All Events Summary - Direct Output
List of used filters
Number Messagetype == 3


Report Summary
Event Summary
Total Events 2293
INFO 1173
NOTICE 1012
WARNING 79
ERR 29
Computer Summary
XPTEST(1029), W2003R2(980), W2KTESTING(247), MACHINENAME(37),


Events Consolidated per Host

XPTEST

No. First Event Last Event Process Type Event ID Description Count
1 2008-09-16 15:14:42 2008-09-16 15:17:58 VMTools INFO 105 The service was started. 29
2 2008-09-16 15:14:48 2008-09-16 15:14:49 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Mittwoch, 16. August 2006 at 03:00: - Security Update for Windows XP (KB890859) - Security Update for Windows XP (KB914389) - Security Update for Windows XP (KB920683) - Security Update for Windows XP (KB908519) - Update for Windows XP (KB894391) - Cumulative Security Update for Outlook Express for Windows XP (KB911567) - Security Update for Windows XP (KB896428) - Security Update for Windows XP (KB913580) - Security Update for Windows XP (KB905749) - Security Update for Windows XP (KB908531) - Security Update for Windows XP (KB904706) - Update for Windows XP (KB916595) - Security Update for Windows XP (KB912919) - Security Update for Windows XP (KB900725) - Security Update for Windows XP (KB888302) - Security Update for Windows XP (KB917422) - Security Update for Windows XP (KB901214) - Security Update for Windows XP (KB917953) - Security Update for Windows XP (KB905414) - Security Update for Windows XP (KB917344) - Security Update for Windows XP (KB914388) - Security Update for Windows XP (KB899589) - Security Update 23
3 2008-09-16 15:14:42 2008-09-16 15:17:58 SecurityCenter INFO 1800 The Windows Security Center Service has started. 17
4 2008-09-16 15:14:45 2008-09-16 15:14:58 Service Control Manager INFO 7036 The SSDP Discovery Service service entered the running state. 16
5 2008-09-16 15:14:45 2008-09-16 15:14:57 EventLog INFO 6005 The Event log service was started. 16
6 2008-09-16 15:14:45 2008-09-16 15:14:57 Service Control Manager INFO 7035 The SSDP Discovery Service service was successfully sent a start control. 16
7 2008-09-16 15:14:46 2008-09-16 15:14:57 Service Control Manager INFO 7035 The Terminal Services service was successfully sent a start control. 15
8 2008-09-16 15:14:45 2008-09-16 15:14:57 Service Control Manager INFO 7036 The Terminal Services service entered the running state. 15
9 2008-09-16 15:14:46 2008-09-16 15:14:57 EventLog INFO 6006 The Event log service was stopped. 15
10 2008-09-16 15:14:45 2008-09-16 15:14:57 Service Control Manager INFO 7035 The Network Location Awareness (NLA) service was successfully sent a start control. 15
11 2008-09-16 15:14:45 2008-09-16 15:14:57 Service Control Manager INFO 7036 The Network Location Awareness (NLA) service entered the running state. 15
12 2008-09-16 15:14:46 2008-09-16 15:14:57 Service Control Manager INFO 7036 The Application Layer Gateway Service service entered the running state. 14
13 2008-09-16 15:14:46 2008-09-16 15:14:57 EventLog INFO 6009 Microsoft (R) Windows (R) 5.01. 2600 Service Pack 2 Uniprocessor Free. 14
14 2008-09-16 15:14:46 2008-09-16 15:14:57 Service Control Manager INFO 7035 The Application Layer Gateway Service service was successfully sent a start control. 14
15 2008-09-16 15:14:46 2008-09-16 15:14:58 Service Control Manager INFO 7035 The Windows Installer service was successfully sent a start control. 13
16 2008-09-16 15:14:46 2008-09-16 15:14:58 Service Control Manager INFO 7036 The Windows Installer service entered the running state. 13
17 2008-09-16 15:14:46 2008-09-16 15:14:58 Service Control Manager INFO 7036 The Windows Installer service entered the stopped state. 13
18 2008-09-16 15:14:52 2008-09-16 15:14:52 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Mittwoch, 7. November 2007 at 03:00: - Security Update for Windows XP (KB928843) - Security Update for Flash Player (KB923789) - Security Update for Windows XP (KB923689) - Update for Windows XP (KB930916) - Security Update for Windows XP (KB920213) - Security Update for Windows XP (KB926255) - Security Update for Windows XP (KB918118) - Update for Windows XP (KB922582) - Security Update for Windows XP (KB923191) - Security Update for Windows XP (KB932168) - Security Update for Microsoft .NET Framework, Version 2.0 (KB928365) - Security Update for Windows XP (KB919007) - Security Update for Windows XP (KB930178) - Update for Windows XP (KB920872) - Security Update for Windows XP (KB926436) - Security Update for Windows XP (KB925902) - Security Update for Microsoft XML Core Services 6.0 and Microsoft XML Core Services 6.0 Service Pack 1 (KB933579) - Security Update for Windows Media Player 6.4 (KB925398) - Update for Windows XP (KB927891) - Security Update for Windows XP (KB924496) - Security Update for Windows Media Pla 13
19 2008-09-16 15:14:47 2008-09-16 15:14:47 Service Control Manager INFO 7035 The .NET Runtime Optimization Service v2.0.50727_X86 service was successfully sent a pause control. 12
20 2008-09-16 15:14:44 2008-09-16 15:17:58 WinMgmt WARNING 5603 A provider, TPAutoConnDLL, has been registered in the WMI namespace, Root\ThinPrint, but did not specify the HostingModel property. This provider will be run using the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. Ensure that provider has been reviewed for security behavior and update the HostingModel property of the provider registration to an account with the least privileges possible for the required functionality. 12
21 2008-09-16 15:14:41 2008-09-16 15:17:58 LoadPerf INFO 1000 Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully. The Record Data contains the new index values assigned to this service. 11
22 2008-09-16 15:14:41 2008-09-16 15:17:58 LoadPerf INFO 1001 Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries. 10
23 2008-09-16 15:14:47 2008-09-16 15:14:57 Service Control Manager INFO 7036 The HTTP SSL service entered the running state. 10
24 2008-09-16 15:14:47 2008-09-16 15:14:57 Service Control Manager INFO 7035 The HTTP SSL service was successfully sent a start control. 10
25 2008-09-16 15:14:46 2008-09-16 15:14:56 Service Control Manager INFO 7036 The VMware Tools Service service entered the stopped state. 6
26 2008-09-16 15:14:42 2008-09-16 15:17:58 MsiInstaller INFO 1005 The Windows Installer initiated a system restart to complete or continue the configuration of 'VMware Tools'. 5
27 2008-09-16 15:14:47 2008-09-16 15:14:53 Service Control Manager INFO 7036 The .NET Runtime Optimization Service v2.0.50727_X86 service entered the running state. 5
28 2008-09-16 15:14:44 2008-09-16 15:17:58 VMTools INFO 108 The service was stopped. 4
29 2008-09-16 15:14:44 2008-09-16 15:14:45 crypt32 INFO 7 Successful auto update retrieval of third-party root list sequence number from: 4
30 2008-09-16 15:14:52 2008-09-16 15:14:52 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Mittwoch, 7. November 2007 at 03:00: - Security Update for Windows XP (KB928843) - Security Update for Windows XP (KB935839) - Security Update for Flash Player (KB923789) - Security Update for Windows XP (KB923689) - Update for Windows XP (KB930916) - Security Update for Windows XP (KB935840) - Update for Windows XP (KB933360) - Security Update for Windows XP (KB920213) - Security Update for Windows XP (KB938127) - Security Update for Windows XP (KB926255) - Security Update for Windows XP (KB918118) - Security Update for Outlook Express for Windows XP (KB941202) - Update for Windows XP (KB922582) - Security Update for Windows XP (KB923191) - Security Update for Windows XP (KB932168) - Security Update for Microsoft .NET Framework, Version 2.0 (KB928365) - Security Update for Windows XP (KB919007) - Security Update for Windows XP (KB930178) - Update for Windows XP (KB920872) - Security Update for Windows XP (KB926436) - Cumulative Security Update for Outlook Express for Windows XP (KB929123) - Security Update for Windows 4
31 2008-09-16 15:14:52 2008-09-16 15:14:53 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Donnerstag, 17. Januar 2008 at 11:01: - Security Update for Windows XP (KB928843) - Security Update for Windows XP (KB935839) - Security Update for Flash Player (KB923789) - Security Update for Windows XP (KB923689) - Update for Windows XP (KB930916) - Security Update for Windows XP (KB935840) - Update for Windows XP (KB933360) - Security Update for Windows XP (KB920213) - Security Update for Windows XP (KB938127) - Security Update for Windows XP (KB926255) - Security Update for Windows XP (KB918118) - Security Update for Outlook Express for Windows XP (KB941202) - Update for Windows XP (KB922582) - Security Update for Windows XP (KB923191) - Security Update for Windows XP (KB932168) - Security Update for Microsoft .NET Framework, Version 2.0 (KB928365) - Security Update for Windows XP (KB919007) - Security Update for Windows XP (KB930178) - Update for Windows XP (KB920872) - Security Update for Windows XP (KB926436) - Cumulative Security Update for Outlook Express for Windows XP (KB929123) - Security Update for Windows 4
32 2008-09-16 15:14:46 2008-09-16 15:14:56 Service Control Manager INFO 7035 The VMware Tools Service service was successfully sent a start control. 4
33 2008-09-16 15:14:46 2008-09-16 15:14:56 BROWSER INFO 8033 The browser has forced an election on network \Device\NetBT_Tcpip_{3B4CAD29-2B55-4354-8682-6F3DF89C5DE2} because a master browser was stopped. 4
34 2008-09-16 15:14:44 2008-09-16 15:17:58 MsiInstaller INFO 11728 Product: VMware Tools -- Configuration completed successfully. 4
35 2008-09-16 15:14:45 2008-09-16 15:14:57 Service Control Manager INFO 7035 The Remote Access Connection Manager service was successfully sent a start control. 4
36 2008-09-16 15:14:46 2008-09-16 15:14:56 Service Control Manager INFO 7036 The VMware Tools Service service entered the running state. 4
37 2008-09-16 15:14:42 2008-09-16 15:14:43 Visual Studio 2005 Remote Debugger INFO 1000 XPTEST\Administrator connected. 4
38 2008-09-16 15:14:45 2008-09-16 15:17:58 AdisconWINSyslog INFO 118 WinSyslog Service is running in trial mode. 29 days left 4
39 2008-09-16 15:14:51 2008-09-16 15:14:56 Print WARNING 20 Printer Driver TP Output Gateway for Windows NT x86 Version-3 was added or updated. Files:- TPPRN.DLL, TPPrnUI.DLL, TPOG.bin, TPOG.hlp. 3
40 2008-09-16 15:14:55 2008-09-16 15:14:57 Service Control Manager INFO 7036 The Remote Access Connection Manager service entered the running state. 3
41 2008-09-16 15:14:44 2008-09-16 15:14:45 crypt32 INFO 2 Successful auto update retrieval of third-party root list cab from: 3
42 2008-09-16 15:14:42 2008-09-16 15:14:44 ASP.NET 2.0.50727.0 WARNING 1020 Updates to the IIS metabase were aborted because IIS is either not installed or is disabled on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i. 3
43 2008-09-16 15:14:42 2008-09-16 15:14:44 LoadPerf INFO 1000 Performance counters for the ASP.NET_2.0.50727 (ASP.NET_2.0.50727) service were loaded successfully. The Record Data contains the new index values assigned to this service. 3
44 2008-09-16 15:14:55 2008-09-16 15:14:57 Service Control Manager INFO 7036 The Telephony service entered the running state. 3
45 2008-09-16 15:14:46 2008-09-16 15:14:51 Service Control Manager INFO 7036 The Background Intelligent Transfer Service service entered the running state. 3
46 2008-09-16 15:14:42 2008-09-16 15:14:44 LoadPerf INFO 1000 Performance counters for the ASP.NET (ASP.NET) service were loaded successfully. The Record Data contains the new index values assigned to this service. 3
47 2008-09-16 15:14:47 2008-09-16 15:14:53 Service Control Manager INFO 7035 The .NET Runtime Optimization Service v2.0.50727_X86 service was successfully sent a start control. 3
48 2008-09-16 15:14:49 2008-09-16 15:14:54 Service Control Manager INFO 7036 The .NET Runtime Optimization Service v2.0.50727_X86 service entered the stopped state. 3
49 2008-09-16 15:14:46 2008-09-16 15:21:58 Windows Update Agent INFO 19 Installation Successful: Windows successfully installed the following update: Automatic Updates 3
50 2008-09-16 15:14:46 2008-09-16 15:14:51 Service Control Manager INFO 7035 The Background Intelligent Transfer Service service was successfully sent a start control. 3
51 2008-09-16 15:14:51 2008-09-16 15:14:56 Service Control Manager INFO 7035 The VMware Tools Service service was successfully sent a stop control. 3
52 2008-09-16 15:14:42 2008-09-16 15:14:44 ASP.NET 2.0.50727.0 INFO 1017 Start registering ASP.NET (version 2.0.50727.0) (internal flag: 0x00000406) 3
53 2008-09-16 15:14:42 2008-09-16 15:14:42 MsiInstaller INFO 11707 Product: Microsoft Visual Studio 2005 Professional Edition - ENU -- Installation completed successfully. 3
54 2008-09-16 15:14:46 2008-09-16 15:21:58 Service Control Manager INFO 7036 The Automatic Updates service entered the running state. 3
55 2008-09-16 15:14:43 2008-09-16 15:14:44 LoadPerf INFO 1001 Performance counters for the ASP.NET_2.0.50727 (ASP.NET_2.0.50727) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries. 2
56 2008-09-16 15:14:45 2008-09-16 15:17:58 MsiInstaller INFO 11707 Product: MonitorWare Agent 5.2 - Build 348 -- Installation operation completed successfully. 2
57 2008-09-16 15:14:45 2008-09-16 15:14:46 EventLog INFO 6009 Microsoft (R) Windows (R) 5.01. 2600 Uniprocessor Free. 2
58 2008-09-16 15:14:45 2008-09-16 15:17:58 MsiInstaller INFO 11707 Product: WinSyslog 8.2 - Build 461 -- Installation operation completed successfully. 2
59 2008-09-16 15:14:45 2008-09-16 15:17:58 AdisconMonitoreWareAgent INFO 118 MonitorWare Agent is running in trial mode. You have 29 days left for evaluation. After that period, MonitorWare agent will be disabled. To purchase, please visit http://www.mwagent.com/en/. 2
60 2008-09-16 15:14:44 2008-09-16 15:14:44 LoadPerf INFO 1002 Performance counters for the .NET CLR Networking (.NET CLR Networking) service are already in Performance Registry, no need to re-install again. 2
61 2008-09-16 15:14:44 2008-09-16 15:14:44 LoadPerf INFO 1002 Performance counters for the .NETFramework (.NETFramework) service are already in Performance Registry, no need to re-install again. 2
62 2008-09-16 15:14:44 2008-09-16 15:14:44 MsiInstaller INFO 11728 Product: Microsoft .NET Framework 2.0 -- Configuration completed successfully. 2
63 2008-09-16 15:14:44 2008-09-16 15:14:44 LoadPerf INFO 1002 Performance counters for the .NET CLR Data (.NET CLR Data) service are already in Performance Registry, no need to re-install again. 2
64 2008-09-16 15:14:44 2008-09-16 15:14:44 LoadPerf INFO 1002 Performance counters for the .NET Data Provider for SqlServer (.NET Data Provider for SqlServer) service are already in Performance Registry, no need to re-install again. 2
65 2008-09-16 15:14:43 2008-09-16 15:14:44 LoadPerf INFO 1001 Performance counters for the ASP.NET (ASP.NET) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries. 2
66 2008-09-16 15:14:44 2008-09-16 15:14:44 LoadPerf INFO 1002 Performance counters for the .NET Data Provider for Oracle (.NET Data Provider for Oracle) service are already in Performance Registry, no need to re-install again. 2
67 2008-09-16 15:14:43 2008-09-16 15:14:44 LoadPerf INFO 1002 Performance counters for the aspnet_state (ASP.NET State Service) service are already in Performance Registry, no need to re-install again. 2
68 2008-09-16 15:14:46 2008-09-16 15:14:52 USER32 INFO 1074 The process msiexec.exe has initiated the restart of XPTEST for the following reason: No title for this reason could be found Minor Reason: 0x2 Shutdown Type: reboot Comment: The Windows Installer initiated a system restart to complete or continue the configuration of 'VMware Tools'. 2
69 2008-09-16 15:14:47 2008-09-16 15:14:47 Service Control Manager INFO 7036 The .NET Runtime Optimization Service v2.0.50727_X86 service entered the paused state. 2
70 2008-09-16 15:14:54 2008-09-16 15:14:54 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Freitag, 18. Januar 2008 at 03:00: - Security Update for Windows XP with Windows Media Format Runtime 9 (KB941569) - Update for Windows XP (KB942763) - Security Update for Windows XP (KB941644) - Update for Windows XP (KB938828) - Security Update for Windows XP (KB936021) - Update for Windows XP (KB942840) - Security Update for Windows XP (KB937894) 2
71 2008-09-16 15:14:46 2008-09-16 15:14:47 Service Control Manager INFO 7035 The Windows Installer service was successfully sent a stop control. 2
72 2008-09-16 15:14:46 2008-09-16 15:14:47 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Dienstag, 15. August 2006 at 03:00: - Update for Windows XP (KB898461) - Microsoft Windows Installer 3.1 2
73 2008-09-16 15:14:47 2008-09-16 15:14:47 Service Control Manager INFO 7035 The .NET Runtime Optimization Service v2.0.50727_X86 service was successfully sent a continue control. 2
74 2008-09-16 15:14:54 2008-09-16 15:14:54 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Freitag, 18. Januar 2008 at 03:00: - Security Update for Windows XP with Windows Media Format Runtime 9 (KB941569) - Update for Windows XP (KB938828) - Security Update for Windows XP (KB936021) 2
75 2008-09-16 15:14:48 2008-09-16 15:14:48 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Mittwoch, 16. August 2006 at 03:00: - Security Update for Windows XP (KB914389) - Security Update for Windows XP (KB920683) - Security Update for Windows XP (KB908519) - Update for Windows XP (KB894391) - Cumulative Security Update for Outlook Express for Windows XP (KB911567) - Security Update for Windows XP (KB896428) - Security Update for Windows XP (KB913580) - Security Update for Windows XP (KB905749) - Security Update for Windows XP (KB908531) - Security Update for Windows XP (KB904706) - Update for Windows XP (KB916595) - Security Update for Windows XP (KB912919) - Security Update for Windows XP (KB900725) - Security Update for Windows XP (KB888302) - Security Update for Windows XP (KB917422) - Security Update for Windows XP (KB901214) - Security Update for Windows XP (KB917953) - Security Update for Windows XP (KB905414) - Security Update for Windows XP (KB917344) - Security Update for Windows XP (KB914388) - Security Update for Windows Media Player Plug-in (KB911564) - Update for Windows XP (KB910437) 2
76 2008-09-16 15:14:48 2008-09-16 15:14:48 Service Control Manager INFO 7036 The Visual Studio 2005 Remote Debugger service entered the running state. 2
77 2008-09-16 15:14:48 2008-09-16 15:14:48 Service Control Manager INFO 7035 The Visual Studio 2005 Remote Debugger service was successfully sent a start control. 2
78 2008-09-16 15:14:54 2008-09-16 15:14:54 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Freitag, 18. Januar 2008 at 03:00: - Security Update for Windows XP (KB944653) - Security Update for Windows XP with Windows Media Format Runtime 9 (KB941569) - Update for Windows XP (KB942763) - Security Update for Windows XP (KB941644) - Update for Windows XP (KB938828) - Security Update for Windows XP (KB936021) - Update for Windows XP (KB942840) - Security Update for Windows XP (KB937894) - Security Update for Windows XP (KB943460) 2
79 2008-09-16 15:14:46 2008-09-16 15:14:47 Service Control Manager INFO 7036 The Computer Browser service entered the stopped state. 2
80 2008-09-16 15:14:52 2008-09-16 15:14:56 Print WARNING 4 Printer _#VMwareVirtualPrinter is pending deletion. 2
81 2008-09-16 15:14:51 2008-09-16 15:14:51 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Mittwoch, 7. November 2007 at 03:00: - Security Update for Windows XP (KB928843) - Security Update for Flash Player (KB923789) - Update for Windows XP (KB930916) - Security Update for Windows XP (KB920213) - Security Update for Windows XP (KB926255) - Security Update for Windows XP (KB918118) - Update for Windows XP (KB922582) - Security Update for Windows XP (KB923191) - Security Update for Windows XP (KB932168) - Security Update for Microsoft .NET Framework, Version 2.0 (KB928365) - Security Update for Windows XP (KB919007) - Security Update for Windows XP (KB930178) - Update for Windows XP (KB920872) - Security Update for Windows XP (KB926436) - Security Update for Microsoft XML Core Services 6.0 and Microsoft XML Core Services 6.0 Service Pack 1 (KB933579) 2
82 2008-09-16 15:14:51 2008-09-16 15:14:51 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Mittwoch, 7. November 2007 at 03:00: - Security Update for Windows XP (KB928843) - Security Update for Flash Player (KB923789) 2
83 2008-09-16 15:14:45 2008-09-16 15:14:46 Service Control Manager INFO 7036 The Network Connections service entered the running state. 2
84 2008-09-16 15:14:46 2008-09-16 15:14:46 Service Control Manager INFO 7035 The Fast User Switching Compatibility service was successfully sent a start control. 2
85 2008-09-16 15:14:46 2008-09-16 15:14:46 Service Control Manager INFO 7036 The Fast User Switching Compatibility service entered the running state. 2
86 2008-09-16 15:14:55 2008-09-16 15:14:55 NtServicePack INFO 4377 Windows XP Hotfix KB943460 was installed. 2
87 2008-09-16 15:14:52 2008-09-16 15:14:56 Print WARNING 3 Printer _#VMwareVirtualPrinter was deleted. 2
88 2008-09-16 15:14:48 2008-09-16 15:14:48 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Mittwoch, 16. August 2006 at 03:00: - Security Update for Windows XP (KB914389) - Security Update for Windows XP (KB920683) - Security Update for Windows XP (KB908519) - Update for Windows XP (KB894391) - Cumulative Security Update for Outlook Express for Windows XP (KB911567) - Security Update for Windows XP (KB896428) - Security Update for Windows XP (KB913580) - Security Update for Windows XP (KB905749) - Security Update for Windows XP (KB908531) - Security Update for Windows XP (KB904706) - Update for Windows XP (KB916595) - Security Update for Windows XP (KB912919) - Security Update for Windows XP (KB900725) - Security Update for Windows XP (KB888302) - Security Update for Windows XP (KB917422) - Security Update for Windows XP (KB901214) - Security Update for Windows XP (KB917953) - Security Update for Windows XP (KB905414) - Security Update for Windows XP (KB917344) - Security Update for Windows XP (KB914388) - Security Update for Windows Media Player Plug-in (KB911564) - Update for Windows XP (KB910437) - Securi 2
89 2008-09-16 15:14:45 2008-09-16 15:14:46 Service Control Manager INFO 7035 The Network Connections service was successfully sent a start control. 2
90 2008-09-16 15:14:54 2008-09-16 15:14:54 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Freitag, 18. Januar 2008 at 03:00: - Security Update for Windows XP (KB944653) - Cumulative Security Update for Internet Explorer 6 for Windows XP (KB942615) - Security Update for Windows XP (KB943485) - Security Update for Windows XP (KB941568) - Security Update for Windows XP with Windows Media Format Runtime 9 (KB941569) - Update for Windows XP (KB942763) - Security Update for Windows XP (KB941644) - Update for Windows XP (KB938828) - Security Update for Windows XP (KB936021) - Update for Windows XP (KB942840) - Security Update for Windows XP (KB937894) - Security Update for Windows XP (KB943460) 2
91 2008-09-16 15:14:41 2008-09-16 15:14:42 LoadPerf INFO 1000 Performance counters for the ISAPISearch (ISAPISearch) service were loaded successfully. The Record Data contains the new index values assigned to this service. 2
92 2008-09-16 15:14:41 2008-09-16 15:14:42 LoadPerf INFO 1000 Performance counters for the ContentFilter (ContentFilter) service were loaded successfully. The Record Data contains the new index values assigned to this service. 2
93 2008-09-16 15:14:56 2008-09-16 15:14:56 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Dienstag, 16. September 2008 at 03:00: - Security Update for Windows XP (KB938464) 2
94 2008-09-16 15:14:41 2008-09-16 15:14:42 LoadPerf INFO 1000 Performance counters for the ContentIndex (ContentIndex) service were loaded successfully. The Record Data contains the new index values assigned to this service. 2
95 2008-09-16 15:14:56 2008-09-16 15:14:56 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Dienstag, 16. September 2008 at 03:00: - Security Update for Windows XP (KB938464) - Security Update for Outlook Express for Windows XP (KB951066) - Update for Windows XP (KB952287) - Security Update for Windows XP (KB950762) 2
96 2008-09-16 15:14:42 2008-09-16 15:14:42 WinMgmt WARNING 5603 A provider, Rsop Planning Mode Provider, has been registered in the WMI namespace, root\RSOP, but did not specify the HostingModel property. This provider will be run using the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. Ensure that provider has been reviewed for security behavior and update the HostingModel property of the provider registration to an account with the least privileges possible for the required functionality. 2
97 2008-09-16 15:14:41 2008-09-16 15:14:42 EAPOL INFO 2001 EAPOL service was started successfully 2
98 2008-09-16 15:14:42 2008-09-16 15:14:42 MsiInstaller INFO 11728 Product: WebFldrs XP -- Configuration completed successfully. 2
99 2008-09-16 15:14:42 2008-09-16 15:14:45 Userenv WARNING 1517 Windows saved user XPTEST\Administrator registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use. This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account. 2
100 2008-09-16 15:14:56 2008-09-16 15:14:56 Windows Update Agent INFO 18 Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on Montag, 15. September 2008 at 17:24: - Cumulative Security Update for Internet Explorer 7 for Windows XP (KB944533) - Security Update for Windows XP (KB946026) 2
101 - - All other events NOTICE - All other events 477

MACHINENAME

No. First Event Last Event Process Type Event ID Description Count
1 2008-09-16 15:21:09 2008-09-16 15:21:09 ESENT NOTICE 100 svchost (648) The database engine 5.02.3790.1830 started. 3
2 2008-09-16 15:21:09 2008-09-16 15:21:09 WinMgmt WARNING 63 A provider, CmdTriggerConsumer, has been registered in the WMI namespace, Root\cimv2, to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. 2
3 2008-09-16 15:14:45 2008-09-16 15:21:13 Serial INFO 2 While validating that \Device\Serial0 was really a serial port, a fifo was detected. The fifo will be used. 2
4 2008-09-16 15:21:09 2008-09-16 15:21:10 WinMgmt WARNING 5603 A provider, Rsop Planning Mode Provider, has been registered in the WMI namespace, root\RSOP, but did not specify the HostingModel property. This provider will be run using the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. Ensure that provider has been reviewed for security behavior and update the HostingModel property of the provider registration to an account with the least privileges possible for the required functionality. 2
5 2008-09-16 15:21:09 2008-09-16 15:21:09 ESENT NOTICE 101 svchost (648) The database engine stopped. 2
6 2008-09-16 15:14:45 2008-09-16 15:21:13 Serial INFO 2 While validating that \Device\Serial1 was really a serial port, a fifo was detected. The fifo will be used. 2
7 2008-09-16 15:14:45 2008-09-16 15:21:13 EventLog INFO 6005 The Event log service was started. 2
8 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: ACPI\FIXEDBUTTON\2&DABA3FF&0 Vetoing device: ACPI\FixedButton\2&daba3ff&0 Vetoing service name: Driver\ACPI Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
9 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: ACPI\PNP0A03\2&DABA3FF&0 Vetoing device: IDE\DiskVMware_Virtual_IDE_Hard_Drive___________00000001\3030303030303030303030303030303030303130 Vetoing service name: Driver\Disk Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
10 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: PCI\VEN_8086&DEV_7110&SUBSYS_00000000&REV_08\3&61AAA01&0&38 Vetoing device: ACPI\PNP0F13\4&5289e18&0 Vetoing service name: Driver\i8042prt Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
11 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: PCI\VEN_8086&DEV_7111&SUBSYS_197615AD&REV_01\3&61AAA01&0&39 Vetoing device: IDE\DiskVMware_Virtual_IDE_Hard_Drive___________00000001\3030303030303030303030303030303030303130 Vetoing service name: Driver\Disk Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
12 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: PCIIDE\IDECHANNEL\4&23686003&0&0 Vetoing device: IDE\DiskVMware_Virtual_IDE_Hard_Drive___________00000001\3030303030303030303030303030303030303130 Vetoing service name: Driver\Disk Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
13 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: ACPI\PNP0303\4&5289E18&0 Vetoing device: ACPI\PNP0303\4&5289e18&0 Vetoing service name: Driver\i8042prt Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
14 2008-09-16 15:21:13 2008-09-16 15:21:13 Workstation NOTICE 3261 This computer has been successfully joined to workgroup 'VMWARE'. 1
15 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: IDE\DISKVMWARE_VIRTUAL_IDE_HARD_DRIVE___________00000001\3030303030303030303030303030303030303130 Vetoing device: IDE\DiskVMware_Virtual_IDE_Hard_Drive___________00000001\3030303030303030303030303030303030303130 Vetoing service name: Driver\Disk Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
16 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: STORAGE\VOLUME\1&30A96598&0&SIGNATUREAC0EAC0EOFFSET7E00LENGTH3FF2E5000 Vetoing device: STORAGE\Volume\1&30a96598&0&SignatureAC0EAC0EOffset7E00Length3FF2E5000 Vetoing service name: FileSystem\Ntfs Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
17 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: ACPI\PNP0B00\4&5289E18&0 Vetoing device: ACPI\PNP0B00\4&5289e18&0 Vetoing service name: Driver\ACPI Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
18 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: ACPI\PNP0F13\4&5289E18&0 Vetoing device: ACPI\PNP0F13\4&5289e18&0 Vetoing service name: Driver\i8042prt Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1
19 2008-09-16 15:21:11 2008-09-16 15:21:11 Security NOTICE 576 Special privileges assigned to new logon: User Name: NETWORK SERVICE Domain: NT AUTHORITY Logon ID: (0x0,0x3E4) Privileges: SeAuditPrivilege SeAssignPrimaryTokenPrivilege SeImpersonatePrivilege 1
20 2008-09-16 15:21:11 2008-09-16 15:21:11 Security NOTICE 612 Audit Policy Change: New Policy: Success Failure + - Logon/Logoff - - Object Access - - Privilege Use - - Account Management - - Policy Change - - System - - Detailed Tracking - - Directory Service Access + - Account Logon Changed By: User Name: MACHINENAME$ Domain Name: Logon ID: (0x0,0x3E7) 1
21 2008-09-16 15:21:09 2008-09-16 15:21:09 EventSystem NOTICE 4625 The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds. The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog. 1
22 2008-09-16 15:21:09 2008-09-16 15:21:09 WinMgmt WARNING 63 A provider, HiPerfCooker_v1, has been registered in the WMI namespace, Root\WMI, to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. 1
23 2008-09-16 15:14:45 2008-09-16 15:14:45 EventLog INFO 6009 Microsoft (R) Windows (R) 5.01. 2600 Uniprocessor Free. 1
24 2008-09-16 15:21:11 2008-09-16 15:21:11 Security NOTICE 528 Successful Logon: User Name: LOCAL SERVICE Domain: NT AUTHORITY Logon ID: (0x0,0x3E5) Logon Type: 5 Logon Process: Advapi Authentication Package: Negotiate Workstation Name: Logon GUID: - Caller User Name: MACHINENAME$ Caller Domain: Caller Logon ID: (0x0,0x3E7) Caller Process ID: 284 Transited Services: - Source Network Address: - Source Port: - 1
25 2008-09-16 15:21:11 2008-09-16 15:21:11 Security NOTICE 576 Special privileges assigned to new logon: User Name: LOCAL SERVICE Domain: NT AUTHORITY Logon ID: (0x0,0x3E5) Privileges: SeAuditPrivilege SeAssignPrimaryTokenPrivilege SeImpersonatePrivilege 1
26 2008-09-16 15:21:13 2008-09-16 15:21:13 DCOM NOTICE 10026 The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds. The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog. 1
27 2008-09-16 15:21:13 2008-09-16 15:21:13 EventLog NOTICE 6009 Microsoft (R) Windows (R) 5.02. 3790 Service Pack 1 Uniprocessor Free. 1
28 2008-09-16 15:21:11 2008-09-16 15:21:11 Security NOTICE 528 Successful Logon: User Name: NETWORK SERVICE Domain: NT AUTHORITY Logon ID: (0x0,0x3E4) Logon Type: 5 Logon Process: Advapi Authentication Package: Negotiate Workstation Name: Logon GUID: - Caller User Name: MACHINENAME$ Caller Domain: Caller Logon ID: (0x0,0x3E7) Caller Process ID: 284 Transited Services: - Source Network Address: - Source Port: - 1
29 2008-09-16 15:21:13 2008-09-16 15:21:13 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: ROOT\DMIO\0000 Vetoing device: Root\dmio\0000 Vetoing service name: Driver\dmio Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 1

W2KTESTING

No. First Event Last Event Process Type Event ID Description Count
1 2008-09-16 15:15:12 2008-09-16 15:21:51 EventLog INFO 6005 Der Ereignisprotokolldienst wurde gestartet. 27
2 2008-09-16 15:15:12 2008-09-16 15:21:51 EventLog INFO 6006 Der Ereignisprotokolldienst wurde beendet. 25
3 2008-09-16 15:15:12 2008-09-16 15:22:51 VMTools INFO 105 The service was started. 20
4 2008-09-16 15:15:13 2008-09-16 15:21:51 EventLog INFO 6009 Microsoft (R) Windows 2000 (R) 5.0 2195 Service Pack 4 Uniprocessor Free. 14
5 2008-09-16 15:15:12 2008-09-16 15:15:13 EventLog INFO 6009 Microsoft (R) Windows 2000 (R) 5.0 2195 Uniprocessor Free. 13
6 2008-09-16 15:15:11 2008-09-16 15:15:12 Oakley INFO 542 Die IP-Sicherheitsrichtlinie für ISAKMP/Oakley verwendet einen Verschlüsselungsalgorithmus, der aufgrund von Exportbeschränkungen für Kryptografie ungültig ist. Die von ISAKMP/Oakley verwendete 3DES-Verschlüsselung wird auf eine Standard-DES-Verschlüsselung herabgesetzt. Dies verursacht im Allgemeinen keine Probleme. ISAKMP/Oakley kann weiterhin IP-Sicherheitsparameter aushandeln und die Aushandlung mit DES-Verschlüsselung schützen. Wenden Sie sich an den Netzwerkadministrator, wenn Sie trotzdem verlangen, dass die ISAKMP/Oakley-Aushandlung durch 3DES-Verschlüsselung geschützt werden soll. 13
7 2008-09-16 15:15:11 2008-09-16 15:15:12 VMware Tools Service INFO 105 The description for Event ID ( 105 ) in Source ( VMware Tools Service ) could not be found. It contains the following insertion string(s): 12
8 2008-09-16 15:15:11 2008-09-16 15:15:12 SceCli INFO 1704 Die Sicherheitsrichtlinien in den Gruppenrichtlinienobjekten wurden erfolgreich angewendet. 9
9 2008-09-16 15:15:13 2008-09-16 15:15:13 MRxSmb WARNING 3034 Der Redirectordienst konnte den Sicherheitskontext oder die Abfragekontextattribute nicht initialisieren. 8
10 2008-09-16 15:15:11 2008-09-16 15:15:11 VMware INFO 105 The description for Event ID ( 105 ) in Source ( VMware ) could not be found. It contains the following insertion string(s): 5
11 2008-09-16 15:15:12 2008-09-16 15:15:12 VMTools INFO 108 The service was stopped. 5
12 2008-09-16 15:15:11 2008-09-16 15:15:11 Userenv ERR 1000 Der Benutzer oder der Computername kann nicht ermittelt werden. Zurückgegebener Wert (1326). 5
13 2008-09-16 15:15:12 2008-09-16 15:15:13 NETLOGON ERR 3210 Die Authentifizierung mit \\adisconint.intern.adiscon.com, einem Windows NT- oder Windows 2000-Domänen Controller für die Domäne ADISCON, ist fehlgeschlagen. 5
14 2008-09-16 15:15:11 2008-09-16 15:15:12 VMware Tools Service INFO 108 The description for Event ID ( 108 ) in Source ( VMware Tools Service ) could not be found. It contains the following insertion string(s): 4
15 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Product: Visual Studio .NET Enterprise Architect - English -- Installation operation completed successfully. 4
16 2008-09-16 15:15:11 2008-09-16 15:15:11 VMware Tools Service INFO 100 The description for Event ID ( 100 ) in Source ( VMware Tools Service ) could not be found. It contains the following insertion string(s): VMware Tools Service 4
17 2008-09-16 15:15:12 2008-09-16 15:21:50 Adiscon EvntSLog INFO 118 EventReporter is running in trial mode. 29 days left 3
18 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11728 Product: VMware Tools -- Configuration completed successfully. 3
19 2008-09-16 15:15:13 2008-09-16 15:15:13 DnsApi INFO 11152 Der Netzwerkadapter konnte mit folgenden Einstellungen nicht registriert werden: Adaptername : {B28A1A2E-3AF4-4BF3-A6E0-E031391B4BD0} Hostname : w2ktesting Adapterspezifisches Domänensuffix : intern.adiscon.com DNS-Serverliste : 172.16.0.2 Server, an den Aktualisierung gesendet wurde : 172.16.0.2 IP-Adresse(n) : 172.16.172.3 Die Registrierung ist aufgrund der folgenden Ursachen fehlgeschlagen: (a) Der DNS-Server unterstützt das Protokoll für die dynamische DNS-Aktualisierung nicht. (b) Die primäre autorisierende Zone für die Namensregistrierung lässt zurzeit keine dynamischen Aktualisierungen zu. Wenden Sie sich an den DNS-Server- oder Netzwerksystemadministrator, um einen Ressourceneintrag für einen DNS-Host (A) mit dem spezifisches DNS-Namen für diesen Adapter hinzuzufügen oder zu registrieren. 3
20 2008-09-16 15:15:11 2008-09-16 15:15:11 VMware Tools Service INFO 101 The description for Event ID ( 101 ) in Source ( VMware Tools Service ) could not be found. It contains the following insertion string(s): VMware Tools Service 3
21 2008-09-16 15:15:13 2008-09-16 15:15:13 w32time WARNING 11 Der NTP-Server \\adisconone.intern.adiscon.com hat nicht reagiert. 2
22 2008-09-16 15:15:12 2008-09-16 15:15:12 MSDTC INFO 4097 MS DTC wurde gestartet 2
23 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Product: Visual Studio.NET Baseline - English -- Installation operation completed successfully. 2
24 2008-09-16 15:15:13 2008-09-16 15:15:13 Print WARNING 2 Der Drucker "_#VMwareVirtualPrinter" wurde erstellt. 2
25 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Product: Visual Studio .NET Enterprise Architect 2003 - English -- Installation operation completed successfully. 2
26 2008-09-16 15:15:11 2008-09-16 15:15:11 VMware INFO 108 The description for Event ID ( 108 ) in Source ( VMware ) could not be found. It contains the following insertion string(s): 2
27 2008-09-16 15:15:11 2008-09-16 15:15:11 VMware INFO 101 The description for Event ID ( 101 ) in Source ( VMware ) could not be found. It contains the following insertion string(s): VMware 2
28 2008-09-16 15:15:13 2008-09-16 15:15:13 Workstation ERR 3113 Initialisierung gescheitert, da der angeforderte Dienst redirector nicht gestartet werden konnte. 2
29 2008-09-16 15:15:11 2008-09-16 15:15:11 MsiInstaller INFO 1000 Product: WebFldrs -- Installation operation completed successfully. 2
30 2008-09-16 15:15:13 2008-09-16 15:15:13 NETLOGON ERR 5721 Die Sitzung mit dem Windows NT- oder Windows 2000-Domänencontroller der Domäne ADISCON konnte nicht eingerichtet werden, da auf dem Domänencontroller kein Konto für Computer W2KTESTING besteht. 2
31 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Product: VMware Tools -- Installation operation completed successfully. 2
32 2008-09-16 15:15:11 2008-09-16 15:15:11 VMware INFO 100 The description for Event ID ( 100 ) in Source ( VMware ) could not be found. It contains the following insertion string(s): VMware 2
33 2008-09-16 15:15:12 2008-09-16 15:15:12 WinMgmt WARNING 62 WMI-ADAP konnte die Leistungsbibliothek ".NET CLR Networking" nicht verarbeiten, da einer der Datenblobs Klassen mit einer Größe von null gemeldet hat. 2
34 2008-09-16 15:15:12 2008-09-16 15:15:12 WinMgmt WARNING 62 WMI-ADAP konnte die Leistungsbibliothek ".NET CLR Data" nicht verarbeiten, da einer der Datenblobs Klassen mit einer Größe von null gemeldet hat. 2
35 2008-09-16 15:15:13 2008-09-16 15:15:13 Print WARNING 20 Druckertreiber TP Output Gateway für Windows NT x86 Version-3 wurde hinzugefügt oder aktualisiert. Dateien:- TPPRN.DLL, TPPrnUI.DLL, TPOG.bin, TPOG.hlp. 2
36 2008-09-16 15:15:13 2008-09-16 15:15:13 NtServicePack INFO 4381 Windows 2000 Service Pack 4 wurde installiert. 1
37 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 1005 Windows Installer ha iniciado un reinicio del sistema para completar o continuar con la configuración de 'EventReporter 9.2 - Build 301'. 1
38 2008-09-16 15:15:13 2008-09-16 15:15:13 Service Control Manager ERR 7031 Der Dienst "Windows Installer" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Kein Vorgang. 1
39 2008-09-16 15:15:13 2008-09-16 15:15:13 Windows Installer 3.1 INFO 4377 Windows Installer, Hotfix KB893803v2 wurde installiert. 1
40 2008-09-16 15:15:13 2008-09-16 15:15:13 Print WARNING 3 Der Drucker "_#VMwareVirtualPrinter" wurde gelöscht. 1
41 2008-09-16 15:15:13 2008-09-16 15:15:13 Print WARNING 4 Das Löschen des Druckers "_#VMwareVirtualPrinter" steht noch aus. 1
42 2008-09-16 15:15:13 2008-09-16 15:15:13 BROWSER INFO 8033 Der Suchdienst hat eine Wahl auf dem Netzwerk "\Device\NetBT_Tcpip_{B28A1A2E-3AF4-4BF3-A6E0-E031391B4BD0}" erzwungen, da der Hauptsuchdienst beendet wurde. 1
43 2008-09-16 15:15:12 2008-09-16 15:15:12 Distributed Link Tracking Client INFO 12505 C wurde eine neue Datenträgerkennung zugewiesen: {8f34e9f4-6e48-48c8-9b5c-4ca4ce9ebded} Die Überwachung verteilter Verknüpfungen verwendet diese Kennung, um Dateiverknüpfungen (z.B. Shell- und OLE-Verknüpfungen) automatisch zu reparieren, wenn diese beschädigt wurden. Wenn vorher beschädigte Verknüpfungen zu Dateien auf diesem Datenträger vorhanden sind, können diese eventuell nicht automatisch repariert werden. 1
44 2008-09-16 15:15:13 2008-09-16 15:15:13 NETLOGON ERR 3210 Die Authentifizierung mit \\adisconone.intern.adiscon.com, einem Windows NT- oder Windows 2000-Domänen Controller für die Domäne ADISCON, ist fehlgeschlagen. 1
45 2008-09-16 15:15:12 2008-09-16 15:15:12 ASP.NET 1.1.4322.0 WARNING 1020 Updates to the IIS metabase were aborted because IIS is either not installed or is disabled on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i. 1
46 2008-09-16 15:15:12 2008-09-16 15:15:12 LoadPerf INFO 1000 Die Leistungsindikatoren für den Dienst ".NET CLR Networking" wurden geladen. Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte. 1
47 2008-09-16 15:15:12 2008-09-16 15:15:12 LoadPerf INFO 1000 Die Leistungsindikatoren für den Dienst ".NET CLR Data" wurden geladen. Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte. 1
48 2008-09-16 15:15:12 2008-09-16 15:15:12 LoadPerf INFO 1000 Die Leistungsindikatoren für den Dienst ".NETFramework" wurden geladen. Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte. 1
49 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Product: Microsoft .NET Framework (English) v1.0.3705 -- Installation operation completed successfully. 1
50 2008-09-16 15:15:12 2008-09-16 15:15:12 ASP.NET 1.0.3705.0 ERR 1031 The description for Event ID ( 1031 ) in Source ( ASP.NET 1.0.3705.0 ) could not be found. It contains the following insertion string(s): 0x80040154 1
51 2008-09-16 15:15:12 2008-09-16 15:15:12 ASP.NET 1.0.3705.0 INFO 1017 The description for Event ID ( 1017 ) in Source ( ASP.NET 1.0.3705.0 ) could not be found. It contains the following insertion string(s): 1.0.3705.0 1
52 2008-09-16 15:15:11 2008-09-16 15:15:11 Userenv ERR 1000 Der Benutzer oder der Computername kann nicht ermittelt werden. Zurückgegebener Wert (1317). 1
53 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Produkt: Windows Installer -- Die Installation wurde erfolgreich abgeschlossen. 1
54 2008-09-16 15:15:12 2008-09-16 15:15:12 WinMgmt WARNING 37 WMI-ADAP konnte die folgende Leistungsbibliothek "msdtcui.DLL" aufgrund eines unbekannten Fehlers innerhalb der Bibliothek nicht laden: 0x0 1
55 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Product: Microsoft FrontPage Client - English -- Installation operation completed successfully. 1
56 2008-09-16 15:15:12 2008-09-16 15:15:12 EventSystem WARNING 4100 Das COM+-Ereignissystem konnte nicht eine Instanz des Abonnenten {6295DF2D-35EE-11D1-8707-00C04FD93327} erstellen. CoCreateInstanceEx gab zurück HRESULT 8000401A 1
57 2008-09-16 15:15:12 2008-09-16 15:15:12 ASP.NET 1.1.4322.0 INFO 1017 Start registering ASP.NET (version 1.1.4322.0) 1
58 2008-09-16 15:15:12 2008-09-16 15:15:12 LoadPerf ERR 3009 Die Zeichenfolgen der Leistungsindikatoren für .NETFramework konnten nicht installiert werden. Fehlercode: DWORD 0 der Daten. 1
59 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Product: Microsoft .NET Framework 1.1 -- Installation operation completed successfully. 1
60 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Product: Microsoft Visual J# .NET Redistributable Package 1.1 -- Installation operation completed successfully. 1
61 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 1005 Windows Installer ha iniciado un reinicio del sistema para completar o continuar con la configuración de 'VMware Tools'. 1
62 2008-09-16 15:15:12 2008-09-16 15:15:12 LoadPerf ERR 3009 Die Zeichenfolgen der Leistungsindikatoren für .NET CLR Networking konnten nicht installiert werden. Fehlercode: DWORD 0 der Daten. 1
63 2008-09-16 15:15:12 2008-09-16 15:15:12 LoadPerf ERR 3009 Die Zeichenfolgen der Leistungsindikatoren für .NET CLR Data konnten nicht installiert werden. Fehlercode: DWORD 0 der Daten. 1
64 2008-09-16 15:15:12 2008-09-16 15:15:12 LoadPerf INFO 1000 Die Leistungsindikatoren für den Dienst "ASP.NET_1.1.4322" wurden geladen. Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte. 1
65 2008-09-16 15:15:12 2008-09-16 15:15:12 LoadPerf INFO 1000 Die Leistungsindikatoren für den Dienst "ASP.NET" wurden geladen. Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte. 1
66 2008-09-16 15:15:12 2008-09-16 15:15:12 ASP.NET 1.1.4322.0 INFO 1019 Finish registering ASP.NET (version 1.1.4322.0). Detailed registration logs can be found in C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\ASPNETSetup.log 1
67 2008-09-16 15:15:12 2008-09-16 15:15:12 MsiInstaller INFO 11707 Product: EventReporter 9.2 - Build 301 -- Installation operation completed successfully. 1

W2003R2

No. First Event Last Event Process Type Event ID Description Count
1 2008-09-16 15:21:14 2008-09-16 15:21:21 Service Control Manager NOTICE 7040 The start type of the Background Intelligent Transfer Service service was changed from auto start to demand start. 221
2 2008-09-16 15:21:14 2008-09-16 15:21:21 Service Control Manager NOTICE 7040 The start type of the Background Intelligent Transfer Service service was changed from demand start to auto start. 221
3 2008-09-16 15:21:10 2008-09-16 15:21:11 VMTools NOTICE 105 The service was started. 14
4 2008-09-16 15:21:11 2008-09-16 15:22:27 Security NOTICE 680 Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0 Logon account: Administrator Source Workstation: W2003R2 Error Code: 0x0 10
5 2008-09-16 15:21:13 2008-09-16 15:21:26 IPSec NOTICE 4295 The IPSec Driver is starting in Bypass mode. No IPSec security is being applied while this computer starts up. IPSec policies, if they have been assigned, will be applied to this computer after the IPSec services start. 9
6 2008-09-16 15:21:09 2008-09-16 15:21:11 EventSystem NOTICE 4625 The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds. The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog. 9
7 2008-09-16 15:21:09 2008-09-16 15:21:11 MSDTC NOTICE 4193 MS DTC started with the following settings (OFF = 0 and ON = 1): Security Configuration: Network Administration of Transactions = 0, Network Clients = 0, Inbound Distributed Transactions using Native MSDTC Protocol = 0, Outbound Distributed Transactions using Native MSDTC Protocol = 0, Transaction Internet Protocol (TIP) = 0, XA Transactions = 0 Filtering Duplicate events = 9
8 2008-09-16 15:21:11 2008-09-16 15:22:27 Security NOTICE 576 Special privileges assigned to new logon: User Name: LOCAL SERVICE Domain: NT AUTHORITY Logon ID: (0x0,0x3E5) Privileges: SeAuditPrivilege SeAssignPrimaryTokenPrivilege SeImpersonatePrivilege 9
9 2008-09-16 15:21:10 2008-09-16 15:21:11 WinMgmt WARNING 5603 A provider, TPAutoConnDLL, has been registered in the WMI namespace, Root\ThinPrint, but did not specify the HostingModel property. This provider will be run using the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. Ensure that provider has been reviewed for security behavior and update the HostingModel property of the provider registration to an account with the least privileges possible for the required functionality. 9
10 2008-09-16 15:21:11 2008-09-16 15:21:13 Security NOTICE 576 Special privileges assigned to new logon: User Name: NETWORK SERVICE Domain: NT AUTHORITY Logon ID: (0x0,0x3E4) Privileges: SeAuditPrivilege SeAssignPrimaryTokenPrivilege SeImpersonatePrivilege 8
11 2008-09-16 15:21:13 2008-09-16 15:21:26 AeLookupSvc NOTICE 3 The Application Experience Lookup service started successfully. 8
12 2008-09-16 15:21:13 2008-09-16 15:21:26 DCOM NOTICE 10026 The COM sub system is suppressing duplicate event log entries for a duration of 86400 seconds. The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\Ole\EventLog. 8
13 2008-09-16 15:21:13 2008-09-16 15:21:26 EventLog NOTICE 6009 Microsoft (R) Windows (R) 5.02. 3790 Service Pack 1 Uniprocessor Free. 8
14 2008-09-16 15:21:11 2008-09-16 15:21:13 Security NOTICE 528 Successful Logon: User Name: SYSTEM Domain: NT AUTHORITY Logon ID: (0x0,0x3E7) Logon Type: 0 Logon Process: - Authentication Package: - Workstation Name: - Logon GUID: - Caller User Name: - Caller Domain: - Caller Logon ID: - Caller Process ID: 4 Transited Services: - Source Network Address: - Source Port: - 8
15 2008-09-16 15:21:13 2008-09-16 15:21:26 IPSec NOTICE 4294 The IPSec driver has entered Secure mode. IPSec policies, if they have been configured, are now being applied to this computer. 8
16 2008-09-16 15:21:13 2008-09-16 15:21:26 EventLog NOTICE 6005 The Event log service was started. 8
17 2008-09-16 15:21:14 2008-09-16 15:21:26 Service Control Manager NOTICE 7035 The Network Location Awareness (NLA) service was successfully sent a start control. 8
18 2008-09-16 15:21:09 2008-09-16 15:23:27 LoadPerf NOTICE 1000 Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully. The Record Data contains the new index values assigned to this service. 8
19 2008-09-16 15:21:24 2008-09-16 15:21:26 Print NOTICE 9 Printer _#VMwareVirtualPrinter was set. 8
20 2008-09-16 15:21:14 2008-09-16 15:21:26 Service Control Manager NOTICE 7036 The Network Location Awareness (NLA) service entered the running state. 8
21 2008-09-16 15:21:14 2008-09-16 15:21:26 Service Control Manager NOTICE 7035 The Terminal Services service was successfully sent a start control. 8
22 2008-09-16 15:21:14 2008-09-16 15:21:26 Service Control Manager NOTICE 7036 The Terminal Services service entered the running state. 8
23 2008-09-16 15:21:09 2008-09-16 15:23:27 LoadPerf NOTICE 1001 Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries. 7
24 2008-09-16 15:21:13 2008-09-16 15:21:26 EventLog NOTICE 6006 The Event log service was stopped. 7
25 2008-09-16 15:21:11 2008-09-16 15:21:13 SECURITY NOTICE 513 Windows is shutting down. All logon sessions will be terminated by this shutdown. 7
26 2008-09-16 15:21:24 2008-09-16 15:21:26 Service Control Manager NOTICE 7036 The Network Connections service entered the running state. 6
27 2008-09-16 15:21:24 2008-09-16 15:21:26 Service Control Manager NOTICE 7035 The Network Connections service was successfully sent a start control. 6
28 2008-09-16 15:21:10 2008-09-16 15:21:11 VMTools NOTICE 108 The service was stopped. 5
29 2008-09-16 15:21:14 2008-09-16 15:21:26 Service Control Manager NOTICE 7035 The Windows Installer service was successfully sent a start control. 5
30 2008-09-16 15:21:14 2008-09-16 15:21:26 Service Control Manager NOTICE 7036 The Windows Installer service entered the running state. 5
31 2008-09-16 15:21:14 2008-09-16 15:30:27 Service Control Manager NOTICE 7036 The Windows Installer service entered the stopped state. 5
32 2008-09-16 15:21:14 2008-09-16 15:21:26 Service Control Manager NOTICE 7036 The VMware Tools Service service entered the running state. 4
33 2008-09-16 15:21:14 2008-09-16 15:21:26 Service Control Manager NOTICE 7040 The start type of the vmx_svga service was changed from system start to demand start. 4
34 2008-09-16 15:21:14 2008-09-16 15:21:26 Service Control Manager NOTICE 7035 The VMware Tools Service service was successfully sent a start control. 4
35 2008-09-16 15:21:10 2008-09-16 15:21:11 MsiInstaller NOTICE 1005 The Windows Installer initiated a system restart to complete or continue the configuration of 'VMware Tools'. 4
36 2008-09-16 15:21:14 2008-09-16 15:21:26 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: ACPI\PNP0F13\4&5289E18&0 Vetoing device: ACPI\PNP0F13\4&5289e18&0 Vetoing service name: Driver\i8042prt Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 4
37 2008-09-16 15:21:24 2008-09-16 15:21:26 Service Control Manager NOTICE 7040 The start type of the vmx_svga service was changed from demand start to system start. 3
38 2008-09-16 15:21:24 2008-09-16 15:21:26 PlugPlayManager NOTICE 271 The Plug and Play operation cannot be completed because a device driver is preventing the device from stopping. The name of the device driver is listed as the vetoing service name below. Vetoed device: PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&61AAA01&0&78 Vetoing device: PCI\VEN_15AD&DEV_0405&SUBSYS_040515AD&REV_00\3&61aaa01&0&78 Vetoing service name: Driver\vmx_svga Veto type 6: PNP_VetoDevice When Windows attempts to install, upgrade, remove, or reconfigure a device, it queries the driver responsible for that device to confirm that the operation can be performed. If any of these drivers denies permission (query-removal veto), then the computer must be restarted in order to complete the operation. User Action Restart your computer. 3
39 2008-09-16 15:21:24 2008-09-16 15:21:26 Service Control Manager NOTICE 7036 The VMware Tools Service service entered the stopped state. 3
40 2008-09-16 15:21:24 2008-09-16 15:21:26 Print WARNING 20 Printer Driver TP Output Gateway for Windows NT x86 Version-3 was added or updated. Files:- TPPRN.DLL, TPPrnUI.DLL, TPOG.bin, TPOG.hlp. 3
41 2008-09-16 15:21:11 2008-09-16 15:21:11 Adiscon EvntSLog NOTICE 118 EventReporter is running in trial mode. 29 days left 3
42 2008-09-16 15:21:24 2008-09-16 15:21:26 Print NOTICE 2 Printer _#VMwareVirtualPrinter was created. 3
43 2008-09-16 15:21:24 2008-09-16 15:21:26 Service Control Manager NOTICE 7035 The VMware Tools Service service was successfully sent a stop control. 3
44 2008-09-16 15:21:10 2008-09-16 15:21:11 crypt32 NOTICE 2 Successful auto update retrieval of third-party root list cab from: 3
45 2008-09-16 15:21:26 2008-09-16 15:21:26 Service Control Manager NOTICE 7036 The Adiscon EvntSLog service entered the running state. 3
46 2008-09-16 15:21:10 2008-09-16 15:21:11 crypt32 NOTICE 7 Successful auto update retrieval of third-party root list sequence number from: 3
47 2008-09-16 15:21:10 2008-09-16 15:21:11 MsiInstaller NOTICE 11728 Product: VMware Tools -- Configuration completed successfully. 3
48 2008-09-16 15:21:26 2008-09-16 15:21:26 Service Control Manager NOTICE 7035 The Adiscon EvntSLog service was successfully sent a start control. 3
49 2008-09-16 15:21:12 2008-09-16 15:21:12 Security NOTICE 552 Logon attempt using explicit credentials: Logged on user: User Name: W2003R2$ Domain: VMWARE Logon ID: (0x0,0x3E7) Logon GUID: - User whose credentials were used: Target User Name: Administrator Target Domain: W2003R2 Target Logon GUID: - Target Server Name: localhost Target Server Info: localhost Caller Process ID: 568 Source Network Address: 127.0.0.1 Source Port: 0 2
50 2008-09-16 15:21:13 2008-09-16 15:22:27 Security NOTICE 528 Successful Logon: User Name: Administrator Domain: W2003R2 Logon ID: (0x0,0xE4C7) Logon Type: 2 Logon Process: User32 Authentication Package: Negotiate Workstation Name: W2003R2 Logon GUID: - Caller User Name: W2003R2$ Caller Domain: VMWARE Caller Logon ID: (0x0,0x3E7) Caller Process ID: 640 Transited Services: - Source Network Address: 127.0.0.1 Source Port: 0 2
51 2008-09-16 15:21:13 2008-09-16 15:22:27 Security NOTICE 552 Logon attempt using explicit credentials: Logged on user: User Name: W2003R2$ Domain: VMWARE Logon ID: (0x0,0x3E7) Logon GUID: - User whose credentials were used: Target User Name: Administrator Target Domain: W2003R2 Target Logon GUID: - Target Server Name: localhost Target Server Info: localhost Caller Process ID: 640 Source Network Address: 127.0.0.1 Source Port: 0 2
52 2008-09-16 15:21:13 2008-09-16 15:22:26 Security NOTICE 528 Successful Logon: User Name: LOCAL SERVICE Domain: NT AUTHORITY Logon ID: (0x0,0x3E5) Logon Type: 5 Logon Process: Advapi Authentication Package: Negotiate Workstation Name: Logon GUID: - Caller User Name: W2003R2$ Caller Domain: VMWARE Caller Logon ID: (0x0,0x3E7) Caller Process ID: 684 Transited Services: - Source Network Address: - Source Port: - 2
53 2008-09-16 15:21:14 2008-09-16 15:21:14 Service Control Manager NOTICE 7035 The Application Layer Gateway Service service was successfully sent a start control. 2
54 2008-09-16 15:21:26 2008-09-16 15:21:26 Service Control Manager NOTICE 7035 The Adiscon EvntSLog service was successfully sent a stop control. 2
55 2008-09-16 15:21:26 2008-09-16 15:21:26 Service Control Manager NOTICE 7036 The Adiscon EvntSLog service entered the stopped state. 2
56 2008-09-16 15:21:12 2008-09-16 15:21:12 Security NOTICE 552 Logon attempt using explicit credentials: Logged on user: User Name: W2003R2$ Domain: VMWARE Logon ID: (0x0,0x3E7) Logon GUID: - User whose credentials were used: Target User Name: Administrator Target Domain: W2003R2 Target Logon GUID: - Target Server Name: localhost Target Server Info: localhost Caller Process ID: 532 Source Network Address: 127.0.0.1 Source Port: 0 2
57 2008-09-16 15:21:14 2008-09-16 15:21:14 Service Control Manager NOTICE 7036 The Computer Browser service entered the stopped state. 2
58 2008-09-16 15:21:14 2008-09-16 15:21:14 Service Control Manager NOTICE 7036 The Application Layer Gateway Service service entered the running state. 2
59 2008-09-16 15:21:12 2008-09-16 15:21:13 Security NOTICE 552 Logon attempt using explicit credentials: Logged on user: User Name: W2003R2$ Domain: VMWARE Logon ID: (0x0,0x3E7) Logon GUID: - User whose credentials were used: Target User Name: Administrator Target Domain: W2003R2 Target Logon GUID: - Target Server Name: localhost Target Server Info: localhost Caller Process ID: 712 Source Network Address: 127.0.0.1 Source Port: 0 2
60 2008-09-16 15:21:13 2008-09-16 15:22:27 Security NOTICE 540 Successful Network Logon: User Name: Domain: Logon ID: (0x0,0xA635) Logon Type: 3 Logon Process: NtLmSsp Authentication Package: NTLM Workstation Name: Logon GUID: - Caller User Name: - Caller Domain: - Caller Logon ID: - Caller Process ID: - Transited Services: - Source Network Address: - Source Port: - 2
61 2008-09-16 15:21:25 2008-09-16 15:21:26 Print WARNING 4 Printer _#VMwareVirtualPrinter is pending deletion. 2
62 2008-09-16 15:21:25 2008-09-16 15:21:26 W32Time NOTICE 37 The time provider NtpClient is currently receiving valid time data from time.windows.com (ntp.m|0x1|172.16.0.124:123->207.46.197.32:123). 2
63 2008-09-16 15:21:11 2008-09-16 15:21:11 Adiscon EvntSLog ERR 1005 Can't initiate the SETP session. This error Event will NOT be logged again. If the connection is restored, the Event 1012 will be logged. Most probably the SETP server could not be reached or does not answer. Please check the the configuration holds the correct server name or IP address as well as the correct port. If you use an server name, you might want to check the dns settings to make sure the name can be resolved. Please also check if the SETP server process is operational. Additional Information: Couldn't connect to host Additional help might be available at http://www.adiscon.com/EventHelp.asp 2
64 2008-09-16 15:21:10 2008-09-16 15:21:10 PassportManager NOTICE 5008 Passport Manager configuration ok. 2
65 2008-09-16 15:21:25 2008-09-16 15:21:26 W32Time NOTICE 35 The time service is now synchronizing the system time with the time source time.windows.com (ntp.m|0x1|172.16.0.124:123->207.46.197.32:123). 2
66 2008-09-16 15:21:11 2008-09-16 15:21:12 Security NOTICE 552 Logon attempt using explicit credentials: Logged on user: User Name: W2003R2$ Domain: VMWARE Logon ID: (0x0,0x3E7) Logon GUID: - User whose credentials were used: Target User Name: Administrator Target Domain: W2003R2 Target Logon GUID: - Target Server Name: localhost Target Server Info: localhost Caller Process ID: 572 Source Network Address: 127.0.0.1 Source Port: 0 2
67 2008-09-16 15:21:25 2008-09-16 15:21:26 Print WARNING 3 Printer _#VMwareVirtualPrinter was deleted. 2
68 2008-09-16 15:21:11 2008-09-16 15:21:11 Userenv WARNING 1517 Windows saved user W2003R2\Administrator registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use. This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account. 2
69 2008-09-16 15:21:13 2008-09-16 15:22:27 Security NOTICE 576 Special privileges assigned to new logon: User Name: Administrator Domain: W2003R2 Logon ID: (0x0,0xE4C7) Privileges: SeSecurityPrivilege SeBackupPrivilege SeRestorePrivilege SeTakeOwnershipPrivilege SeDebugPrivilege SeSystemEnvironmentPrivilege SeLoadDriverPrivilege SeImpersonatePrivilege 2
70 2008-09-16 15:21:23 2008-09-16 15:21:23 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB911562) 1
71 2008-09-16 15:21:23 2008-09-16 15:21:23 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Cumulative Security Update for Outlook Express for Windows Server 2003 (KB911567) 1
72 2008-09-16 15:21:23 2008-09-16 15:21:23 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB911280 was installed. 1
73 2008-09-16 15:21:23 2008-09-16 15:21:23 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB918439) 1
74 2008-09-16 15:21:23 2008-09-16 15:21:23 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB917953) 1
75 2008-09-16 15:21:23 2008-09-16 15:21:23 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB911562 was installed. 1
76 2008-09-16 15:21:23 2008-09-16 15:21:23 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB908531) 1
77 2008-09-16 15:21:23 2008-09-16 15:21:23 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB914389) 1
78 2008-09-16 15:21:23 2008-09-16 15:21:23 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB917344 was installed. 1
79 2008-09-16 15:21:23 2008-09-16 15:21:23 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB917344) 1
80 2008-09-16 15:21:23 2008-09-16 15:21:23 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB917953 was installed. 1
81 2008-09-16 15:21:23 2008-09-16 15:21:23 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB914389 was installed. 1
82 2008-09-16 15:21:23 2008-09-16 15:21:23 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB917734) 1
83 2008-09-16 15:21:23 2008-09-16 15:21:23 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB918439 was installed. 1
84 2008-09-16 15:21:23 2008-09-16 15:21:23 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB911567 was installed. 1
85 2008-09-16 15:21:23 2008-09-16 15:21:23 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB917734 was installed. 1
86 2008-09-16 15:21:23 2008-09-16 15:21:23 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB908531 was installed. 1
87 2008-09-16 15:21:22 2008-09-16 15:21:22 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB896424 was installed. 1
88 2008-09-16 15:21:22 2008-09-16 15:21:22 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB902400 was installed. 1
89 2008-09-16 15:21:22 2008-09-16 15:21:22 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB905414) 1
90 2008-09-16 15:21:22 2008-09-16 15:21:22 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB902400) 1
91 2008-09-16 15:21:22 2008-09-16 15:21:22 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB899589 was installed. 1
92 2008-09-16 15:21:22 2008-09-16 15:21:22 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB901017 was installed. 1
93 2008-09-16 15:21:22 2008-09-16 15:21:22 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB899589) 1
94 2008-09-16 15:21:22 2008-09-16 15:21:22 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB905414 was installed. 1
95 2008-09-16 15:21:22 2008-09-16 15:21:22 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB899591) 1
96 2008-09-16 15:21:22 2008-09-16 15:21:22 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB899587) 1
97 2008-09-16 15:21:22 2008-09-16 15:21:22 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB899587 was installed. 1
98 2008-09-16 15:21:22 2008-09-16 15:21:22 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB890046 was installed. 1
99 2008-09-16 15:21:22 2008-09-16 15:21:22 Windows Update Agent NOTICE 19 Installation Successful: Windows successfully installed the following update: Security Update for Windows Server 2003 (KB890046) 1
100 2008-09-16 15:21:22 2008-09-16 15:21:22 NtServicePack NOTICE 4377 Windows Server 2003 Hotfix KB899591 was installed. 1
101 - - All other events NOTICE - All other events 183
Made by Adiscon GmbH (2009)  Report Version 1  Partners:  Rsyslog |  WinSyslog Report rendered in: 0.45s, 0.82s, 0.82s 1.29s 1.30s 1.30s 1.31s 1.31s 1.32s  | DB queries: 10