logging

  1. K

    File System auditing - Event ID 4663 not logging

    Hello, I hope someone can help with this issue. I have a requirement to configure file system logging on my windows file server and I have setup the security policy to track file system object access but I am not getting Event ID 4663 (An attempt was made to access an object). These are the...
  2. K

    How to troubleshoot 521 Events in Security Log

    I am getting a slew of Event 521 in the WIndows Security Log on about half my DCs. they are triggering Critical Alerts in ADAudit, so I need to determine the cause and resolve it. So far, I have • Rebooted the DC • Confirmed adequate disk space • Confirmed permissions on the .evtx...
  3. WINDOWSNOVICE

    Eventviewer - Subcatagories of log types

    Hi, I think that troubleshooting on windows is one of the more timeconsuming tasks, especially for novives, and finding information, explanations, definitions of windows featutres likelogging is really difficult, sources are often incomplete or thise i find dont explain what i am looking for...
  4. B

    Small utility for controlling access of programs to the network.

    Can anyone advise a program for monitoring installed software that tries to access the internet? Firewall in interactive mode can do this too of course, or Task Manager too, I'm looking for something specialised, with logging or statistics etc. Thanks for the tips Peter
  5. L

    IIS Disable logging, performance

    Hi, one of the optimize tip for ISS is to disable logging. But does someone here know how much this can speed up the website? Will it be a huge performance win, or not noticeable at all? /L
  6. vivi

    Windows 10 netsh trace with persist cannot record older message after restart the OS on Build 685

    Hi All Experts, I met the issue when I tried to use the netsh trace on Windows 10 build 685. In previous version 630, I use the netsh trace with persist=yes to record the network message and all as normal whatever I restart the OS. But after I update my Windows 10 to build 685, every time...
  7. C

    Windows 10 Analysing attacks made in Windows

    I am currently in the middle of testing a hack on a Windows 10 virtual machine via brute force attack. I successfully hacked into the Windows 10 (victim) machine via OpenSSH port which I opened myself I have looked on Windows Event viewer and have noticed that it shows the attack attempts and...
  8. News

    How to Turn on Debug Logging of the LDAP Client (Wldap32.dll)

    How to Turn on Debug Logging of the LDAP Client (Wldap32.dll) Continue reading...
  9. News

    Netlogon event ID 5719 or Group Policy event 1129 is logged when you start a domain member

    Discusses event ID 5719 or Group Policy event 1129, which are logged if you have a Gigabit network adapter installed on a Windows-based compute. Provides a resolution. Continue reading...
  10. News

    TA18-276B: Advanced Persistent Threat Activity Exploiting Managed Service Providers

    Original release date: October 3, 2018 Systems Affected Network Systems Overview The National Cybersecurity and Communications Integration Center (NCCIC) is aware of ongoing APT actor activity attempting to infiltrate the networks of global managed service providers (MSPs). Since May 2016...
  11. Jck

    VPN tracking

    Hello I have hosted a VPN server using the add role and feature in windows server 2012 r2 is there any way to log all the websites that have been accessed while on the VPN. atm i can log visited websites ips but not the URL's.
  12. P

    Windows 7 Does Sfc /scannow append new entries to CBS.Log?

    It seems to me that the well known command sfc /scannow ..... appends all logmessages to a possibly already existing CBS.LOG file rather than create a new logfile. Is this correct? So if I want to have a fresh logfile just with the results from the last sfc run I have to manually delete the...
  13. N

    Windows 10 How to pull CPU and GPU temperatures

    I did a lot of research these days and found no useful informations (to me, at least): I want a simple program to read CPU (and possibly GPU) temperatures, but I also want that program to send those values to a usb (connected to an arduino), making programs like Speedfan or HWMonitor not...
  14. News

    Windows IoT Core Extension for Visual Studio Code

    About the Windows IoT Core Extension for VS Code Visual Studio Code is the first code editor and first cross-platform development tool – supporting OS X, Linux, and Windows – in the Visual Studio family. Windows 10 IoT Core already supports popular boards like Link Removed, Link Removed and...
  15. News

    Using Device Portal to view debug logs for UWP

    On Windows desktops, if something went wrong, your first instinct for years may have been to open up the Event Viewer and see if anything red or yellow shows up. Those alerts are saved ETW events, emitted by the system when errors occurred. On other Windows devices though, it’s been a bit harder...
  16. News

    NetLogon 3210 events are logged after MSA renews its password in Windows Server 2012 R2

    Continue reading...
  17. News

    Firewall service freezes and crashes if the firewall logging is enabled in Windows

    Continue reading...
  18. News

    How to configure Active Directory and LDS diagnostic event logging

    Continue reading...
  19. Neemobeer

    Windows 10 Windows 10 Powershell based virus detector

    Here's a neat script I put together today. If added as a scheduled task it will loop and monitor running processes. The only thing needed is to sign up for an account on virustotal.com to get an API key then replace the F's with your api key Function Get-ProcessReport([string]$FilePath...
  20. News

    Software Inventory Logging Aggregator 1.0 for Windows Server

    Software Inventory Logging Aggregator receives, aggregates, and produces basic reports of, the number and types of Microsoft enterprise software installed on Windows Servers across a data center. Link Removed
Back
Top