Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
|Source: VMware Tools|
[ warning] [vmusr:vmusr] <error description>
|4 Comments for event id 1000 from source VMware Tools|