Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
Cleaning up corrupt content index metadata on c:\system volume information\catalog.wci. Index will be automatically restored by refiltering all documents
|English: Request a translation of the event description in plain English.|
As per Microsoft: "The indexing service detected that its index of metadata associated with documents is corrupted. These documents will not be retrieved correctly during a search. To correct this, the indexing service will rebuild its indexes by scanning the required folders and processing all documents again. The documents themselves are not affected, but a search for these documents will not be successful until the scan is complete". See MSW2KDB for more details.
Woodrow Wayne Collins
ME247093 presents backup and recovery guidelines for the Index Server Catalog.
As per Microsoft, there are many causes that may corrupt an index catalog: antivirus products, backup software, ungraceful shutdowns, registry changes. It is usually fixed by restarting the Index service. See the link below for more info.
|Private comment: Subscribers only. See example of private comment|
|Links: ME209304, ME247093, MSW2KDB|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated