Elastic Windows Event Explorer


Publisher - Microsoft-Windows-NDIS-PacketCapture

Event ID 5101

Message:

Event source: %{SourceId}: %{SourceName}, IfIndex: %{IfIndex}, LayerCount: %{LayerCount}.

Event Data:

# Name In Type
Out Type
1 SourceId win:UInt8 xs:unsignedByte
2 SourceName win:UnicodeString xs:string
3 IfIndex win:UInt32 xs:unsignedInt
4 LayerCount win:UInt16 xs:unsignedShort

Observed Windows Versions:

Version: 0

Fingerprint: 7NRIIEC2Z7RRI