Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Comments for event ID 2 currently in the processing queue.

Note: We have not reviewed this information yet so it is unfiltered, exactly how it was submitted by our contributors.

Event ID: 2
Event Source: AAC_AGENT
Event Type: Information
Event Description: The description for Event ID ( 2 ) in Source ( AAC_AGENT ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: Adaptec RAID Remote Services Agent.
Comment:
Event ID: 2
Event Source: Intel Client
Event Type: Error
Event Description:
Event Type: Error

Event Source: Intel Client Instrumentation for DMI
Event Category: None
Event ID: 2
Description:
The description for Event ID ( 2 ) in Source ( Intel Client Instrumentation for DMI ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: .

Comment: Please tell me how to fix it
Event ID: 2
Event Source: Sentinel
Event Type: Information
Event Description: Description:
The description for Event ID ( 2 ) in Source ( Sentinel ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: .
Data:
0000: 00 00 23 00 01 00 7a 00   ..#...z.
0008: 00 00 00 00 02 00 07 40   .......@
0010: f8 0a 00 00 00 00 00 00   ø.......
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........
0028: 4e 54 53 49 4c 49 3a 44   NTSILI:D
0030: 72 69 76 65 72 45 6e 74   riverEnt
0038: 72 79 3a 73 79 73 4e 75   ry:sysNu
0040: 6d 4f 66 44 65 76 69 63   mOfDevic
0048: 65 73 00                  es.    

Comment:
Event ID: 2
Event Source: ifcomsvc
Event Type: Error
Event Description: Event Description Not Found: Partial Description:  Ifcomsvc service internal error. Database exception table/req/sql=SendingSync  error=Operation failed  no current record. ODBC=.




Comment:
Event ID: 2
Event Source: MPAgent
Event Type: Error
Event Description: MPAgent Error: Failed to create web conference 21467
Comment:
Event ID: 2
Event Source: WSH
Event Type: Warning
Event Description: ShSh detected an invalid qsession value: [ssid=<value>]
Comment:
Event ID: 2
Event Source: DF2K
Event Type: Information
Event Description: Snapshot interface initialized for volume on \Device\HarddiskVolumeShadowCopy33.
Comment: Ultrabac DF2K driver initializing volumes
Event ID: 2
Event Source: Acronis Test Program
Event Type: Error
Event Description: The description for Event ID ( 2 ) in Source ( Acronis Test Program ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: Cannot open archive for reading. (0x400002)
    path = "C:\CAU Dados\Outlook dados & Configura"
    Tag = 0x7967E78EC51EA9E7
Specified file does not exist. (0x40011)
    function = "OpenFileW"
    filename = "\\\C:\CAU Dados\Outlook dados & Configura1"
    Tag = 0xF35F747B3B21F840
The system cannot find the file specified. (0xFFF0)
    code = FFFFFFFF80070002
    Tag = 0xBD28FDBD64EDB821.
Comment:
Event ID: 2
Event Source: mps9
Event Type: Error
Event Description: The description for Event ID ( 2 ) in Source ( MPS9 ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: The service process could not connect to the service controller..
Comment:
Event ID: 2
Event Source: ccSetMgr
Event Type: Error
Event Description: The description for Event ID ( 2 ) in Source ( ccSetMgr ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: The event log file is corrupt..
Comment:
Event ID: 2
Event Source: Communicator
Event Type: Error
Event Description: Communicator was unable to locate the login server.  The DNS SRV record that exist for domain principality.co.uk point to an invalid server ocspool01.principality.net which is not trusted to provide support for the domain because the server's domain is not an exact match.

Resolution:
The network administrator will need to double-check the DNS SRV record configuration to make sure that the SRV record for the domain points to a server name that conforms to the DNS naming convention in the server deployment guide.

For more information see Help and Support Center at
Comment:
Event ID: 2
Event Source: SkeySrvc
Event Type: Error
Event Description: Runtime error: Error 10053 in recv().
Comment:
Event ID: 2
Event Source: microsmux
Event Type: Error
Event Description: The description for Event ID ( 2 ) in Source ( MicrosMux ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: Mux: Cannot send msg to [00000000] - error [e7020004].
Comment:
Event ID: 2
Event Source: SmartKey Multilan Service
Event Type: Error
Event Description: Runtime error: Error 10053 in recv().
Comment:
Event ID: 2
Event Source: Cvfs
Event Type: Error
Event Description:
Event Type: Information

Event Source: Cvfs
Event Category: Devices
Event ID: 2
Date: 24/10/2007
Time: 04:00:51
User: N/A
Computer: CPBTTOFPAC02
Description:
(Notice) Can not initialize mount structurecvfs error ' No memory'
Comment:
Event ID: 2
Event Source: Project server 2003
Event Type: Error
Event Description: Component: PCSViews
file: ViewsDrop.cls
Line: -1
Error Number: 0x5
Description: <Description><![CDATA[Error Information: Invalid procedure call or argument
Additional Information: An error occured processing the following view :-
<ViewsDropData><ProjectData><FilePath><![CDATA[C:\Program Files\Microsoft Office Project Server 2003\BIN\VIEWDROP\4CCC6314-46B8-4E9E-AC89-49DC2BC93B5A.mpp] ]></FilePath></ProjectData><OrgGuid>projectserver</OrgGuid><ProjectID>123</ProjectID><BasePath>projectserver</BasePath><TimeStamp>2008-02-07T09:59:59</TimeStamp></ViewsDropData>
]]></Description>


Comment:
Event ID: 2
Event Source: PatchLink Detection Agent
Event Type: Error
Event Description: Error occurred posting detection to PLUS (incremental diff) - error code = -30  error msg = 'Error: Invalid CheckSum'
Comment:
Event ID: 2
Event Source: DevManBE
Event Type: Error
Event Description: Attempted to get an invalid ID.
Comment:
Event ID: 2
Event Source: BESPerfInfo
Event Type: Error
Event Description: The description for Event ID ( 2 ) in Source ( BESPerfInfo ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description see Help and Support for details. The following information is part of the event: Incorrect counter values in registry - found 1 expected 9.
Comment:
Event ID: 2
Event Source: TFOpcService
Event Type: Error
Event Description: OEEServOpcSignals.DoOPCRead SyncRead : Attempted to read or write protected memory. This is often an indication that other memory is corrupt.


Comment:
Event ID: 2
Event Source: XLive
Event Type: Warning
Event Description: Description:
Title Fallout3.exe (1.0.0.12) XLive 1.2.0241.0 E:\WINDOWS\system32\xlive.dll  
0x80004005

Games for Windows LIVE DLL
E:\WINDOWS\system32\msidcrl40.dll 4.200.513.1

Comment:
Event ID: 2
Event Source: print
Event Type: Information
Event Description: bizhub 501 PCL on printserver (from workstation) in session 1.


Comment: when I login to the print server using a priviledged account via RDP all of the printers are re-created from the workstation I am logging in from on a TS port. This seems to confuse general printing and stalls or blocks printing from network users.  how do I stop this.
Event ID: 2
Event Source: MSExchange Autodiscover
Event Type: Error
Event Description:
Event Type: Error

Event Source: MSExchange Autodiscover
Event Category: Web
Event ID: 2
Date: 4/23/2009
Time: 6:07:04 AM
User: N/A
Computer: <COMPUTERNAME>
Description:
Anonymous Request received from HostAddress:"192.168.20.22" HostName:"192.168.20.22". Invalid Autodiscover site configuration. To fix the problem remove Anonymous access.

For more information see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Comment: I don't know what this is doing...no APPARENT problems but I don't like it.
Event ID: 2
Event Source: Remote Assistance
Event Type: Information
Event Description: RA: A XML parsing error for (local user) Administrator occurred when attempting to process a remote assistance ticket.

For more information see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Comment:
Event ID: 2
Event Source: LDM
Event Type: Error
Event Description: One or more arguments are invalid  (80070057).

For more information see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Comment:
Event ID: 2
Event Source: mpio
Event Type: Information
Event Description:
Event Type: Information

Event Source: mpio
Event Category: None
Event ID: 2
Description:
Added device to \Device\MPIODisk0. DumpData contains the current number of paths.

For more information see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 04 00 01 00 52 00   ......R.
0008: 00 00 00 00 02 00 07 40   .......@
0010: 01 00 00 00 00 00 00 00   ........
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........
0028: 02 00 00 00               ....    

Comment:
Event ID: 2
Event Source: Protection Manager
Event Type: Information
Event Description: KAVX0002-I The drmfsbackup command will now end.
Comment:
Event ID: 2
Event Source: sqlbrowser
Event Type: Error
Event Description: The configuration of the SQL instance PADMINISTRATOR is not valid.
Comment:
Event ID: 2
Event Source: LDM
Event Type: -
Event Description: -
Comment: Not enough storage is available to complete this operation. (8007000E) Index: 2242
Event ID: 2
Event Source: WSH
Event Type: Error
Event Description:
Event Type: Warning

Event Source: WSH
Event Category: None
Event ID: 2
Date: 9/8/2009
Time: 4:02:04 PM
User: N/A
Computer: XXXX
Description:
ADORetryError - Initial SQL Native Error: 102 Error Message: [Microsoft][ODBC SQL Server Driver][SQL Server]Incorrect syntax near ''_RID_''. SQL is Delete From CYCLE_COUNT_RESULTSWhere _RID_ = 2729099  

Comment:
Event ID: 2
Event Source:  
Event Type: -
Event Description: -
Comment: Maybe you should de-select printers in the "Local Devices" tab on the RDP client, and also in the "Client Settings" in RDP Connection Properties on the server. Index: 0
Event ID: 2
Event Source: Device Lock
Event Type: Error
Event Description: Unable to set shadow path to ''C:\WINDOWS\SHADOW\'' - The process cannot access the file because it is being used by another process.  (32)

Comment: Event Description is from Application event log (Time:18:04:56). In System event log is this related record:

Event Type: Error

Event Source: Service Control Manager
Event Category: None
Event ID: 7034
Date: 24.10.09
Time: 17:43:32
User: N/A
Computer: XD4589
Description:
The DeviceLock Service service terminated unexpectedly.  It has done this 1 time(s).

For more information see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Event ID: 2
Event Source: LDM
Event Type: Error
Event Description: Die Datenträgergruppe wurde deaktiviert.  (C100001C).
Comment: could not load iSCSI Target after booting server w2k3r2
Event ID: 2
Event Source:  
Event Type: -
Event Description: -
Comment: When starting IBM "ServeRAID FlashCopy Agent" this message is seen in the eventlog. Index: 0
Event ID: 2
Event Source: iCONECTDataService
Event Type: Error
Event Description: The description for Event ID ( 2 ) in Source ( iCONECTDataService ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description see Help and Support for details. The following information is part of the event: GetUserDataItem: E_INVALIDARG.
Comment:
Event ID: 2
Event Source: MSExchange Autodiscover
Event Type: Error
Event Description: Anonymous Request received from HostAddress:"xxx.xxx.xxx.xxx" HostName:"xxx". Invalid Autodiscover site configuration. To fix the problem remove Anonymous access.

For more information see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Comment: Clients were unable to download OfflineAdressBook (OAB) in Outlook 2007 from a Exchange 2007 Server with coexisting Exchange 2003 Server after moving Mailbox. In our case this has helped.
http://www.microsoft.com/technet/support/ee/transform.aspxProdName=Exchange&ProdVer=8.0&EvtID=2&EvtSrc=MSExchange+Autodiscover&LCID=1031
Event ID: 2
Event Source: w32time
Event Type: Error
Event Description: The time provider window time agent logged the following warning. Unable to verify the system clock time no time sources specify in the windows time control panel applet and none discovered by the windows time services
Comment:
Event ID: 2
Event Source: snapman
Event Type: Error
Event Description: This text is in dutch:

Type gebeurtenis: Fout                                        = error
Bron van gebeurtenis: snapman
Categorie van gebeurtenis: (2)              
Gebeurtenis-ID: 2                                                     event-ID : 2
Datum: 14-9-2010
Tijd: 12:00:22
Gebruiker: n.v.t.
Computer: DC13LC1J
Beschrijving:                    = Description: Cannot find event-ID (2)  in  source snapman  use........

Kan beschrijving voor gebeurtenis-ID (2) in bron (snapman) niet vinden. De lokale computer beschikt wellicht niet over de benodigde registergegevens of DLL-berichtbestanden om berichten van een externe computer te kunnen weergeven. U kunt mogelijk de schakeloptie /AUXSOURCE= gebruiken om deze beschrijving op te halen zie Help en ondersteuning voor details. De volgende gegevens zijn deel van de gebeurtenis: .
Gegevens:
0000: 00 00 00 00 01 00 58 00   ......X.
0008: 02 00 00 00 02 00 07 c0   .......À
0010: 00 00 00 00 13 00 00 c0   .......À
0018: 00 00 00 00 00 00 00 00   ........
0020: 00 00 00 00 00 00 00 00   ........

Comment: The error in system log was first seen when I had problems installing a HP Officejet 7310 all- in- one. Before I used a HP -PSC 1500 printer.  As soon as I start the printer the error appears but this does not disturb the computer's or the printer's functioning . When the printer is off there is no error. Installing (virginal install) the same printer on another computer in the same network did not result in any error.  I have a negative experience with BSOD caused by ACRONIS. What is the cause of this error  and how to correct it   I found only Acronis comments  about Filter drivers.
Acronis is present from startup .
Event ID: 2
Event Source: pnupsvc
Event Type: -
Event Description: -
Comment: Universal Printer Drivers provided by Quest as part of vWorkspace can fail to register correctly when creating and deleting the printers when you log in.

If you've got this, then you can try the following (on 64bit systems)

start|cmd
cd /d c:\windows\syswow64
pnupsvc -u
pnupsvc -i Index: 9820
Event ID: 2
Event Source:  
Event Type: -
Event Description: -
Comment: We are also seeing this error and in some cases a subsequent "crash" of EXPLORER.EXE which must be restarted for computer operation to return...typically the users will reboot when computer is in this state, but they have to "hard boot" unless they knew enough to launch explorer.exe via Task Manager. Index: 0
Event ID: 2
Event Source: Hp Systems Insight Man
Event Type: Warning
Event Description: Restarting MxDTF
Comment:
Event ID: 2
Event Source: mpio
Event Type: Information
Event Description: Tivemos o seguinte problema ao acessar o file server: "Added device to \Device\MPIODisk0. DumpData contains the current number of paths.". O mesmo possui um Storage conectado a ele.
Comment:
Event ID: 2
Event Source: Kernel-EventTracing
Event Type: Error
Event Description: Session "WBCommandletInBuiltTracing" failed to start with the following error: 0xC0000035
Comment: http://technet.microsoft.com/en-us/library/gg491249.aspx
Event ID: 2
Event Source: Circular Kernel Context Logger
Event Type: Error
Event Description: Protokollname: Microsoft-Windows-Kernel-EventTracing/Admin
Quelle:        Microsoft-Windows-Kernel-EventTracing
Datum:         24.04.2012 18:15:37
Ereignis-ID:   2
Aufgabenkategorie:Sitzung
Ebene:         Fehler
Schlüsselwörter:Sitzung
Benutzer:      SYSTEM
Computer:      test
Beschreibung:
Beim Starten der Sitzung "Circular Kernel Context Logger" ist der folgende Fehler aufgetreten: 0xC0000035.
Ereignis-XML:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Microsoft-Windows-Kernel-EventTracing" Guid="{B675EC37-BDB6-4648-BC92-F3FDC74D3CA2}" />
    <EventID>2</EventID>
    <Version>0</Version>
    <Level>2</Level>
    <Task>2</Task>
    <Opcode>12</Opcode>
    <Keywords>0x8000000000000010</Keywords>
    <TimeCreated SystemTime="2012-04-24T16:15:37.377850200Z" />
    <EventRecordID>892</EventRecordID>
    <Correlation />
    <Execution ProcessID="4" ThreadID="48" />
    <Channel>Microsoft-Windows-Kernel-EventTracing/Admin</Channel>
    <Computer>test</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
    <Data Name="SessionName">Circular Kernel Context Logger</Data>
    <Data Name="FileName">
    </Data>
    <Data Name="ErrorCode">3221225525</Data>
    <Data Name="LoggingMode">268436608</Data>
  </EventData>
</Event>

Comment:
Event ID: 2
Event Source: diagnostics-performance
Event Type: Error
Event Description: ShutdownTsVersion 1
  ShutdownStartTime 2013-02-07T00:21:15.133468300Z
  ShutdownEndTime 2013-02-07T00:22:40.220236800Z
  ShutdownTime 85086
  ShutdownUserSessionTime 7479
Comment: frequent BSOD while login only try once or twice more could login safe mood no problem.
accompany with ID:50/55 source: ntfs(much more frequently) ID:7001/7034/700 source:"service control manager" errors
And before I uninstall the Intel RST newest driver and reinstall the old version one it's ID:55/9 source: ntfs/iastor
Event ID: 2
Event Source: Kernel-EventTracing
Event Type: Error
Event Description: Beim Starten der Sitzung "SkyDriveSessionName" ist der folgende Fehler aufgetreten: 0xC0000022.


- System

  - Provider

   [ Name]  Microsoft-Windows-Kernel-EventTracing
   [ Guid]  {B675EC37-BDB6-4648-BC92-F3FDC74D3CA2}

   EventID 2

   Version 0

   Level 2

   Task 2

   Opcode 12

   Keywords 0x8000000000000010

  - TimeCreated

   [ SystemTime]  2013-03-16T06:02:13.940301200Z

   EventRecordID 432

   Correlation

  - Execution

   [ ProcessID]  5952
   [ ThreadID]  6080

   Channel Microsoft-Windows-Kernel-EventTracing/Admin

   Computer HPENVY

  - Security

   [ UserID]  S-1-5-21-1945572777-1894890075-1403479504-1005


- EventData

  SessionName SkyDriveSessionName
  FileName  
  ErrorCode 3221225506
  LoggingMode 20971776



- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
- <System>
  <Provider Name="Microsoft-Windows-Kernel-EventTracing" Guid="{B675EC37-BDB6-4648-BC92-F3FDC74D3CA2}" />
  <EventID>2</EventID>
  <Version>0</Version>
  <Level>2</Level>
  <Task>2</Task>
  <Opcode>12</Opcode>
  <Keywords>0x8000000000000010</Keywords>
  <TimeCreated SystemTime="2013-03-16T06:02:13.940301200Z" />
  <EventRecordID>432</EventRecordID>
  <Correlation />
  <Execution ProcessID="5952" ThreadID="6080" />
  <Channel>Microsoft-Windows-Kernel-EventTracing/Admin</Channel>
  <Computer>HPENVY</Computer>
  <Security UserID="S-1-5-21-1945572777-1894890075-1403479504-1005" />
  </System>
- <EventData>
  <Data Name="SessionName">SkyDriveSessionName</Data>
  <Data Name="FileName" />
  <Data Name="ErrorCode">3221225506</Data>
  <Data Name="LoggingMode">20971776</Data>
  </EventData>
  </Event>
Comment:
Event ID: 2
Event Source: dptfevent
Event Type: Error
Event Description: Log Name:      Application
Source:        DptfEvent
Date:          2/15/2017 1:50:44 AM
Event ID:      2
Task Category: (4)
Level:         Error
Keywords:      Classic
User:          N/A
Computer:      WINDOWS-80OMUU1
Description:
The description for Event ID 2 from source DptfEvent cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer the display information had to be saved with the event.

The following information was included with the event:

DptfPolicyLpmServiceHelper
WinMain:  CreateSharedMemory() failed.
Session ID = 1

Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="DptfEvent" />
    <EventID Qualifiers="49152">2</EventID>
    <Level>2</Level>
    <Task>4</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2017-02-15T09:50:44.000000000Z" />
    <EventRecordID>106754</EventRecordID>
    <Channel>Application</Channel>
    <Computer>WINDOWS-80OMUU1</Computer>
    <Security />
  </System>
  <EventData>
    <Data>DptfPolicyLpmServiceHelper</Data>
    <Data>WinMain:  CreateSharedMemory() failed.</Data>
    <Data>Session ID = 1</Data>
  </EventData>
</Event>
Comment: trying to run a diagnostic on my alienautopsy
Event ID: 2
Event Source: acvpnui
Event Type: Error
Event Description: Function: CPhoneHomeStatus::LoadStatusFromConfigFile
File: ..\PhoneHomePluginImp.cpp
Line: 289
Invoked Function: XmlParser::parseFile
Return Code: -33554423 (0xFE000009)
Description: GLOBAL_ERROR_UNEXPECTED
Comment:

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...