Elastic Windows Event Explorer


Publisher - Microsoft-Windows-ProcessStateManager

Event ID 2

Message:



Event Data:

# Name In Type
Out Type
1 ApplicationId win:UInt64 xs:unsignedLong
2 SessionId win:UInt32 xs:unsignedInt
3 PsmKey win:UnicodeString xs:string
4 Flags win:UInt32 win:HexInt32
5 CycleTime win:UInt64 xs:unsignedLong
6 NetworkTokens win:UInt64 xs:unsignedLong

Observed Windows Versions:

Version: 0

Fingerprint: JNM6L4PY74NT2