Event Details
User Activity->Object Access->COM+ Catalog Object Access->Windows 2008->EventID 5890 - An object was added to the COM+ Catalog.
EventID 5890 - An object was added to the COM+ Catalog.
 Sample:
An object was added to the COM+ Catalog.

Subject:
	Security ID:		NT AUTHORITY\SYSTEM
	Account Name:		SYSTEM
	Account Domain:		NT AUTHORITY
	Logon ID:		999

Object:
	COM+ Catalog Collection:	Roles
	Object Name:			
		ApplId = {848B03AF-3002-4A0D-B413-06BF1046346E}
		Name = Administrators
	Object Details:			
		Description = Administrators group
Log Type: Windows Event Log
 Uniquely Identified By:
Log Name: Security
Filtering Field Equals to Value
OSVersion Windows Vista (2008)
Windows 7 (2008 R2)
Windows 8 (2012)
Windows 8.1 (2012 R2)
Windows 10 (2016)
Category System
Source Microsoft-Windows-Security-Auditing
TaskCategory System Integrity
EventId 5890
Field Matching
FieldDescriptionStored inSample Value
When At what date and time a user activity originated in the system. - 1/1/2000
Who Account or user name under which the activity occured. Subject: Account Name
What The type of activity occurred (e.g. Logon, Password Changed, etc.) "COM+ object added" COM+ object added
Where The name of the workstation/server where the activity was logged. - 10.10.10.10
Where From The name of the workstation/server where the activity was initiated from. - 10.10.10.10
Severity Specify the seriousness of the event. - High
WhoDomain Subject: Account Domain
WhereDomain -
Result Successful or Failed -
Object Name Object: Object Name
Object Type "COM+ object" COM+ object
Whom -
Comments
You must be logged in to comment