Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 5000

Source
.NET Runtime 2.0 Error Reporting
Level
Error
Description
EventType clr20r3, P1 <application name>, P2 6.0.3790.1830, P3 42435be1, P4 app_web_7437ep-9, P5 0.0.0.0, P6 433b1670, P7 9, P8 a, P9 system.exception, P10 NIL.
Source
.NET Runtime 4.0 Error Reporting
Level
Error
Description
EventType clr20r3, P1 <application name>, P2 6.0.3790.1830, P3 42435be1, P4 app_web_7437ep-9, P5 0.0.0.0, P6 433b1670, P7 9, P8 a, P9 system.exception, P10 NIL.
Source
CA_LIC
Level
Warning
Description
'Computer Associates Licensing -3IMV - License Failure. Terminating... Please run the appropriate license program to properly license your product.  LRF=3IMV, 4d188969b8c9, PC_686_6_699, SV197, 0'
Source
DNS
Level
Warning
Description
DNS Server is logging numerous run-time events. This is usually caused by the reception of bad or unexpected packets, or from problems with or excessive replication traffic. See previous event log entries for information about bad packet source. Now suppressing event logging for these events.
Source
HotFixInstaller
Level
Error
Description
EventType visualstudio8setup, P1 microsoft .net framework 2.0-kb958481, P2 1033, P3 1612, P4 msi, P5 f, P6 9.0.31211.0, P7 install, P8 x86, P9 xp, P10 0.
Source
Kaseya
Level
Warning
Description
Overflow detected. Agent stopped collecting events for Application log because it has reached 1000 limit in this collecting period. Collection will be resumed after 1 hour.
Source
LsaSrv
Level
Error
Description
The security package <security package name> generated an exception. The package is now disabled. The exception information is the data.
Source
McLogEvent
Level
Information
Description
VirusScan McShield service started - scanning for 60576 viruses.
Engine version : 4.1.60
.DAT version : 4203
EXTRA.DAT name : None
Number of virus signatures in EXTRA.DAT : None
Names of viruses that EXTRA.DAT can detect : None
Source
Microsoft Exchange Server
Level
Error
Description
EventType exchangesetuperror P1 6_5_6944_0 P2 install P3 microsoft exchange system management tools P4 install P5 c1037986 P6 exchange system management snap-ins P7 1 P8 NIL P9 NIL P10 NIL.
Source
Microsoft Office 11
Level
Error
Description
EventType office11shipassert, P1 zoau, P2 11.0.5606.0, P3 NIL, P4 NIL, P5 NIL, P6 NIL, P7 NIL, P8 NIL, P9 NIL, P10 NIL.
Source
Microsoft Office 12
Level
Error
Description
EventType offdiag12 P1 f4d24103-ff6c-4a52-8866-8e88fbc6cde42851c652-94cb-4514-91e3-2d54a7223cf3 P2 NIL P3 NIL P4 NIL P5 NIL P6 NIL P7 NIL P8 NIL P9 NIL P10 NIL.
Source
Microsoft Office 14
Level
Error
Description
The description for Event ID ( 5000 ) in Source ( Microsoft Office 14 ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: office12setup, {10140000-0f00-0000-0000--0000000ff1ce}, 14.0.4755.1000, x, unexpectederror, proplusr.ww_proplusrww.xml, x, x, NIL, NIL, NIL.
Source
Microsoft Visual Studio
Level
Error
Description
EventType clr20r3 P1 devenv.exe P2 8.0.50727.42 P3 4333e699 P4 system P5 2.0.0.0 P6 4333ae87 P7 372d P8 22 P9 system.objectdisposedexception P10 NIL.
Source
MPSampleSubmission
Level
Error
Description
EventType mptelemetry P1 8024402c P2 endsearch P3 search P4 1.1.1592.0 P5 mpsigdwn.dll P6 1.1.1592.0 P7 windows defender P8 NIL P9 NIL P10 NIL.
Source
MSExchange Management Application
Level
Error
Description
Failed to save admin audit log for this cmdlet invocation.
Organization:  
Log content:
Subject: Server.org/Users/Administrator : Dismount-Database
Body:
Cmdlet Name: Dismount-Database
Object Modified: MDB14-Mount on C
Parameter: Identity = MDB14-Mount on C
Caller: Server.org/Users/Administrator
Succeeded: True
Error: None
Run Date: 2012-06-04T01:12:22
OriginatingServer: Node (14.01.0218.011)
  
Error:
Microsoft.Exchange.Data.Storage.ConnectionFailedTransientException: Cannot open mailbox /o=First Organization/ou=Exchange Administrative Group (FYDIBOHF23SPDLT)/cn=Configuration/cn=Servers/cn=Node 1/cn=Microsoft System Attendant. ---> Microsoft.Mapi.MapiExceptionLogonFailed: MapiExceptionLogonFailed: Unable to open message store. (hr=0x80040111, ec=-2147221231)
Diagnostic context:
...
Source
MSExchangeIS
Level
Error
Description
Unable to initialize the Microsoft Exchange Information Store service. Error <error>.
Source
MSExchangeKMS
Level
Error
Description
Microsoft Exchange Key Management service failed to install successfully.
Error code: 0xC103798A
Source
MSExchangeSA
Level
Error
Description
Recalculation of the routing table is complete. Result: <result>.
Source
MSExchangeSA
Level
Information
Description
Recalculation of the routing table is complete. Result: The operation has completed successfully.
Source
MSSecurityEssentials
Level
Error
Description
The description for Event ID ( 5000 ) in Source ( MSSecurityEssentials ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description see Help and Support for details. The following information is part of the event: mssecurityessentials setup.exe 1.0.1961.0 0x8004ff01 getclientinstallaction morrobootstraper__cinstallflow__internalrun 0 NIL NIL NIL NIL.
Source
NativeWrapper
Level
Error
Description
The description for Event ID ( 5000 ) in Source ( NativeWrapper ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: visualstudio7x80update msiexec.exe 1.0.1619.4693 kb947742 1033 80 f install x86 5.0.2195.2.4.0.1298 0.
Source
NTRights
Level
Information
Description
The description for Event ID ( 5000 ) in Source ( NTRights ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: NTRights has been successful to/from:<domain>\<account> granting privilege:<privilege>.
Source
Office SharePoint Server Error Reporting
Level
Error
Description
EventType ulsexception12 P1 w3wp.exe P2 6.0.3790.1830 P3 42435be1 P4 microsoft.office.server.search P5 12.0.4518.0 P6 45439dcc P7 2833 P8 183 P9 deletedconcurrencyexception P10 837s.
Source
PassportManager
Level
Information
Description
Passport Manager process started successfully.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Source
SharePoint Portal Server
Level
Error
Description
EventType office11sharepointportalassert, P1 w3wp.exe, P2 11.0.5321.19, P3 system.web.ui.control.fillnamedcontrolstable(control namingcontainer_ controlcollection controls), P4 NIL, P5 NIL, P6 NIL, P7 NIL, P8 NIL, P9 NIL, P10 NIL.
Source
Small Business Accounting
Level
Error
Description
EventType sba P1 1.0.3223.1 P2 argumentnullexception P3 onpostload P4 initialize P5 3c07ca1c P6 NIL P7 NIL P8 NIL P9 NIL P10 NIL.
Source
smtpsvc
Level
Warning
Description
The message file "<path>\Exchsrv\mailroot\vsi\Queue\<eml file name>" in the queue directory "<path>\Exchsrvr\mailroot\vsi\Queue" is corrupt and has not been enumerated.
Source
VSSetup
Level
Error
Description
EventType vssetup P1 microsoft visual basic 2010 express - deu P2 10.0.30319.01.10 P3 10.0.30319.1 P4 1 P5 gfn_mid microsoft application error reporting P6 verify_i_interactive_error P7 0x654 P8 NIL P9 NIL P10 NIL.
Source
Windows Live Messenger
Level
Error
Description
The description for Event ID ( 5000 ) in Source ( Windows Live Messenger ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: msnmsgrdiagnostic msnmsgr.exe 8.0.0792 mapfile 2 810003f1 NIL NIL NIL NIL NIL.
Source
Windows Sharepoint Services 3 Error Reporting
Level
Error
Description
EventType ulsexception12 P1 w3wp.exe P2 6.0.3790.3959 P3 45d6968e P4 mscorlib P5 2.0.0.0 P6 461eee3d P7 4463 P8 41 P9 outofmemoryexception P10 8yr8.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...