Event Type: Failure Audit
Event Source: Security
Event Category: Object Access
Event ID: 560
Date: 28.02.2005
Time: 14:39:05
User: NT AUTHORITY\NETWORK SERVICE
Computer: ZIBTESTL
Description:
Object Open:
Object Server: SC Manager
Object Type: SERVICE OBJECT
Object Name: winmgmt
Handle ID: -
Operation ID: {0,246763}
Process ID: 596
Image File Name: C:\WINDOWS\system32\services.exe
Primary User Name: ZIBTESTL$
Primary Domain: SUISA
Primary Logon ID: (0x0,0x3E7)
Client User Name: NETWORK SERVICE
Client Domain: NT AUTHORITY
Client Logon ID: (0x0,0x3E4)
Accesses: READ_CONTROL
Query information from service
Privileges: -
Restricted Sid Count: 0
For more information, see Help and Support Center at [URL unfurl="true"]http://go.microsoft.com/fwlink/events.asp.[/URL]
Event Type: Failure Audit
Event Source: Security
Event Category: Object Access
Event ID: 560
Date: 28.02.2005
Time: 14:38:47
User: NT AUTHORITY\NETWORK SERVICE
Computer: ZIBTESTL
Description:
Object Open:
Object Server: SC Manager
Object Type: SERVICE OBJECT
Object Name: Netman
Handle ID: -
Operation ID: {0,214366}
Process ID: 596
Image File Name: C:\WINDOWS\system32\services.exe
Primary User Name: ZIBTESTL$
Primary Domain: SUISA
Primary Logon ID: (0x0,0x3E7)
Client User Name: NETWORK SERVICE
Client Domain: NT AUTHORITY
Client Logon ID: (0x0,0x3E4)
Accesses: READ_CONTROL
Query information from service
Privileges: -
Restricted Sid Count: 0
For more information, see Help and Support Center at [URL unfurl="true"]http://go.microsoft.com/fwlink/events.asp.[/URL]
Event Type: Failure Audit
Event Source: Security
Event Category: Object Access
Event ID: 560
Date: 28.02.2005
Time: 14:38:40
User: NT AUTHORITY\NETWORK SERVICE
Computer: ZIBTESTL
Description:
Object Open:
Object Server: SC Manager
Object Type: SERVICE OBJECT
Object Name: EventSystem
Handle ID: -
Operation ID: {0,99202}
Process ID: 596
Image File Name: C:\WINDOWS\system32\services.exe
Primary User Name: ZIBTESTL$
Primary Domain: SUISA
Primary Logon ID: (0x0,0x3E7)
Client User Name: NETWORK SERVICE
Client Domain: NT AUTHORITY
Client Logon ID: (0x0,0x3E4)
Accesses: READ_CONTROL
Query information from service
Privileges: -
Restricted Sid Count: 0
For more information, see Help and Support Center at [URL unfurl="true"]http://go.microsoft.com/fwlink/events.asp.[/URL]
Event Type: Failure Audit
Event Source: Security
Event Category: Object Access
Event ID: 560
Date: 28.02.2005
Time: 14:38:38
User: NT AUTHORITY\NETWORK SERVICE
Computer: ZIBTESTL
Description:
Object Open:
Object Server: SC Manager
Object Type: SERVICE OBJECT
Object Name: ShellHWDetection
Handle ID: -
Operation ID: {0,97769}
Process ID: 596
Image File Name: C:\WINDOWS\system32\services.exe
Primary User Name: ZIBTESTL$
Primary Domain: SUISA
Primary Logon ID: (0x0,0x3E7)
Client User Name: NETWORK SERVICE
Client Domain: NT AUTHORITY
Client Logon ID: (0x0,0x3E4)
Accesses: READ_CONTROL
Query information from service
Privileges: -
Restricted Sid Count: 0
For more information, see Help and Support Center at [URL unfurl="true"]http://go.microsoft.com/fwlink/events.asp.[/URL]
Event Type: Failure Audit
Event Source: Security
Event Category: Object Access
Event ID: 560
Date: 28.02.2005
Time: 14:37:13
User: NT AUTHORITY\NETWORK SERVICE
Computer: ZIBTESTL
Description:
Object Open:
Object Server: SC Manager
Object Type: SERVICE OBJECT
Object Name: MSIServer
Handle ID: -
Operation ID: {0,85954}
Process ID: 596
Image File Name: C:\WINDOWS\system32\services.exe
Primary User Name: ZIBTESTL$
Primary Domain: SUISA
Primary Logon ID: (0x0,0x3E7)
Client User Name: NETWORK SERVICE
Client Domain: NT AUTHORITY
Client Logon ID: (0x0,0x3E4)
Accesses: READ_CONTROL
Query service configuration information
Query status of service
Enumerate dependencies of service
Query information from service
Privileges: -
Restricted Sid Count: 0
For more information, see Help and Support Center at [URL unfurl="true"]http://go.microsoft.com/fwlink/events.asp.[/URL]