Microsoft-Windows-NetworkProvider
Event ID 1000: Ignoring UNC Hardening Configuration Entry: Unsupported registry value type.
#Event ID 1001: Ignoring UNC Hardening Configuration Entry: Unable to parse UNC Path.
#Event ID 1002: Ignoring UNC Hardening Configuration Entry: Unsupported UNC Path.
#Event ID 1003: Ignoring UNC Hardening Configuration Property: Unsupported property name.
#Event ID 1004: Ignoring UNC Hardening Configuration Property: Unsupported property name.
#Event ID 1005: Ignoring UNC Hardening Configuration Property: Unsupported property value.
#Event ID 1006: Unable to parse UNC Hardening Configuration Entry: Unknown Error.
#Event ID 1007: Unable to parse UNC Hardening Configuration Entry: Unexpected token.
#Event ID 1008: Unable to parse UNC Hardening Configuration Entry: Unable to parse integer.
#Event ID 1009: Unable to parse UNC Hardening Configuration Entry: Unable to parse string.
#Event ID 1101: An administrator has enabled remote mailslots, which are off by default.
#Description
An administrator has enabled remote mailslots, which are off by default. Microsoft does not recommend enabling remote mailslots. To disable remote mailslots, please run the command: Set-SmbClientConfiguration -EnableMailslots $FALSE
Message #
Event ID 1102: An administrator has disabled remote mailslots.
#Event ID 1103: An administrator has enabled remote mailslots by policy.
#Description
An administrator has enabled remote mailslots by policy. Microsoft does not recommend enabling remote mailslots.
Message #
Event ID 1104: An administrator has disabled remote mailslots by policy.
#Provenance
ETW provider GUID 1e9a4978-78c2-441e-8858-75b5d1326bc5
Defined in mup.sys, the binary that emits these events.
- WS2022-20348.4893, schema read from the registered manifest, binary version 10.0.20348.1, captured 2026-06-02 — Manifest XML pack, 1.9 MB
- Win11-26200.6584, schema read from the registered manifest, binary version 10.0.26100.1, captured 2026-06-02 — Manifest XML pack, 2.0 MB