extract a specific event (event 4624) from the Security log of a Windows Server 2008 R2 server to see the list of interactive logon to a remote desktop server, but only if "Logon type" is 10.
Is there any script I can start from?
Regards
Marius