Microsoft-Antimalware-Engine-Instrumentation

2 events across 1 channel

Event IDTitleChannel
1Data driven signature start eventApplication
2Data driven signature end eventApplication

Event ID 1 — Data driven signature start event

Provider
Microsoft-Antimalware-Engine-Instrumentation
Channel
Application
Task
Datadrivensignaturetask
Opcode
Start

Description

Data driven signature start event.

Message #

Data driven signature start event

Fields #

NameDescription
Type AnsiString
Name AnsiString
FileName UnicodeString
VPath UnicodeString

Event ID 2 — Data driven signature end event

Provider
Microsoft-Antimalware-Engine-Instrumentation
Channel
Application
Task
Datadrivensignaturetask
Opcode
Stop

Description

Data driven signature end event.

Message #

Data driven signature end event

Fields #

NameDescription
Type AnsiString
Name AnsiString
FileName UnicodeString
VPath UnicodeString