Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 140

Level
Description
The system failed to flush data to the transaction log. Corruption may occur in VolumeId: \\?\Volume{1f83538c-f82a-11e2-9428-000c291415a5}, DeviceName: \Device\HarddiskVolume129.
({Device Offline}
The printer has been taken offline.)
Comments
 
This may indicate that a device has been taken offline or powered off ungracefully, without having a chance to flush the data in its cache. ME938940 (about a different event but with a similar description) recommends that each device be ejected using the Safely Remove Hardware as this will cause the device to save all the data in its cache.

See also the comments for event id 57 from Ftdisk.
If this is recorded when using VMware Tools in ESXi/ESX 4.1, see EV100450 (VMware KB: 2006849). According to VMware, this is an issue that is currently (August 5, 2014) reviewed by Microsoft.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...