Win32_NTLogEvent, ROOT\cimv2 - Instances

Class | Methods | Properties (16) | Qualifiers (8) | Instances (999) | Namespaces (2)
Samples: VB Script | C# | VB.Net | Search on:Microsoft

Instances of Win32_NTLogEvent

This section contains sample wmi instances of Win32_NTLogEvent class with their properties from Microsoft Windows Server 2012 R2 Datacenter Evaluation.

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=81

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1004 //Long, 0x3EC
   'EventIdentifier' : 1073742828 //Long, 0x400003EC
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String
   'RecordNumber' : 81 //Long, 0x51
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141112221037.000000-000' //String
   'TimeWritten' : '20141112221037.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=80

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1006 //Long, 0x3EE
   'EventIdentifier' : 1073742830 //Long, 0x400003EE
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is advertising.' //String
   'RecordNumber' : 80 //Long, 0x50
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141112221037.000000-000' //String
   'TimeWritten' : '20141112221037.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=79

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['GC', '3268', '3269'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: GC
Directory instance LDAP port: 3268
Directory instance SSL port: 3269
' //String
   'RecordNumber' : 79 //Long, 0x4F
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141112221031.000000-000' //String
   'TimeWritten' : '20141112221031.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=78

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['NTDS', '389', '636'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: NTDS
Directory instance LDAP port: 389
Directory instance SSL port: 636
' //String
   'RecordNumber' : 78 //Long, 0x4E
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141112221030.000000-000' //String
   'TimeWritten' : '20141112221030.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=77

Properties={
   'Category' : 2 //Long, 0x2
   'CategoryString' : 'ADWS Configuration Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1100 //Long, 0x44C
   'EventIdentifier' : 1073742924 //Long, 0x4000044C
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'The values specified in the section of the configuration file for Active Directory Web Services have been loaded without errors.' //String
   'RecordNumber' : 77 //Long, 0x4D
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141112221027.000000-000' //String
   'TimeWritten' : '20141112221027.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=76

Properties={
   'Category' : 5 //Long, 0x5
   'CategoryString' : 'ADWS Certificate Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1401 //Long, 0x579
   'EventIdentifier' : 1073743225 //Long, 0x40000579
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['..rootdomain.com'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services successfully loaded the server certificate with the specified certificate name.

Certificate name: ..rootdomain.com
' //String
   'RecordNumber' : 76 //Long, 0x4C
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141112221020.000000-000' //String
   'TimeWritten' : '20141112221020.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=75

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1008 //Long, 0x3F0
   'EventIdentifier' : 1073742832 //Long, 0x400003F0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services has successfully reduced its security privileges.' //String
   'RecordNumber' : 75 //Long, 0x4B
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141112221014.000000-000' //String
   'TimeWritten' : '20141112221014.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=74

Properties={
   'Category' : 2 //Long, 0x2
   'CategoryString' : 'ADWS Configuration Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1100 //Long, 0x44C
   'EventIdentifier' : 1073742924 //Long, 0x4000044C
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'The values specified in the section of the configuration file for Active Directory Web Services have been loaded without errors.' //String
   'RecordNumber' : 74 //Long, 0x4A
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141112221014.000000-000' //String
   'TimeWritten' : '20141112221014.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=73

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1000 //Long, 0x3E8
   'EventIdentifier' : 1073742824 //Long, 0x400003E8
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is starting.' //String
   'RecordNumber' : 73 //Long, 0x49
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141112221013.000000-000' //String
   'TimeWritten' : '20141112221013.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=72

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1004 //Long, 0x3EC
   'EventIdentifier' : 1073742828 //Long, 0x400003EC
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String
   'RecordNumber' : 72 //Long, 0x48
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103171749.000000-000' //String
   'TimeWritten' : '20141103171749.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=71

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1006 //Long, 0x3EE
   'EventIdentifier' : 1073742830 //Long, 0x400003EE
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is advertising.' //String
   'RecordNumber' : 71 //Long, 0x47
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103171749.000000-000' //String
   'TimeWritten' : '20141103171749.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=70

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['GC', '3268', '3269'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: GC
Directory instance LDAP port: 3268
Directory instance SSL port: 3269
' //String
   'RecordNumber' : 70 //Long, 0x46
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103171745.000000-000' //String
   'TimeWritten' : '20141103171745.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=69

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['NTDS', '389', '636'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: NTDS
Directory instance LDAP port: 389
Directory instance SSL port: 636
' //String
   'RecordNumber' : 69 //Long, 0x45
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103171744.000000-000' //String
   'TimeWritten' : '20141103171744.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=68

Properties={
   'Category' : 2 //Long, 0x2
   'CategoryString' : 'ADWS Configuration Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1100 //Long, 0x44C
   'EventIdentifier' : 1073742924 //Long, 0x4000044C
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'The values specified in the section of the configuration file for Active Directory Web Services have been loaded without errors.' //String
   'RecordNumber' : 68 //Long, 0x44
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103171743.000000-000' //String
   'TimeWritten' : '20141103171743.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=67

Properties={
   'Category' : 5 //Long, 0x5
   'CategoryString' : 'ADWS Certificate Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1401 //Long, 0x579
   'EventIdentifier' : 1073743225 //Long, 0x40000579
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['..rootdomain.com'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services successfully loaded the server certificate with the specified certificate name.

Certificate name: ..rootdomain.com
' //String
   'RecordNumber' : 67 //Long, 0x43
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103171736.000000-000' //String
   'TimeWritten' : '20141103171736.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=66

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1008 //Long, 0x3F0
   'EventIdentifier' : 1073742832 //Long, 0x400003F0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services has successfully reduced its security privileges.' //String
   'RecordNumber' : 66 //Long, 0x42
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103171731.000000-000' //String
   'TimeWritten' : '20141103171731.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=65

Properties={
   'Category' : 2 //Long, 0x2
   'CategoryString' : 'ADWS Configuration Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1100 //Long, 0x44C
   'EventIdentifier' : 1073742924 //Long, 0x4000044C
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'The values specified in the section of the configuration file for Active Directory Web Services have been loaded without errors.' //String
   'RecordNumber' : 65 //Long, 0x41
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103171731.000000-000' //String
   'TimeWritten' : '20141103171731.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=64

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1000 //Long, 0x3E8
   'EventIdentifier' : 1073742824 //Long, 0x400003E8
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is starting.' //String
   'RecordNumber' : 64 //Long, 0x40
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103171729.000000-000' //String
   'TimeWritten' : '20141103171729.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=63

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1004 //Long, 0x3EC
   'EventIdentifier' : 1073742828 //Long, 0x400003EC
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String
   'RecordNumber' : 63 //Long, 0x3F
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103170626.000000-000' //String
   'TimeWritten' : '20141103170626.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=62

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1006 //Long, 0x3EE
   'EventIdentifier' : 1073742830 //Long, 0x400003EE
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is advertising.' //String
   'RecordNumber' : 62 //Long, 0x3E
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103170626.000000-000' //String
   'TimeWritten' : '20141103170626.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=61

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['GC', '3268', '3269'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: GC
Directory instance LDAP port: 3268
Directory instance SSL port: 3269
' //String
   'RecordNumber' : 61 //Long, 0x3D
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103170621.000000-000' //String
   'TimeWritten' : '20141103170621.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=60

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['NTDS', '389', '636'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: NTDS
Directory instance LDAP port: 389
Directory instance SSL port: 636
' //String
   'RecordNumber' : 60 //Long, 0x3C
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103170621.000000-000' //String
   'TimeWritten' : '20141103170621.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=59

Properties={
   'Category' : 2 //Long, 0x2
   'CategoryString' : 'ADWS Configuration Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1100 //Long, 0x44C
   'EventIdentifier' : 1073742924 //Long, 0x4000044C
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'The values specified in the section of the configuration file for Active Directory Web Services have been loaded without errors.' //String
   'RecordNumber' : 59 //Long, 0x3B
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103170618.000000-000' //String
   'TimeWritten' : '20141103170618.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=58

Properties={
   'Category' : 5 //Long, 0x5
   'CategoryString' : 'ADWS Certificate Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1401 //Long, 0x579
   'EventIdentifier' : 1073743225 //Long, 0x40000579
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['..rootdomain.com'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services successfully loaded the server certificate with the specified certificate name.

Certificate name: ..rootdomain.com
' //String
   'RecordNumber' : 58 //Long, 0x3A
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103170610.000000-000' //String
   'TimeWritten' : '20141103170610.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=57

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1008 //Long, 0x3F0
   'EventIdentifier' : 1073742832 //Long, 0x400003F0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services has successfully reduced its security privileges.' //String
   'RecordNumber' : 57 //Long, 0x39
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103170605.000000-000' //String
   'TimeWritten' : '20141103170605.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=56

Properties={
   'Category' : 2 //Long, 0x2
   'CategoryString' : 'ADWS Configuration Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1100 //Long, 0x44C
   'EventIdentifier' : 1073742924 //Long, 0x4000044C
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'The values specified in the section of the configuration file for Active Directory Web Services have been loaded without errors.' //String
   'RecordNumber' : 56 //Long, 0x38
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103170605.000000-000' //String
   'TimeWritten' : '20141103170605.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=55

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1000 //Long, 0x3E8
   'EventIdentifier' : 1073742824 //Long, 0x400003E8
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is starting.' //String
   'RecordNumber' : 55 //Long, 0x37
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141103170603.000000-000' //String
   'TimeWritten' : '20141103170603.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=54

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1004 //Long, 0x3EC
   'EventIdentifier' : 1073742828 //Long, 0x400003EC
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String
   'RecordNumber' : 54 //Long, 0x36
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141031053948.000000-000' //String
   'TimeWritten' : '20141031053948.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=53

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1006 //Long, 0x3EE
   'EventIdentifier' : 1073742830 //Long, 0x400003EE
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is advertising.' //String
   'RecordNumber' : 53 //Long, 0x35
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141031053948.000000-000' //String
   'TimeWritten' : '20141031053948.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=52

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['GC', '3268', '3269'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: GC
Directory instance LDAP port: 3268
Directory instance SSL port: 3269
' //String
   'RecordNumber' : 52 //Long, 0x34
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141031053942.000000-000' //String
   'TimeWritten' : '20141031053942.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=51

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['NTDS', '389', '636'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: NTDS
Directory instance LDAP port: 389
Directory instance SSL port: 636
' //String
   'RecordNumber' : 51 //Long, 0x33
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141031053942.000000-000' //String
   'TimeWritten' : '20141031053942.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=50

Properties={
   'Category' : 2 //Long, 0x2
   'CategoryString' : 'ADWS Configuration Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1100 //Long, 0x44C
   'EventIdentifier' : 1073742924 //Long, 0x4000044C
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'The values specified in the section of the configuration file for Active Directory Web Services have been loaded without errors.' //String
   'RecordNumber' : 50 //Long, 0x32
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141031053938.000000-000' //String
   'TimeWritten' : '20141031053938.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=49

Properties={
   'Category' : 5 //Long, 0x5
   'CategoryString' : 'ADWS Certificate Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1401 //Long, 0x579
   'EventIdentifier' : 1073743225 //Long, 0x40000579
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['..rootdomain.com'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services successfully loaded the server certificate with the specified certificate name.

Certificate name: ..rootdomain.com
' //String
   'RecordNumber' : 49 //Long, 0x31
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141031053933.000000-000' //String
   'TimeWritten' : '20141031053933.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=48

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1008 //Long, 0x3F0
   'EventIdentifier' : 1073742832 //Long, 0x400003F0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services has successfully reduced its security privileges.' //String
   'RecordNumber' : 48 //Long, 0x30
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141031053928.000000-000' //String
   'TimeWritten' : '20141031053928.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=47

Properties={
   'Category' : 2 //Long, 0x2
   'CategoryString' : 'ADWS Configuration Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1100 //Long, 0x44C
   'EventIdentifier' : 1073742924 //Long, 0x4000044C
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'The values specified in the section of the configuration file for Active Directory Web Services have been loaded without errors.' //String
   'RecordNumber' : 47 //Long, 0x2F
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141031053928.000000-000' //String
   'TimeWritten' : '20141031053928.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=46

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1000 //Long, 0x3E8
   'EventIdentifier' : 1073742824 //Long, 0x400003E8
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is starting.' //String
   'RecordNumber' : 46 //Long, 0x2E
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141031053926.000000-000' //String
   'TimeWritten' : '20141031053926.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=45

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1004 //Long, 0x3EC
   'EventIdentifier' : 1073742828 //Long, 0x400003EC
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String
   'RecordNumber' : 45 //Long, 0x2D
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141026220557.000000-000' //String
   'TimeWritten' : '20141026220557.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=44

Properties={
   'Category' : 1 //Long, 0x1
   'CategoryString' : 'ADWS Startup Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1006 //Long, 0x3EE
   'EventIdentifier' : 1073742830 //Long, 0x400003EE
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : null
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is advertising.' //String
   'RecordNumber' : 44 //Long, 0x2C
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141026220557.000000-000' //String
   'TimeWritten' : '20141026220557.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=43

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['GC', '3268', '3269'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: GC
Directory instance LDAP port: 3268
Directory instance SSL port: 3269
' //String
   'RecordNumber' : 43 //Long, 0x2B
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141026220554.000000-000' //String
   'TimeWritten' : '20141026220554.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}

Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=42

Properties={
   'Category' : 3 //Long, 0x3
   'CategoryString' : 'ADWS Instance Events' //String
   'ComputerName' : '..rootdomain.com' //String
   'Data' : null
   'EventCode' : 1200 //Long, 0x4B0
   'EventIdentifier' : 1073743024 //Long, 0x400004B0
   'EventType' : 3 //Byte, 0x3
   'InsertionStrings' : ['NTDS', '389', '636'] //Variant()
   'Logfile' : 'Active Directory Web Services' //String
   'Message' : 'Active Directory Web Services is now servicing the specified directory instance.

Directory instance: NTDS
Directory instance LDAP port: 389
Directory instance SSL port: 636
' //String
   'RecordNumber' : 42 //Long, 0x2A
   'SourceName' : 'ADWS' //String
   'TimeGenerated' : '20141026220553.000000-000' //String
   'TimeWritten' : '20141026220553.000000-000' //String
   'Type' : 'Information' //String
   'User' : null
}
WUtils.com
online utility - toplist