Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The registry path () passed by a kernel mode driver is invalid. The driver device object is in the additional data.
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is WMI?
What is the kernel?
This error can come from running Double-Take 4.3+ on Windows 2000. In this case, the error can be ignored.
From the readme: “If you using Double-Take 4.3 or later on Windows 2000, you may receive a WMI Event message 12103 indicating the registry path passed by a kernel mode driver is invalid. This warning message is caused by debug tracing and can be disregarded”. See the link to “Double-Take readme” for additional information on this issue.
|Private comment: Subscribers only. See example of private comment|
|Links: Double-Take readme|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated