1
_time
3
Channel
5
Computer
7
EventCode
9
EventData_Xml
11
EventID
13
EventRecordID
15
Guid
17
Keywords
19
Level
21
Name
23
New_Value
25
Old_Value
27
Opcode
29
ProcessID
31
Product_Name
33
Product_Version
35
RecordNumber
37
SystemTime
39
System_Props_Xml
41
Task
43
ThreadID
45
UserID
47
Version
49
dvc
51
dvc_nt_host
53
event_id
55
eventtype
57
host
59
id
61
index
63
linecount
65
punct
67
signature_id
69
source
71
sourcetype
73
splunk_server
75
tag
77
tag::eventtype
79
timestamp
81
user_id
83
vendor_product
85
not set