LDAP Queries are strange things. Why did they come up with a whole new query language? Anyway, some links:
This page is very useful, and this MS page is good for an overview of the basics of the syntax.
As with any other query/filter, try to be as specific as possible, and use ‘objectClass’ and ‘objectCategory’ to limit the search to the type of entry you’re looking for.