Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 4822 Source: COM

A condition has occurred that indicates this COM+ application is in an unstable state or is not functioning correctly. Assertion Failure: SUCCEEDED(hr)

Server Application ID: {<ID>}
Server Application Instance ID: {<ID>}
Server Application Name: System Application
The serious nature of this error has caused the process to terminate.
Error Code = 0x8000ffff : Catastrophic failure
COM+ Services Internals Information:
File: d:\nt\com\com1x\src\comsvcs\tracker\trksvr\trksvrimpl.cpp, Line: 3000
Comsvcs.dll file version: ENU 2001.12.4414.46 shp
As per Microsoft: "This problem occurs because marshaling of the context for the new object fails. Marshaling fails because the allocated buffer size is too small. Retry logic is implemented in the COM+ code. However, the Visual Basic 6.0 debug activator fails when the first marshaling try fails". See ME911194 for additional information about this issue.

See ME916254 for additional information about this event.
In my case, this was caused by faulty hardware (there were some bad blocks on HDD).
ME317926 and ME321694 mention an update to ComSvcs.dll that is included in hotfix rollup 1 for Windows XP. As ME321694 states, this hotfix is included in Windows XP SP1.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to



Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.