wevtsvc.dll

Associated Error Codes

Below lists error codes and symbolic names found for this module.

CodeFound inDescription
0x141011The event logging service encountered an error %1 while obtaining or processing configuration for channel %2.
0x151011The event logging service encountered a configuration-related error (res=%1) for channel %2. The error was encountered while processing the %3 configuration property.
0x161011The event logging service encountered an error while initializing publishing resources for channel %2. If channel type is Analytic or Debug, then this could mean there was an error initializing logging resources as well.
0x171011The event logging service encountered an error (res=%1) while initializing logging resources for channel %2.
0x191011The event logging service encountered a corrupt log file for channel %1. The log was renamed with a .corrupt extension.
0x1a1011The event logging service encountered a log file for channel %1 which is an unsupported version. The log was renamed with a .UnsupportedVer extension.
0x1b1011The event logging service encountered an error (res=%1) while opening log file for channel %2 at %3. Trying again using default log file path %4.
0x1c1011The event logging service encountered an error (res=%1) while parsing filter for channel %2. Will continue without filter.
0x1d1011The event logging service encountered a fatal error (res=%1) when applying settings to the %2 channel. The service is shutting down since this channel is vital to its operation.
0x1e1011The event logging service encountered an error (%1) while enabling publisher %3 to channel %2. This does not affect channel operation, but does affect the ability of the publisher to raise events to the channel. One common reason for this error is that the Provider is using ETW Provider Security and has not granted enable permissions to the Event Log service identity.
0x1f1011The event logging service encountered an error (res=%1) while opening configuration for primary channel %2. Trying again using default configuration. This problem usually occurs if registry has been corrupted or explicitly misconfigured.
0x281011The event logging service encountered an error when attempting to apply one or more policy settings.
0x681011The %3 log file was cleared.
0x691011Event log automatic backup Log: %1 File: %2
0x6a1011Corruption was detected in the log for the %1 channel and some data was erased.
0x6c1011The previous system shutdown was unexpected.
0x44c1011The event logging service has shut down.
0x44d1011Audit events have been dropped by the transport. %1
0x44e1011The audit log was cleared. Subject: Security ID: %1 Account Name: %2 Domain Name: %3 Logon ID: %4
0x44f1011The security log is now %1 percent full.
0x4501011The security log is now full.
0x4511011Event log automatic backup Log: %1 File: %2
0x4521011Events have been dropped by the event logging service. The reason code is %1.
0x4531011The event logging service encountered an error while processing an incoming event from publisher %3 and trying to process the metadata for it.
0x4541011The event logging service encountered an error while processing an incoming event published from %3.
0x17701011The %1 log file is full.
0x100000121011Service availability
0x100000131011Service configuration
0x100000141011System availability
0x100000151011API Usage Audit
0x100000361011Audit Success
0x300000011011Start
0x300000021011Stop
0x500000011011Critical
0x500000021011Error
0x500000031011Warning
0x500000041011Information
0x500000051011Verbose
0x700000641011Service startup
0x700000651011Event processing
0x700000671011Service shutdown
0x700000681011Log clear
0x700000691011Log automatic backup
0x7000006c1011System Abnormal Shutdown
0x7000006d1011Service Usage Audit
0x900000011011Microsoft-Windows-Eventlog
0x900000021011System
0x900000031011Security
0x900000041011Setup
0x900000051011Debug
0x900000061011Analytic
0xb000001b1011The event logging service encountered an error (res=%1) while opening log file for channel %2. Trying again using default log file path %3.
0xb00000671011Events have been dropped by the transport. The session name is %2 and the reason code is %1.
0xb000006b1011The event logging service encountered an error %1 while going through publisher configuration. The publisher %2 is already installed with GUID %3.
0xb000006e1011Loading metadata for publisher %2 (%1) and trying to process the metadata for it.
0xb000006f1011Finished loading metadata for publisher %2 (%1), with %3 event metadatas processed.
0xb00000701011Failed to load metadata for publisher %2 (%1). The reason code is %3.
0xb00000c81011Channel %1 (%2) was enabled (%3) programmatically.
0xb00000c91011A push subscription was created for %1.
0xb00000ca1011A pull subscription was created for %1.
0xb00000cb1011OpenEventLog legacy API was used to open %2.
0xb00000cc1011RegisterEventSource legacy API was used to register %2.
0xb00100cd1011ReportEvent legacy API was used to write an event to %2.
0xd00000011011Events were lost because there were no free buffers. Flushing to disk could not catch up with incoming events.
0xd00000021011One or more buffers were dropped because a real time consumer could not catch up.
0xd00000031011The real time backup file was corrupt due to improper shutdown.
0xd00000041011Admin
0xd00000051011Operational
68 entries