Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 34

Source
AuthorizedApplications
Level
Error
Description
The description for Event ID ( 34 ) in Source ( AuthorizedApplications:) could not be found. It contains the following insertion string(s): <file name>.
Source
CertSvc
Level
Error
Description
Certificate Services did not start: Could not initialize RPC for UNC enterprise root CA.
Source
Disk
Level
Warning
Description
The driver disabled the write cache on device \Device\Harddisk1\DR1.
Source
dmio
Level
Information
Description
dmio: Harddisk2 is re-online by PnP
Source
E1000
Level
Information
Description
<device> Link has been established: 100Mbps half duplex.
Source
i8042prt
Level
Error
Description
An error occurred while trying to determine the number of mouse buttons.
Source
iScsiPrt
Level
Information
Description
A connection to the target was lost but Initiator successfully reconnected to the target. Dump data contains the target name.
Source
ISSVC
Level
Information
Description
The description for Event ID ( 34 ) in Source ( ISSVC ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: .
Source
Microsoft-Windows-Time-Service
Level
Error
Description
The time service has detected that the system time needs to be  changed by +86438 seconds. The time service will not change the system time by more than +54000 seconds. Verify that your time and time zone are correct, and that the time source TOCK.USNO.NAVY.MIL,0x9 (ntp.m|0x9|0.0.0.0:123->192.5.41.41:123) is working properly.
Source
NSCService
Level
Error
Description
The description for Event ID ( 34 ) in Source ( NSCService ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: Norton Protection Center Service.
Source
Oracle.wired
Level
Information
Description
The description for Event ID ( 34 ) in Source ( Oracle.wired ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: .
Source
Outlook
Level
Error
Description
Failed to get the Crawl Scope Manager with error=0x8001010d.
Source
SideBySide
Level
Error
Description
Component identity found in manifest does not match the identity of the component requested.
Source
TermService
Level
Error
Description
{Access Denied} A process has requested access to an object, but has not been granted those access rights.
Source
VMNet
Level
information
Description
() Starting up: 0x818c4d30, \REGISTRY\MACHINE\SYSTEM\Contr
Source
VolSnap
Level
Error
Description
The shadow copies of volume <volume> were aborted because of a failure to ensure crash dump or hibernate consistency.
Source
VSS
Level
Error
Description
Volume Shadow Copy Service error: The VSS event class is not registered. This will prevent any VSS writers from receiving events. This may be caused due to a setup failure or as a result of an  application's installer or uninstaller.

Operation:
   Gathering Writer Data
   Executing Asynchronous Operation

Context:
   Execution Context: Requestor
   Current State: GatherWriterMetadata
Source
W32Time
Level
Error
Description
The time service has detected that the system time needs to be changed by +<value> seconds. The time service will not change the system time by more than +<value> seconds. Verify that your time and time zone are correct, and that the time source time.windows.com (ntp.m|0x1|144.26.150.23:123->207.46.130.100:123) is working properly.
Source
WinMgmt
Level
Warning
Description
WMI ADAP was unable to load the PerfProc performance library because it timed out on a call: collect.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...