Elastic Windows Event Explorer


Publisher - Microsoft-Windows-PDC

Event ID 97 v1

Message:

Rundown of SPM scenario %{Scenario} - GUID:%{Guid}, Flags:%{Flags}, State:%{State}, Name:%{ScenarioName}

Event Data:

# Name In Type
Out Type
1 Scenario win:Pointer win:HexInt64
2 Guid win:GUID xs:GUID
3 Flags win:UInt32 win:HexInt32
4 State win:UInt8 xs:unsignedByte
5 ScenarioNameLength win:UInt32 win:HexInt32
6 ScenarioName win:UnicodeString xs:string
7 ProfileGuid win:GUID xs:GUID

Observed Windows Versions:

Version: 1

Fingerprint: MYYEFBNYLSARE