wevtsvc.dll
Associated Error Codes
Below lists error codes and symbolic names found for this module.
| Code | Found in | Description |
|---|---|---|
| 0x14 | 1011 | The event logging service encountered an error %1 while obtaining or processing configuration for channel %2. |
| 0x15 | 1011 | The event logging service encountered a configuration-related error (res=%1) for channel %2. The error was encountered while processing the %3 configuration property. |
| 0x16 | 1011 | The event logging service encountered an error while initializing publishing resources for channel %2. If channel type is Analytic or Debug, then this could mean there was an error initializing logging resources as well. |
| 0x17 | 1011 | The event logging service encountered an error (res=%1) while initializing logging resources for channel %2. |
| 0x19 | 1011 | The event logging service encountered a corrupt log file for channel %1. The log was renamed with a .corrupt extension. |
| 0x1a | 1011 | The event logging service encountered a log file for channel %1 which is an unsupported version. The log was renamed with a .UnsupportedVer extension. |
| 0x1b | 1011 | The event logging service encountered an error (res=%1) while opening log file for channel %2 at %3. Trying again using default log file path %4. |
| 0x1c | 1011 | The event logging service encountered an error (res=%1) while parsing filter for channel %2. Will continue without filter. |
| 0x1d | 1011 | The event logging service encountered a fatal error (res=%1) when applying settings to the %2 channel. The service is shutting down since this channel is vital to its operation. |
| 0x1e | 1011 | The event logging service encountered an error (%1) while enabling publisher %3 to channel %2. This does not affect channel operation, but does affect the ability of the publisher to raise events to the channel. One common reason for this error is that the Provider is using ETW Provider Security and has not granted enable permissions to the Event Log service identity. |
| 0x1f | 1011 | The event logging service encountered an error (res=%1) while opening configuration for primary channel %2. Trying again using default configuration. This problem usually occurs if registry has been corrupted or explicitly misconfigured. |
| 0x28 | 1011 | The event logging service encountered an error when attempting to apply one or more policy settings. |
| 0x68 | 1011 | The %3 log file was cleared. |
| 0x69 | 1011 | Event log automatic backup Log: %1 File: %2 |
| 0x6a | 1011 | Corruption was detected in the log for the %1 channel and some data was erased. |
| 0x6c | 1011 | The previous system shutdown was unexpected. |
| 0x44c | 1011 | The event logging service has shut down. |
| 0x44d | 1011 | Audit events have been dropped by the transport. %1 |
| 0x44e | 1011 | The audit log was cleared. Subject: Security ID: %1 Account Name: %2 Domain Name: %3 Logon ID: %4 |
| 0x44f | 1011 | The security log is now %1 percent full. |
| 0x450 | 1011 | The security log is now full. |
| 0x451 | 1011 | Event log automatic backup Log: %1 File: %2 |
| 0x452 | 1011 | Events have been dropped by the event logging service. The reason code is %1. |
| 0x453 | 1011 | The event logging service encountered an error while processing an incoming event from publisher %3 and trying to process the metadata for it. |
| 0x454 | 1011 | The event logging service encountered an error while processing an incoming event published from %3. |
| 0x1770 | 1011 | The %1 log file is full. |
| 0x10000012 | 1011 | Service availability |
| 0x10000013 | 1011 | Service configuration |
| 0x10000014 | 1011 | System availability |
| 0x10000015 | 1011 | API Usage Audit |
| 0x10000036 | 1011 | Audit Success |
| 0x30000001 | 1011 | Start |
| 0x30000002 | 1011 | Stop |
| 0x50000001 | 1011 | Critical |
| 0x50000002 | 1011 | Error |
| 0x50000003 | 1011 | Warning |
| 0x50000004 | 1011 | Information |
| 0x50000005 | 1011 | Verbose |
| 0x70000064 | 1011 | Service startup |
| 0x70000065 | 1011 | Event processing |
| 0x70000067 | 1011 | Service shutdown |
| 0x70000068 | 1011 | Log clear |
| 0x70000069 | 1011 | Log automatic backup |
| 0x7000006c | 1011 | System Abnormal Shutdown |
| 0x7000006d | 1011 | Service Usage Audit |
| 0x90000001 | 1011 | Microsoft-Windows-Eventlog |
| 0x90000002 | 1011 | System |
| 0x90000003 | 1011 | Security |
| 0x90000004 | 1011 | Setup |
| 0x90000005 | 1011 | Debug |
| 0x90000006 | 1011 | Analytic |
| 0xb000001b | 1011 | The event logging service encountered an error (res=%1) while opening log file for channel %2. Trying again using default log file path %3. |
| 0xb0000067 | 1011 | Events have been dropped by the transport. The session name is %2 and the reason code is %1. |
| 0xb000006b | 1011 | The event logging service encountered an error %1 while going through publisher configuration. The publisher %2 is already installed with GUID %3. |
| 0xb000006e | 1011 | Loading metadata for publisher %2 (%1) and trying to process the metadata for it. |
| 0xb000006f | 1011 | Finished loading metadata for publisher %2 (%1), with %3 event metadatas processed. |
| 0xb0000070 | 1011 | Failed to load metadata for publisher %2 (%1). The reason code is %3. |
| 0xb00000c8 | 1011 | Channel %1 (%2) was enabled (%3) programmatically. |
| 0xb00000c9 | 1011 | A push subscription was created for %1. |
| 0xb00000ca | 1011 | A pull subscription was created for %1. |
| 0xb00000cb | 1011 | OpenEventLog legacy API was used to open %2. |
| 0xb00000cc | 1011 | RegisterEventSource legacy API was used to register %2. |
| 0xb00100cd | 1011 | ReportEvent legacy API was used to write an event to %2. |
| 0xd0000001 | 1011 | Events were lost because there were no free buffers. Flushing to disk could not catch up with incoming events. |
| 0xd0000002 | 1011 | One or more buffers were dropped because a real time consumer could not catch up. |
| 0xd0000003 | 1011 | The real time backup file was corrupt due to improper shutdown. |
| 0xd0000004 | 1011 | Admin |
| 0xd0000005 | 1011 | Operational |
| 68 entries | ||