Event ID: 560 How to interpret messages
i getting false positive when system audits , wondering if there way remove it. sec 560 security|file|c:\winnt\system32\timedate.cpl|-|0|24311384|2392|c:\winnt\system32\wbem\wmiprvse.exe|network service|nt authority|(0x0,0x3e4)|-|-|-|%%1538%%1541%%4416%%4419%%4423|-|0|
i have windows 2003 server that pushes group policy occurs on 2 systems.
unsure of how interpret )|-|-|-|%%1538%%1541%%4416%%4419%%4423|-|0| part of message. if documentation available please let me know find it.
is cm12 question or generic windows question?
http://www.enhansoft.com/
Windows Server > Windows Server General Forum
Comments
Post a Comment