Elastic Windows Event Explorer


Publisher - Microsoft-Windows-NDIS-PacketCapture

Event ID 1011

Message:

Capture Rules Count=%{RulesCount}

Event Data:

# Name In Type
Out Type
1 RulesCount win:UInt32 xs:unsignedInt

Observed Windows Versions:

Version: 0

Fingerprint: ZLEU672UQT6AC