Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 0 Source: AutoTrace

Source
Level
Description
The description for Event ID ( 0 ) in Source ( AutoTrace ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: The event log file is corrupt.
Comments
 
From a newsgroup post: "We had a problem with AutoTrace, a third party package that Tivoli developers included in the program. AutoTrace flooded the event log on the TMR server. To resolve the problem we were told to uninstall the package by using the following instructions:
1. Run C:\Program Files\Common Files>net stop atserv.
2. C:\Program Files\Common Files>atserv -uninstall
3. C:\Program Files\Common Files>erase atserv.exe.
4. Verify that the registry entries for AutoTrace are removed. If they are still present then remove them:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\atserv
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\atserv
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\atserv.
5. Reboot the system".

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...