Elastic Windows Event Explorer


Publisher - Microsoft-Windows-NDIS-PacketCapture

Event ID 1002

Message:

Packet Metadata (%{MetadataSize} bytes)

Event Data:

# Name In Type
Out Type
1 MiniportIfIndex win:UInt32 xs:unsignedInt
2 LowerIfIndex win:UInt32 xs:unsignedInt
3 MetadataSize win:UInt32 xs:unsignedInt
4 Metadata win:Binary xs:hexBinary

Observed Windows Versions:

Version: 0

Fingerprint: 7BO5UYPKSSYSW