Elastic Windows Event Explorer


Publisher - Microsoft-Windows-DotNETRuntimeRundown

Event ID 142 v2

Message:

MethodID=%{MethodID};
ModuleID=%{ModuleID};
MethodStartAddress=%{MethodStartAddress};
MethodSize=%{MethodSize};
MethodToken=%{MethodToken};
MethodFlags=%{MethodFlags};
ClrInstanceID=%{ClrInstanceID};
ReJITID=%{ReJITID}

Event Data:

# Name In Type
Out Type
1 MethodID win:UInt64 win:HexInt64
2 ModuleID win:UInt64 win:HexInt64
3 MethodStartAddress win:UInt64 win:HexInt64
4 MethodSize win:UInt32 win:HexInt32
5 MethodToken win:UInt32 win:HexInt32
6 MethodFlags win:UInt32 xs:unsignedInt
7 ClrInstanceID win:UInt16 xs:unsignedShort
8 ReJITID win:UInt64 win:HexInt64

Observed Windows Versions:

Version: 2

Fingerprint: VLFJ7I7Q2AY6G