Elastic Windows Event Explorer


Publisher - Microsoft-Windows-CodeIntegrity

Event ID 3098

Message:

other (see event data)

Event Data:

# Name In Type
Out Type
1 PolicyNameLength win:UInt16 xs:unsignedShort
2 PolicyNameBuffer win:UnicodeString xs:string
3 PolicyIdLength win:UInt16 xs:unsignedShort
4 PolicyIdBuffer win:UnicodeString xs:string
5 TypeOfPolicy win:UInt32 xs:unsignedInt
6 Status win:HexInt32 win:HexInt32
7 Options win:HexInt32 win:HexInt32
8 PolicyHashSize win:UInt32 xs:unsignedInt
9 PolicyHash win:Binary xs:hexBinary

Observed Windows Versions:

Version: 0

Fingerprint: 2GB7A22ZTN5JM