Windows Security Log Event ID 5890

Operating Systems Windows 2008 R2 and 7
Windows 2012 R2 and 8.1
Windows 2016 and 10
Windows Server 2019 and 2022
Category
 • Subcategory
System
 • System Integrity
Type Success
Corresponding events
in Windows 2003
and before
 

5890: An object was added to the COM+ Catalog

On this page

An object added to the Com+ Catalog

Although some Microsoft documentation lists this in the "Other Object Access Events" sub-category, this event actually appeared in the "System Integrity" subcategory and was logged even though no auditing was enabled.

Depending on the object this event may contain many object details.

Free Security Log Resources by Randy

Description Fields in 5890

Subject:

  •    Security ID:  %1
  •    Account Name:  %2
  •    Account Domain:  %3
  •    Logon ID:  %4

Object:

  •    COM+ Catalog Collection: %5
  •    Object Name:   %6
  •    Object Details:   %7

Setup PowerShell Audit Log Forwarding in 4 Minutes

 

Examples of 5890

An object was added to the COM+ Catalog.

Subject:

Security ID:  STG\Administrator
Account Name:  Administrator
Account Domain:  DC8
Logon ID:  145085

Object:

COM+ Catalog Collection: UsersInRole
Object Name:   
ApplId = {B8A5C793-17CB-4734-AC30-1141E888DB7D}
Name = Administrators
User = SYSTEM
Object Details: <null>

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection

 

Additional Resources