{
  "Category": 14080,
  "CategoryString": "-",
  "ComputerName": "comp1.domainname.ru",
  "Data": null,
  "EventCode": 4661,
  "EventIdentifier": 4661,
  "EventType": "4",
  "InsertionStrings": [
    "S-1-5-21-1023191730-727829927-3985050192-22263",
    "username",
    "domainname",
    "0x7931e737",
    "Security Account Manager",
    "SAM_DOMAIN",
    "DC=domainname,DC=ru",
    "0x6bdf222240",
    "{00000000-0000-0000-0000-000000000000}",
    "%%5400",
    "-",
    "0x100",
    "-",
    "---{bf967a90-0de6-11d0-a285-00aa003049e2}%%5400{280f369c-67c7-438e-ae98-1d46f3c6f541}",
    "0",
    "0x1f4",
    "C:\\Windows\\System32\\lsass.exe"
  ],
  "Logfile": "Security",
  "Message": "-",
  "RecordNumber": 3094148773,
  "SourceName": "Microsoft-Windows-Security-Auditing",
  "TimeGenerated": "2015-09-24 10:18:52",
  "TimeWritten": "2015-09-24 10:18:52",
  "Type": "Audit Success",
  "User": null
}
