Get-WinEvent -ListLog *| where-object {$_.IsEnabled -eq "True" -and $_.RecordCount -gt "0"} | sort-object -property LogName | format-table LogName -autosize -wrap Application.evtx: 记录了与应用程序相关的事件,例如应用程序错误、警告和信息性消息。 HardwareEvents.evtx: 记录了与硬件相关的...
Netlogon 事件 ID 5719 或组策略事件 1129 配置LLTDIO 和 RSPNDR GPO 后的网络断开连接 系统重启时不会按预期删除旧用户配置文件 未应用密码策略更改 “为登录到此计算机的所有用户设置漫游配置文件路径”设置适用于本地帐户 从组策略应用设置 缺少某些组策略区域 ...
Please examine the application event log. 事件1044:RES_IPADDR_NBT_INTERFACE_CREATE_FAILED输出 复制 Encountered a failure when attempting to create a new NetBIOS interface while bringing resource '%1' online (error code '%2'). The maximum number of NetBIOS names may have been exceeded. ...
BAD_POOL_HEADER 错误检查的值为 0x00000019。 这表示池标头已损坏。 重要 这篇文章适合程序员阅读。 如果你是在使用计算机时收到蓝屏错误代码的客户,请参阅蓝屏错误疑难解答。 BAD_POOL_HEADER 参数 参数1 表示违规类型。 其他参数的含义取决于参数 1 的值。
0x00000047 REF_UNKNOWN_LOGON_SESSION 0x00000048 CANCEL_STATE_IN_COMPLETED_IRP 0x00000049 PAGE_FAULT_WITH_INTERRUPTS_OFF 0x0000004A IRQL_GT_ZERO_AT_SYSTEM_SERVICE 0x0000004B STREAMS_INTERNAL_ERROR 0x0000004C FATAL_UNHANDLED_HARD_ERROR 0x0000004D NO_PAGES_AVAILABLE 0x0000004E PFN_LIST_CORRUPT 0x...
Copy Code lodctr"C:\Path\To\CustomCounters.ini" 显示当前加载的计数器: Copy Code lodctr /s 卸载性能计数器定义文件: Copy Code lodctr /u 5.unlodctr unlodctr是lodctr的对立工具,用于卸载系统中的性能计数器和计数器定义。 卸载指定的计数器类别: ...
Just before the computer shuts down,shutdown.exewill record the shutdown event in the Windows System log with a Source=User32 and event ID 1074 along with any custom message & reason code. The event log is the only way to tell that a reboot triggered fromshutdown.exeis pending...
System service name: EventlogExpand table Application protocolProtocolPorts RPC/named pipes (NP) TCP 139 RPC/NP TCP 445 RPC/NP UDP 137 RPC/NP UDP 138Note The Event Log service uses RPC over named pipes. This service has the same firewall requirements as the File and Printer Sharing ...
If a specific bug check code does not appear in this topic, use the !analyze extension in the Windows Debugger (WinDbg) with the following syntax (in kernel mode), replacing <code> with a bug check code:!analyze -show <code>Entering this command causes WinDbg to display information about ...
<MSMSEC_PORT_PRIVATE_EVENT_AUTH_ACTIVATE_UNAUTHENTICATED> [1176] 10:50:39.041 Sending notification (SRC Security 0x2 : Code 0x10002) to MSM for session 0000000C, Data size 368 [3784] 10:50:39.044 Port<10> Queued Event (MSMSEC_PORT_PRIVATE_EVENT_AUTH_UCT) in port (0x02F74528) queue ...