Elastic Windows Event Explorer


Publisher - Microsoft-Windows-Crypto-RSAEnh

Event ID 1

Message:

Operation failed.

 Operation Type: 	%{OperationType}
 Process: 	%{ProcessName}
 Error code: 	%{Status}

Event Data:

# Name In Type
Out Type
1 OperationType win:UInt32 xs:unsignedInt
2 ProcessName win:UnicodeString xs:string
3 Status win:HexInt32 win:ErrorCode

Observed Windows Versions:

Version: 0

Fingerprint: 4ZTSX5LQRTQWY