Questions tagged [windows-event-log]

"Event log" usually refers to the system/server logs on Microsoft Windows machines.

"Event log" usually refers to the system/server logs on Microsoft Windows machines.

617 questions
0
votes
1 answer

Clearing Application Even Logs of specific application

Is it possible to clear event logs of specific application (specific "Source" in Windows Event Log Viewer) via batch file? Thanks.
flamey
  • 125
  • 3
0
votes
1 answer

Is there any correlation between the Windows Event logs ans SQL Server Error logging?

Would the SQL Server instance go offline if it couldn't write to any of the Windows Event logs? Found these two errors in the Windows Systems Event Log: The system failed to flush data to the transaction log. Corruption may occur. initerrlog: Could…
AKDiscer
  • 123
  • 2
  • 11
0
votes
2 answers

Windows SNMP Traps

I test SNMP Traps on Windows 10 and Windows 7. Windows 7 has Traps Sender and Windows 10 has Traps Reciever. Enabled SNMP On Windows 10 & 7. Enabled Traps On Windows 7. Installed a Traps Reciever On Windows 10. Configured Event to Trap…
0
votes
1 answer

Windows 2012 Service Removal Log

I have a production server where an application is experiencing an issue. The psexec service is marked for deletion and I want to try and tie the deactivation of the service to the start of the issue. Where would the removal of the service be logged…
0
votes
1 answer

AVR Boost Active (APCPBEAgen) Warnings Windows Server 2012 event log

I have a Windows Server 2012 running. In the event log I see constantly a warning from AVR Boost Active (APCPBEAgen). It appears approx. every 6 hours. Question Does anybody know what 'AVR Boost Active' is and how I can get rid of this warning by…
orbitcowboy
  • 103
  • 1
  • 3
0
votes
0 answers

Is there an Windows Event Viewer Event for "No available connections" or No Ethernet Connection?

I am trying to create a GPO that disables a laptop's wireless card whenever a Ethernet LAN is detected, and Enable the wireless whenever an Ethernet LAN is not detected. Right now I have a GPO that works by disabling/enabling wireless when an…
0
votes
1 answer

How do you get detailed information on Active Directory logon failures?

In my domain controller event log, I'm getting an account failure from a username of a service account. The info is: Security ID: DOMAIN\serviceaccount Account Name: serviceaccount Additional Information: Caller Computer Name: FreeRDP This is…
parsecpython
  • 395
  • 2
  • 6
  • 16
0
votes
1 answer

Windows security event log showing lot of firewall rule changed alert

n my server i am getting lot of event id 4946. A change has been made to Windows Firewall exception list. A rule was added. i am getting this alert every day. can you help me to reslove this. Regards, KArthick V
0
votes
1 answer

windows event log forwarding permission

I am trying to set up an event log collector server in a Domain. I flowed the steps described here: http://zenshaze.com/wp/?p=57 I have added the NETWORK SERVICE to the Event Log Readers group to allow WinRM to read the event logs. In the source…
yoni
  • 21
  • 2
  • 5
0
votes
1 answer

Pass arguements as parameter to -filterXPath get-wineventLogs

Hi I made powershell script in which I am taking three arguements(in param block) and passing them as parameters to -FilterXPath. But I am not able to get the result. $eventID=7036 $ServiceName=PW $Status=stopped It gives me the correct result if…
Akshay
  • 21
  • 1
  • 3
0
votes
1 answer

SideBySide Event ID 63 Error ~ Microsoft SQL Server

I am getting the following repeating errors in event viewer: Does anybody know what is causing these errors and how to fix them?
Linger
  • 251
  • 3
  • 9
  • 25
0
votes
0 answers

Auditing for User/Machine account logon/logoff events in Child Domain ONLY

I have searched high and low and cannot find an answer to my need. I am in the process of setting up a SIEM for our network and I need to audit for user and machine logon/logoff events. Simple enough except that our domain is a child domain in a…
0
votes
1 answer

AdsmClientService Event ID 4099

I'm getting a bunch of this erorr message in our server: ANS4987E Error processing '\FE01\c$\Windows\System32\config\RegBack\SECURITY': the object is in use by another process The server has about 20GB of RAM and 8 CPUs running on Windows…
Smiley
  • 101
  • 1
  • 2
0
votes
0 answers

Windows Event Log Service Crash

I have an Active Directory Domain with Win2008R2 DCs and Win7 clients. From about 2 months ago some of my clients are complaining one after another about time of their systems which is behind the DC time. When I nailed the problem I noticed…
0
votes
0 answers

Why would I have a 4624 (logon) and 4634 (logoff) event at the exact same second?

I'm investigating who was using one of our company computer's a certain time. While I was looking through the 4624 / 4634 events in the event log, I found that several times throughout the day there was a 4624 (logon) followed immediately by a 4634…