Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
Begin Backup of "System State"
|English: Request a translation of the event description in plain English.|
As per Microsoft: "The specified backup has started. One Begin Backup event appears in Event Viewer for each backup type created during a backup operation. For example, two Begin Backup events appear if you started a backup of your C: drive and System State". See MSW2KDB for additional information about this event.
This event is generated by NT Backup on Win2000. Event 8000 is triggered by the startup of the backup process. In this example, "System State" backup and the above options had been selected. See ME269826, ME318429, ME814891, and ME840013 for additional information.
|Private comment: Subscribers only. See example of private comment|
|Links: ME269826, ME318429, ME814891, ME840013, MSW2KDB|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated