Elastic Windows Event Explorer


Publisher - Microsoft-Windows-DotNETRuntime

Event ID 80 v1

Message:

ExceptionType=%{ExceptionType};
ExceptionMessage=%{ExceptionMessage};
ExceptionEIP=%{ExceptionEIP};
ExceptionHRESULT=%{ExceptionHRESULT};
ExceptionFlags=%{ExceptionFlags};
ClrInstanceID=%{ClrInstanceID}

Event Data:

# Name In Type
Out Type
1 ExceptionType win:UnicodeString xs:string
2 ExceptionMessage win:UnicodeString xs:string
3 ExceptionEIP win:Pointer win:HexInt64
4 ExceptionHRESULT win:UInt32 win:HexInt32
5 ExceptionFlags win:UInt16 xs:unsignedShort
6 ClrInstanceID win:UInt16 xs:unsignedShort

Observed Windows Versions:

Version: 1

Fingerprint: G3O7P64GNM5E4