Microsoft-Windows-LDAP-Client
31 events across 1 channel
| Event ID | Title | Channel |
|---|---|---|
| 1 | Debug | |
| 2 | Debug | |
| 3 | Debug | |
| 4 | Debug | |
| 5 | Debug | |
| 6 | Debug | |
| 7 | Debug | |
| 8 | Debug | |
| 9 | Debug | |
| 10 | Debug | |
| 11 | Debug | |
| 12 | Debug | |
| 13 | Debug | |
| 14 | Debug | |
| 15 | Debug | |
| 16 | Debug | |
| 17 | Debug | |
| 18 | Debug | |
| 19 | Debug | |
| 20 | Debug | |
| 21 | Debug | |
| 22 | Debug | |
| 23 | Debug | |
| 24 | Debug | |
| 25 | Debug | |
| 26 | Debug | |
| 27 | Debug | |
| 28 | Debug | |
| 29 | Debug | |
| 30 | Debug | |
| 31 | Debug |
Event ID 1 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 2 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 3 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 4 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 5 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 6 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 7 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 8 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 9 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 10 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 11 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 12 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 13 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 14 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 15 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 16 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 17 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 18 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 19 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 20 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 21 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 22 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 23 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 24 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 25 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 26 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 27 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 28 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 29 —
Fields
| Name | Description |
|---|---|
Message | — |
Event ID 30 —
Fields
| Name | Description |
|---|---|
ScopeOfSearch | — |
SearchFilter | — |
DistinguishedName | — |
AttributeList | — |
ProcessId | — |
Sigma Rules
- Potential Active Directory Reconnaissance/Enumeration Via LDAP
Detects potential Active Directory enumeration via LDAP
Event ID 31 —
Fields
| Name | Description |
|---|---|
Message | — |