Includes&Samples |
Win32_NTLogEvent, ROOT\cimv2 - InstancesClass | Methods | Properties (16) | Qualifiers (8) | Instances (999) | Namespaces (2)Samples: VB Script | C# | VB.Net | Search on:Microsoft Instances of Win32_NTLogEventThis section contains sample wmi instances of Win32_NTLogEvent class with their properties from Microsoft Windows Server 2012 R2 Datacenter Evaluation. Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=81Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1004 //Long, 0x3EC 'EventIdentifier' : 1073742828 //Long, 0x400003EC 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String 'RecordNumber' : 81 //Long, 0x51 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141112221037.000000-000' //String 'TimeWritten' : '20141112221037.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=80Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1006 //Long, 0x3EE 'EventIdentifier' : 1073742830 //Long, 0x400003EE 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is advertising.' //String 'RecordNumber' : 80 //Long, 0x50 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141112221037.000000-000' //String 'TimeWritten' : '20141112221037.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=79Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['GC', '3268', '3269'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: GC Directory instance LDAP port: 3268 Directory instance SSL port: 3269 ' //String 'RecordNumber' : 79 //Long, 0x4F 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141112221031.000000-000' //String 'TimeWritten' : '20141112221031.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=78Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['NTDS', '389', '636'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: NTDS Directory instance LDAP port: 389 Directory instance SSL port: 636 ' //String 'RecordNumber' : 78 //Long, 0x4E 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141112221030.000000-000' //String 'TimeWritten' : '20141112221030.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=77Properties={ 'Category' : 2 //Long, 0x2 'CategoryString' : 'ADWS Configuration Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1100 //Long, 0x44C 'EventIdentifier' : 1073742924 //Long, 0x4000044C 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'The values specified in the 'RecordNumber' : 77 //Long, 0x4D 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141112221027.000000-000' //String 'TimeWritten' : '20141112221027.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=76Properties={ 'Category' : 5 //Long, 0x5 'CategoryString' : 'ADWS Certificate Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1401 //Long, 0x579 'EventIdentifier' : 1073743225 //Long, 0x40000579 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['..rootdomain.com'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services successfully loaded the server certificate with the specified certificate name.
Certificate name: ..rootdomain.com ' //String 'RecordNumber' : 76 //Long, 0x4C 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141112221020.000000-000' //String 'TimeWritten' : '20141112221020.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=75Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1008 //Long, 0x3F0 'EventIdentifier' : 1073742832 //Long, 0x400003F0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services has successfully reduced its security privileges.' //String 'RecordNumber' : 75 //Long, 0x4B 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141112221014.000000-000' //String 'TimeWritten' : '20141112221014.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=74Properties={ 'Category' : 2 //Long, 0x2 'CategoryString' : 'ADWS Configuration Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1100 //Long, 0x44C 'EventIdentifier' : 1073742924 //Long, 0x4000044C 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'The values specified in the 'RecordNumber' : 74 //Long, 0x4A 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141112221014.000000-000' //String 'TimeWritten' : '20141112221014.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=73Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1000 //Long, 0x3E8 'EventIdentifier' : 1073742824 //Long, 0x400003E8 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is starting.' //String 'RecordNumber' : 73 //Long, 0x49 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141112221013.000000-000' //String 'TimeWritten' : '20141112221013.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=72Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1004 //Long, 0x3EC 'EventIdentifier' : 1073742828 //Long, 0x400003EC 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String 'RecordNumber' : 72 //Long, 0x48 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103171749.000000-000' //String 'TimeWritten' : '20141103171749.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=71Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1006 //Long, 0x3EE 'EventIdentifier' : 1073742830 //Long, 0x400003EE 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is advertising.' //String 'RecordNumber' : 71 //Long, 0x47 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103171749.000000-000' //String 'TimeWritten' : '20141103171749.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=70Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['GC', '3268', '3269'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: GC Directory instance LDAP port: 3268 Directory instance SSL port: 3269 ' //String 'RecordNumber' : 70 //Long, 0x46 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103171745.000000-000' //String 'TimeWritten' : '20141103171745.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=69Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['NTDS', '389', '636'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: NTDS Directory instance LDAP port: 389 Directory instance SSL port: 636 ' //String 'RecordNumber' : 69 //Long, 0x45 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103171744.000000-000' //String 'TimeWritten' : '20141103171744.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=68Properties={ 'Category' : 2 //Long, 0x2 'CategoryString' : 'ADWS Configuration Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1100 //Long, 0x44C 'EventIdentifier' : 1073742924 //Long, 0x4000044C 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'The values specified in the 'RecordNumber' : 68 //Long, 0x44 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103171743.000000-000' //String 'TimeWritten' : '20141103171743.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=67Properties={ 'Category' : 5 //Long, 0x5 'CategoryString' : 'ADWS Certificate Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1401 //Long, 0x579 'EventIdentifier' : 1073743225 //Long, 0x40000579 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['..rootdomain.com'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services successfully loaded the server certificate with the specified certificate name.
Certificate name: ..rootdomain.com ' //String 'RecordNumber' : 67 //Long, 0x43 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103171736.000000-000' //String 'TimeWritten' : '20141103171736.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=66Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1008 //Long, 0x3F0 'EventIdentifier' : 1073742832 //Long, 0x400003F0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services has successfully reduced its security privileges.' //String 'RecordNumber' : 66 //Long, 0x42 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103171731.000000-000' //String 'TimeWritten' : '20141103171731.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=65Properties={ 'Category' : 2 //Long, 0x2 'CategoryString' : 'ADWS Configuration Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1100 //Long, 0x44C 'EventIdentifier' : 1073742924 //Long, 0x4000044C 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'The values specified in the 'RecordNumber' : 65 //Long, 0x41 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103171731.000000-000' //String 'TimeWritten' : '20141103171731.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=64Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1000 //Long, 0x3E8 'EventIdentifier' : 1073742824 //Long, 0x400003E8 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is starting.' //String 'RecordNumber' : 64 //Long, 0x40 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103171729.000000-000' //String 'TimeWritten' : '20141103171729.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=63Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1004 //Long, 0x3EC 'EventIdentifier' : 1073742828 //Long, 0x400003EC 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String 'RecordNumber' : 63 //Long, 0x3F 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103170626.000000-000' //String 'TimeWritten' : '20141103170626.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=62Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1006 //Long, 0x3EE 'EventIdentifier' : 1073742830 //Long, 0x400003EE 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is advertising.' //String 'RecordNumber' : 62 //Long, 0x3E 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103170626.000000-000' //String 'TimeWritten' : '20141103170626.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=61Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['GC', '3268', '3269'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: GC Directory instance LDAP port: 3268 Directory instance SSL port: 3269 ' //String 'RecordNumber' : 61 //Long, 0x3D 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103170621.000000-000' //String 'TimeWritten' : '20141103170621.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=60Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['NTDS', '389', '636'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: NTDS Directory instance LDAP port: 389 Directory instance SSL port: 636 ' //String 'RecordNumber' : 60 //Long, 0x3C 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103170621.000000-000' //String 'TimeWritten' : '20141103170621.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=59Properties={ 'Category' : 2 //Long, 0x2 'CategoryString' : 'ADWS Configuration Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1100 //Long, 0x44C 'EventIdentifier' : 1073742924 //Long, 0x4000044C 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'The values specified in the 'RecordNumber' : 59 //Long, 0x3B 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103170618.000000-000' //String 'TimeWritten' : '20141103170618.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=58Properties={ 'Category' : 5 //Long, 0x5 'CategoryString' : 'ADWS Certificate Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1401 //Long, 0x579 'EventIdentifier' : 1073743225 //Long, 0x40000579 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['..rootdomain.com'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services successfully loaded the server certificate with the specified certificate name.
Certificate name: ..rootdomain.com ' //String 'RecordNumber' : 58 //Long, 0x3A 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103170610.000000-000' //String 'TimeWritten' : '20141103170610.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=57Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1008 //Long, 0x3F0 'EventIdentifier' : 1073742832 //Long, 0x400003F0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services has successfully reduced its security privileges.' //String 'RecordNumber' : 57 //Long, 0x39 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103170605.000000-000' //String 'TimeWritten' : '20141103170605.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=56Properties={ 'Category' : 2 //Long, 0x2 'CategoryString' : 'ADWS Configuration Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1100 //Long, 0x44C 'EventIdentifier' : 1073742924 //Long, 0x4000044C 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'The values specified in the 'RecordNumber' : 56 //Long, 0x38 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103170605.000000-000' //String 'TimeWritten' : '20141103170605.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=55Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1000 //Long, 0x3E8 'EventIdentifier' : 1073742824 //Long, 0x400003E8 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is starting.' //String 'RecordNumber' : 55 //Long, 0x37 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141103170603.000000-000' //String 'TimeWritten' : '20141103170603.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=54Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1004 //Long, 0x3EC 'EventIdentifier' : 1073742828 //Long, 0x400003EC 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String 'RecordNumber' : 54 //Long, 0x36 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141031053948.000000-000' //String 'TimeWritten' : '20141031053948.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=53Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1006 //Long, 0x3EE 'EventIdentifier' : 1073742830 //Long, 0x400003EE 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is advertising.' //String 'RecordNumber' : 53 //Long, 0x35 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141031053948.000000-000' //String 'TimeWritten' : '20141031053948.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=52Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['GC', '3268', '3269'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: GC Directory instance LDAP port: 3268 Directory instance SSL port: 3269 ' //String 'RecordNumber' : 52 //Long, 0x34 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141031053942.000000-000' //String 'TimeWritten' : '20141031053942.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=51Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['NTDS', '389', '636'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: NTDS Directory instance LDAP port: 389 Directory instance SSL port: 636 ' //String 'RecordNumber' : 51 //Long, 0x33 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141031053942.000000-000' //String 'TimeWritten' : '20141031053942.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=50Properties={ 'Category' : 2 //Long, 0x2 'CategoryString' : 'ADWS Configuration Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1100 //Long, 0x44C 'EventIdentifier' : 1073742924 //Long, 0x4000044C 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'The values specified in the 'RecordNumber' : 50 //Long, 0x32 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141031053938.000000-000' //String 'TimeWritten' : '20141031053938.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=49Properties={ 'Category' : 5 //Long, 0x5 'CategoryString' : 'ADWS Certificate Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1401 //Long, 0x579 'EventIdentifier' : 1073743225 //Long, 0x40000579 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['..rootdomain.com'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services successfully loaded the server certificate with the specified certificate name.
Certificate name: ..rootdomain.com ' //String 'RecordNumber' : 49 //Long, 0x31 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141031053933.000000-000' //String 'TimeWritten' : '20141031053933.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=48Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1008 //Long, 0x3F0 'EventIdentifier' : 1073742832 //Long, 0x400003F0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services has successfully reduced its security privileges.' //String 'RecordNumber' : 48 //Long, 0x30 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141031053928.000000-000' //String 'TimeWritten' : '20141031053928.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=47Properties={ 'Category' : 2 //Long, 0x2 'CategoryString' : 'ADWS Configuration Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1100 //Long, 0x44C 'EventIdentifier' : 1073742924 //Long, 0x4000044C 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'The values specified in the 'RecordNumber' : 47 //Long, 0x2F 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141031053928.000000-000' //String 'TimeWritten' : '20141031053928.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=46Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1000 //Long, 0x3E8 'EventIdentifier' : 1073742824 //Long, 0x400003E8 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is starting.' //String 'RecordNumber' : 46 //Long, 0x2E 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141031053926.000000-000' //String 'TimeWritten' : '20141031053926.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=45Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1004 //Long, 0x3EC 'EventIdentifier' : 1073742828 //Long, 0x400003EC 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services has successfully started and is now accepting requests.' //String 'RecordNumber' : 45 //Long, 0x2D 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141026220557.000000-000' //String 'TimeWritten' : '20141026220557.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=44Properties={ 'Category' : 1 //Long, 0x1 'CategoryString' : 'ADWS Startup Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1006 //Long, 0x3EE 'EventIdentifier' : 1073742830 //Long, 0x400003EE 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : null 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is advertising.' //String 'RecordNumber' : 44 //Long, 0x2C 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141026220557.000000-000' //String 'TimeWritten' : '20141026220557.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=43Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['GC', '3268', '3269'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: GC Directory instance LDAP port: 3268 Directory instance SSL port: 3269 ' //String 'RecordNumber' : 43 //Long, 0x2B 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141026220554.000000-000' //String 'TimeWritten' : '20141026220554.000000-000' //String 'Type' : 'Information' //String 'User' : null } Instance \\W2012SDC\ROOT\cimv2:Win32_NTLogEvent.Logfile="Active Directory Web Services",RecordNumber=42Properties={ 'Category' : 3 //Long, 0x3 'CategoryString' : 'ADWS Instance Events' //String 'ComputerName' : '..rootdomain.com' //String 'Data' : null 'EventCode' : 1200 //Long, 0x4B0 'EventIdentifier' : 1073743024 //Long, 0x400004B0 'EventType' : 3 //Byte, 0x3 'InsertionStrings' : ['NTDS', '389', '636'] //Variant() 'Logfile' : 'Active Directory Web Services' //String 'Message' : 'Active Directory Web Services is now servicing the specified directory instance.
Directory instance: NTDS Directory instance LDAP port: 389 Directory instance SSL port: 636 ' //String 'RecordNumber' : 42 //Long, 0x2A 'SourceName' : 'ADWS' //String 'TimeGenerated' : '20141026220553.000000-000' //String 'TimeWritten' : '20141026220553.000000-000' //String 'Type' : 'Information' //String 'User' : null } |