- <Event xmlns="
http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
<Provider Name="Microsoft-Windows-DNS-Client" Guid="{1C95126E-7EEA-49A9-A3FE-A378B03DDB4D}" />
<EventID>1014</EventID>
<Version>0</Version>
<Level>3</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x4000000000000000</Keywords>
<TimeCreated SystemTime="2016-11-01T11:34:55.383436400Z" />
<EventRecordID>144799</EventRecordID>
<Correlation />
<Execution ProcessID="1736" ThreadID="5080" />
<Channel>System</Channel>
<Computer>User</Computer>
<Security UserID="S-1-5-20" />
</System>
- <EventData>
<Data Name="QueryName">www.asdjkljfjaowjfq.net</Data>
<Data Name="AddressLength">16</Data>
<Data Name="Address">020000350A0E00010000000000000000</Data>
</EventData>
</Event>