Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 486 Source: ESE

Source
Level
Description
Information Store (<PID>) An attempt to move the file "<path to file>\<file>" to "<path to file>\<file>" failed with system error <error> (<error code>): "<error details>". The move file operation will fail with error <error> (<error code>).
Comments
 
See ME896143 and the link to "EventID 486 from source ESE98" for information on this event.
-Error: 1811 - Check to see if this is accompanied by an Antivirus message saying that your <file> has been quarantined. If so change your real-time file scanning antivirus configuration to exclude the Exchange log directory (there are also a list of other files and directories that should be excluded - see ME328841). Release the <file> from quarantine and start your Exchange stores. If you are running an Exchange aware antivirus solution on the same server it should deal appropriately with any virus that hit your logs without interrupting service so your non-Exchange aware antivirus program doesn’t need to scan this area ever. See the link to Error code 1811 for more details.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...