Event ID: 560 How to interpret messages


i getting false positive when system audits , wondering if there way remove it. sec 560 security|file|c:\winnt\system32\timedate.cpl|-|0|24311384|2392|c:\winnt\system32\wbem\wmiprvse.exe|network service|nt authority|(0x0,0x3e4)|-|-|-|%%1538%%1541%%4416%%4419%%4423|-|0|

i have windows 2003 server that pushes group policy occurs on 2 systems.

unsure of how interpret )|-|-|-|%%1538%%1541%%4416%%4419%%4423|-|0| part of message. if documentation available please let me know find it.

is cm12 question or generic windows question?


http://www.enhansoft.com/



Windows Server  >  Windows Server General Forum



Comments

Popular posts from this blog

Motherboard replacement

Cannot create Full Text Search catalog after upgrading to V12 - Database is not fully started up or it is not in an ONLINE state

Remote Desktop App - Error 0x207 or 0x607