Advertisement
antonku

Untitled

Feb 18th, 2015
392
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 15.10 KB | None | 0 0
  1. Log Name: System
  2. Source: Microsoft-Windows-DistributedCOM
  3. Date: 19.02.2015 0:09:15
  4. Event ID: 10016
  5. Task Category: None
  6. Level: Error
  7. Keywords: Classic
  8. User: SYSTEM
  9. Computer: NC-CS-SSL03.zone3000.net
  10. Description:
  11. The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
  12. {05D1D5D8-18D1-4B83-85ED-A0F99D53C885}
  13. and APPID
  14. {AD65A69D-3831-40D7-9629-9B0B50A93843}
  15. to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.
  16. Event Xml:
  17. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  18. <System>
  19. <Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
  20. <EventID Qualifiers="49152">10016</EventID>
  21. <Version>0</Version>
  22. <Level>2</Level>
  23. <Task>0</Task>
  24. <Opcode>0</Opcode>
  25. <Keywords>0x80000000000000</Keywords>
  26. <TimeCreated SystemTime="2015-02-18T22:09:15.000000000Z" />
  27. <EventRecordID>6046</EventRecordID>
  28. <Correlation />
  29. <Execution ProcessID="0" ThreadID="0" />
  30. <Channel>System</Channel>
  31. <Computer>NC-CS-SSL03.zone3000.net</Computer>
  32. <Security UserID="S-1-5-18" />
  33. </System>
  34. <EventData>
  35. <Data Name="param1">application-specific</Data>
  36. <Data Name="param2">Local</Data>
  37. <Data Name="param3">Launch</Data>
  38. <Data Name="param4">{05D1D5D8-18D1-4B83-85ED-A0F99D53C885}</Data>
  39. <Data Name="param5">{AD65A69D-3831-40D7-9629-9B0B50A93843}</Data>
  40. <Data Name="param6">NT AUTHORITY</Data>
  41. <Data Name="param7">SYSTEM</Data>
  42. <Data Name="param8">S-1-5-18</Data>
  43. <Data Name="param9">LocalHost (Using LRPC)</Data>
  44. </EventData>
  45. </Event>
  46.  
  47. Log Name: System
  48. Source: Microsoft-Windows-WER-SystemErrorReporting
  49. Date: 19.02.2015 0:06:52
  50. Event ID: 1001
  51. Task Category: None
  52. Level: Error
  53. Keywords: Classic
  54. User: N/A
  55. Computer: NC-CS-SSL03.zone3000.net
  56. Description:
  57. The computer has rebooted from a bugcheck. The bugcheck was: 0x0000003b (0x00000000c000001d, 0xfffff96000095cab, 0xfffff8800724b0f0, 0x0000000000000000). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 021915-23712-01.
  58. Event Xml:
  59. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  60. <System>
  61. <Provider Name="Microsoft-Windows-WER-SystemErrorReporting" Guid="{ABCE23E7-DE45-4366-8631-84FA6C525952}" EventSourceName="BugCheck" />
  62. <EventID Qualifiers="16384">1001</EventID>
  63. <Version>0</Version>
  64. <Level>2</Level>
  65. <Task>0</Task>
  66. <Opcode>0</Opcode>
  67. <Keywords>0x80000000000000</Keywords>
  68. <TimeCreated SystemTime="2015-02-18T22:06:52.000000000Z" />
  69. <EventRecordID>5989</EventRecordID>
  70. <Correlation />
  71. <Execution ProcessID="0" ThreadID="0" />
  72. <Channel>System</Channel>
  73. <Computer>NC-CS-SSL03.zone3000.net</Computer>
  74. <Security />
  75. </System>
  76. <EventData>
  77. <Data Name="param1">0x0000003b (0x00000000c000001d, 0xfffff96000095cab, 0xfffff8800724b0f0, 0x0000000000000000)</Data>
  78. <Data Name="param2">C:\Windows\MEMORY.DMP</Data>
  79. <Data Name="param3">021915-23712-01</Data>
  80. </EventData>
  81. </Event>
  82.  
  83. Log Name: System
  84. Source: EventLog
  85. Date: 19.02.2015 0:06:39
  86. Event ID: 6008
  87. Task Category: None
  88. Level: Error
  89. Keywords: Classic
  90. User: N/A
  91. Computer: NC-CS-SSL03.zone3000.net
  92. Description:
  93. The previous system shutdown at 12:05:41 AM on ‎2/‎19/‎2015 was unexpected.
  94. Event Xml:
  95. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  96. <System>
  97. <Provider Name="EventLog" />
  98. <EventID Qualifiers="32768">6008</EventID>
  99. <Level>2</Level>
  100. <Task>0</Task>
  101. <Keywords>0x80000000000000</Keywords>
  102. <TimeCreated SystemTime="2015-02-18T22:06:39.000000000Z" />
  103. <EventRecordID>5961</EventRecordID>
  104. <Channel>System</Channel>
  105. <Computer>NC-CS-SSL03.zone3000.net</Computer>
  106. <Security />
  107. </System>
  108. <EventData>
  109. <Data>12:05:41 AM</Data>
  110. <Data>‎2/‎19/‎2015</Data>
  111. <Data>
  112. </Data>
  113. <Data>
  114. </Data>
  115. <Data>4627</Data>
  116. <Data>
  117. </Data>
  118. <Data>
  119. </Data>
  120. <Binary>DF07020004001300000005002900DF02DF07020003001200160005002900DF02600900003C000000010000006009000000000000B00400000100000000000000</Binary>
  121. </EventData>
  122. </Event>
  123.  
  124. Log Name: System
  125. Source: Microsoft-Windows-Kernel-Power
  126. Date: 19.02.2015 0:06:31
  127. Event ID: 41
  128. Task Category: (63)
  129. Level: Critical
  130. Keywords: (2)
  131. User: SYSTEM
  132. Computer: NC-CS-SSL03.zone3000.net
  133. Description:
  134. The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
  135. Event Xml:
  136. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  137. <System>
  138. <Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
  139. <EventID>41</EventID>
  140. <Version>2</Version>
  141. <Level>1</Level>
  142. <Task>63</Task>
  143. <Opcode>0</Opcode>
  144. <Keywords>0x8000000000000002</Keywords>
  145. <TimeCreated SystemTime="2015-02-18T22:06:31.613612500Z" />
  146. <EventRecordID>5965</EventRecordID>
  147. <Correlation />
  148. <Execution ProcessID="4" ThreadID="8" />
  149. <Channel>System</Channel>
  150. <Computer>NC-CS-SSL03.zone3000.net</Computer>
  151. <Security UserID="S-1-5-18" />
  152. </System>
  153. <EventData>
  154. <Data Name="BugcheckCode">59</Data>
  155. <Data Name="BugcheckParameter1">0xc000001d</Data>
  156. <Data Name="BugcheckParameter2">0xfffff96000095cab</Data>
  157. <Data Name="BugcheckParameter3">0xfffff8800724b0f0</Data>
  158. <Data Name="BugcheckParameter4">0x0</Data>
  159. <Data Name="SleepInProgress">false</Data>
  160. <Data Name="PowerButtonTimestamp">0</Data>
  161. </EventData>
  162. </Event>
  163.  
  164. Log Name: System
  165. Source: Microsoft-Windows-DistributedCOM
  166. Date: 18.02.2015 22:51:55
  167. Event ID: 10016
  168. Task Category: None
  169. Level: Error
  170. Keywords: Classic
  171. User: SYSTEM
  172. Computer: NC-CS-SSL03.zone3000.net
  173. Description:
  174. The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
  175. {05D1D5D8-18D1-4B83-85ED-A0F99D53C885}
  176. and APPID
  177. {AD65A69D-3831-40D7-9629-9B0B50A93843}
  178. to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.
  179. Event Xml:
  180. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  181. <System>
  182. <Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
  183. <EventID Qualifiers="49152">10016</EventID>
  184. <Version>0</Version>
  185. <Level>2</Level>
  186. <Task>0</Task>
  187. <Opcode>0</Opcode>
  188. <Keywords>0x80000000000000</Keywords>
  189. <TimeCreated SystemTime="2015-02-18T20:51:55.000000000Z" />
  190. <EventRecordID>5930</EventRecordID>
  191. <Correlation />
  192. <Execution ProcessID="0" ThreadID="0" />
  193. <Channel>System</Channel>
  194. <Computer>NC-CS-SSL03.zone3000.net</Computer>
  195. <Security UserID="S-1-5-18" />
  196. </System>
  197. <EventData>
  198. <Data Name="param1">application-specific</Data>
  199. <Data Name="param2">Local</Data>
  200. <Data Name="param3">Launch</Data>
  201. <Data Name="param4">{05D1D5D8-18D1-4B83-85ED-A0F99D53C885}</Data>
  202. <Data Name="param5">{AD65A69D-3831-40D7-9629-9B0B50A93843}</Data>
  203. <Data Name="param6">NT AUTHORITY</Data>
  204. <Data Name="param7">SYSTEM</Data>
  205. <Data Name="param8">S-1-5-18</Data>
  206. <Data Name="param9">LocalHost (Using LRPC)</Data>
  207. </EventData>
  208. </Event>
  209.  
  210. Log Name: System
  211. Source: Microsoft-Windows-DistributedCOM
  212. Date: 18.02.2015 22:50:24
  213. Event ID: 10016
  214. Task Category: None
  215. Level: Error
  216. Keywords: Classic
  217. User: SYSTEM
  218. Computer: NC-CS-SSL03.zone3000.net
  219. Description:
  220. The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
  221. {1CCB96F4-B8AD-4B43-9688-B273F58E0910}
  222. and APPID
  223. {AD65A69D-3831-40D7-9629-9B0B50A93843}
  224. to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.
  225. Event Xml:
  226. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  227. <System>
  228. <Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
  229. <EventID Qualifiers="49152">10016</EventID>
  230. <Version>0</Version>
  231. <Level>2</Level>
  232. <Task>0</Task>
  233. <Opcode>0</Opcode>
  234. <Keywords>0x80000000000000</Keywords>
  235. <TimeCreated SystemTime="2015-02-18T20:50:24.000000000Z" />
  236. <EventRecordID>5913</EventRecordID>
  237. <Correlation />
  238. <Execution ProcessID="0" ThreadID="0" />
  239. <Channel>System</Channel>
  240. <Computer>NC-CS-SSL03.zone3000.net</Computer>
  241. <Security UserID="S-1-5-18" />
  242. </System>
  243. <EventData>
  244. <Data Name="param1">application-specific</Data>
  245. <Data Name="param2">Local</Data>
  246. <Data Name="param3">Launch</Data>
  247. <Data Name="param4">{1CCB96F4-B8AD-4B43-9688-B273F58E0910}</Data>
  248. <Data Name="param5">{AD65A69D-3831-40D7-9629-9B0B50A93843}</Data>
  249. <Data Name="param6">NT AUTHORITY</Data>
  250. <Data Name="param7">SYSTEM</Data>
  251. <Data Name="param8">S-1-5-18</Data>
  252. <Data Name="param9">LocalHost (Using LRPC)</Data>
  253. </EventData>
  254. </Event>
  255.  
  256. Log Name: System
  257. Source: Microsoft-Windows-WER-SystemErrorReporting
  258. Date: 18.02.2015 22:49:14
  259. Event ID: 1001
  260. Task Category: None
  261. Level: Error
  262. Keywords: Classic
  263. User: N/A
  264. Computer: NC-CS-SSL03.zone3000.net
  265. Description:
  266. The computer has rebooted from a bugcheck. The bugcheck was: 0x0000000a (0xfffffaa825931388, 0x0000000000000002, 0x0000000000000000, 0xfffff80002d0f875). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 021815-22276-01.
  267. Event Xml:
  268. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  269. <System>
  270. <Provider Name="Microsoft-Windows-WER-SystemErrorReporting" Guid="{ABCE23E7-DE45-4366-8631-84FA6C525952}" EventSourceName="BugCheck" />
  271. <EventID Qualifiers="16384">1001</EventID>
  272. <Version>0</Version>
  273. <Level>2</Level>
  274. <Task>0</Task>
  275. <Opcode>0</Opcode>
  276. <Keywords>0x80000000000000</Keywords>
  277. <TimeCreated SystemTime="2015-02-18T20:49:14.000000000Z" />
  278. <EventRecordID>5876</EventRecordID>
  279. <Correlation />
  280. <Execution ProcessID="0" ThreadID="0" />
  281. <Channel>System</Channel>
  282. <Computer>NC-CS-SSL03.zone3000.net</Computer>
  283. <Security />
  284. </System>
  285. <EventData>
  286. <Data Name="param1">0x0000000a (0xfffffaa825931388, 0x0000000000000002, 0x0000000000000000, 0xfffff80002d0f875)</Data>
  287. <Data Name="param2">C:\Windows\MEMORY.DMP</Data>
  288. <Data Name="param3">021815-22276-01</Data>
  289. </EventData>
  290. </Event>
  291.  
  292. Log Name: System
  293. Source: NETLOGON
  294. Date: 18.02.2015 22:48:58
  295. Event ID: 5719
  296. Task Category: None
  297. Level: Error
  298. Keywords: Classic
  299. User: N/A
  300. Computer: NC-CS-SSL03
  301. Description:
  302. This computer was not able to set up a secure session with a domain controller in domain ZONE3000 due to the following:
  303. There are currently no logon servers available to service the logon request.
  304. This may lead to authentication problems. Make sure that this computer is connected to the network. If the problem persists, please contact your domain administrator.
  305.  
  306. ADDITIONAL INFO
  307. If this computer is a domain controller for the specified domain, it sets up the secure session to the primary domain controller emulator in the specified domain. Otherwise, this computer sets up the secure session to any domain controller in the specified domain.
  308. Event Xml:
  309. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  310. <System>
  311. <Provider Name="NETLOGON" />
  312. <EventID Qualifiers="0">5719</EventID>
  313. <Level>2</Level>
  314. <Task>0</Task>
  315. <Keywords>0x80000000000000</Keywords>
  316. <TimeCreated SystemTime="2015-02-18T20:48:58.000000000Z" />
  317. <EventRecordID>5831</EventRecordID>
  318. <Channel>System</Channel>
  319. <Computer>NC-CS-SSL03</Computer>
  320. <Security />
  321. </System>
  322. <EventData>
  323. <Data>ZONE3000</Data>
  324. <Data>%%1311</Data>
  325. <Binary>5E0000C0</Binary>
  326. </EventData>
  327. </Event>
  328.  
  329. Log Name: System
  330. Source: EventLog
  331. Date: 18.02.2015 22:48:57
  332. Event ID: 6008
  333. Task Category: None
  334. Level: Error
  335. Keywords: Classic
  336. User: N/A
  337. Computer: NC-CS-SSL03.zone3000.net
  338. Description:
  339. The previous system shutdown at 10:47:20 PM on ‎2/‎18/‎2015 was unexpected.
  340. Event Xml:
  341. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  342. <System>
  343. <Provider Name="EventLog" />
  344. <EventID Qualifiers="32768">6008</EventID>
  345. <Level>2</Level>
  346. <Task>0</Task>
  347. <Keywords>0x80000000000000</Keywords>
  348. <TimeCreated SystemTime="2015-02-18T20:48:57.000000000Z" />
  349. <EventRecordID>5827</EventRecordID>
  350. <Channel>System</Channel>
  351. <Computer>NC-CS-SSL03.zone3000.net</Computer>
  352. <Security />
  353. </System>
  354. <EventData>
  355. <Data>10:47:20 PM</Data>
  356. <Data>‎2/‎18/‎2015</Data>
  357. <Data>
  358. </Data>
  359. <Data>
  360. </Data>
  361. <Data>23463</Data>
  362. <Data>
  363. </Data>
  364. <Data>
  365. </Data>
  366. <Binary>DF0702000300120016002F0014000802DF0702000300120014002F0014000802600900003C000000010000006009000000000000B00400000100000001000000</Binary>
  367. </EventData>
  368. </Event>
  369.  
  370. Log Name: System
  371. Source: Microsoft-Windows-Kernel-Power
  372. Date: 18.02.2015 22:48:41
  373. Event ID: 41
  374. Task Category: (63)
  375. Level: Critical
  376. Keywords: (2)
  377. User: SYSTEM
  378. Computer: NC-CS-SSL03.zone3000.net
  379. Description:
  380. The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
  381. Event Xml:
  382. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  383. <System>
  384. <Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
  385. <EventID>41</EventID>
  386. <Version>2</Version>
  387. <Level>1</Level>
  388. <Task>63</Task>
  389. <Opcode>0</Opcode>
  390. <Keywords>0x8000000000000002</Keywords>
  391. <TimeCreated SystemTime="2015-02-18T20:48:41.332812000Z" />
  392. <EventRecordID>5832</EventRecordID>
  393. <Correlation />
  394. <Execution ProcessID="4" ThreadID="8" />
  395. <Channel>System</Channel>
  396. <Computer>NC-CS-SSL03.zone3000.net</Computer>
  397. <Security UserID="S-1-5-18" />
  398. </System>
  399. <EventData>
  400. <Data Name="BugcheckCode">10</Data>
  401. <Data Name="BugcheckParameter1">0xfffffaa825931388</Data>
  402. <Data Name="BugcheckParameter2">0x2</Data>
  403. <Data Name="BugcheckParameter3">0x0</Data>
  404. <Data Name="BugcheckParameter4">0xfffff80002d0f875</Data>
  405. <Data Name="SleepInProgress">false</Data>
  406. <Data Name="PowerButtonTimestamp">0</Data>
  407. </EventData>
  408. </Event>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement