More information: The APM template is clearly matching ID and sourcename.
Set lst_args = WScript.Arguments
If lst_args.Count >0 Then
WScript.Echo "Message: Usage: wscript.exe WinEventLog.vbs ComputerName " & vbCRLF _
& "-computer The computer name " & vbCRLF _
& "-area Name of Windows NT event log file. Together with RecordNumber, this is used to uniquely identify an instance of this class: Application, Security, System and etc." & vbCRLF _
& "-type The Event Type: Error, Warning, Information, Success, Failure." & vbCRLF _
& "-id Identifier of the event. This is specific to the source that generated the event log entry and is used, together with SourceName, to uniquely identify a Windows NT event type." & vbCRLF _
& "-source Name of the source (application, service, driver, or subsystem) that generated the entry. It is used, together with EventIdentifier to uniquely identify a Windows NT event type" & vbCRLF _
& "-exclusion Exclusions by Event Text" & vbCRLF _
& "-match Content Matching Event Text" & vbCRLF _
& "-timespan How many minutes old can the event be" & vbCRLF
WScript.Echo "Statistic: 0"
WScript.Quit( FAIL )