[WRT400N] Several security log entries - every minute

I have several entries in the security log that I have no idea where they are coming from. They are all blank like this:
Incorrect User login : Username is , Password is From 192.168.1.101=> Wed Mar 17 17:42:48 2010
Incorrect User login : Username is , Password is From 192.168.1.101=> Wed Mar 17 17:43:48 2010
Incorrect User login : Username is , Password is From 192.168.1.101=> Wed Mar 17 17:44:48 2010
 The only exception are a few on the first day these started appearing:
ncorrect User login : Username is badcred, Password is himom
From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is admin, Password is From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is admin, Password is admin From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is admin, Password is 1234 From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is admin, Password is password From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is , Password is admin From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is , Password is From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is admin, Password is motorola From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is root, Password is From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is , Password is password From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is root, Password is !root From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is Admin, Password is Admin From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is Admin, Password is From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is admin, Password is junxion From 192.168.1.101=> Tue Mar 9 15:04:12 2010
Incorrect User login : Username is admin, Password is cableroot From 192.168.1.101=> Tue Mar 9 15:04:12 2010
 SInce I am getting blank entries every minute, I'm curious what would be causing this. The first entries are obvious that someone was trying to access with various passwords.
Solved!
Go to Solution.

Well, if it is your computer it looks as if you have some malware running on your computer which tries to hack into your router... Or did you try those passwords at any time?

Similar Messages

  • Forcing log switch every minute.

    Hi,
    I want to force a log switch every one minute how can i do it?
    What should be the value of fast_start_mttr_target?
    Does a checkpoint force a log switch?
    Do i need to only reduce the size of redo log to a small size?
    How can i make sure that a log switch will happen after a particular time period for ex. 1Minute,2 minute.
    I want to force a log switch every minute because i want to send the archive redo log to standby database so that not more than 1 minute changes in database are lost. I am using 10g R2 on windows 2003 server.
    I am unable to find a solution. Any help?

    Hi,
    I want to force a log switch every one minute how
    can i do it? yes with archive_lag_target parameter
    http://download.oracle.com/docs/cd/B19306_01/server.102/b14231/onlineredo.htm#sthref934
    What should be the value of fast_start_mttr_target?incremental or normal checkpoint "fast instance recovery/downtime concerned" introduced from oracle 8, this feature is enabled with the initialization parameter FAST_START_MTTR_TARGET in 9i.
    fast_start_mttr_target to database writer tries to keep the number of dirty blocks in the buffer cache low enough to guarantee rapid recovery in the event of a crash. It frequently updates the file headers to reflect the fact that there are not dirty buffers older than a particular SCN.
    http://download.oracle.com/docs/cd/B19306_01/backup.102/b14191/rcmtunin004.htm#sthref1110
    Does a checkpoint force a log switch? log switch force to checkpoint ,checkpoint never force to log switch.
    Do i need to only reduce the size of redo log to a
    small size?depends yours SLA how far you can risk the data ,but it will effect yours database performance ,recommended to set the size of log which should imply the log swtich after filling to 20 mins,its a trade off risk vs perofrmance.
    How can i make sure that a log switch will happen
    after a particular time period for ex. 1Minute,2
    minute.
    want to force a log switch every minute because i
    want to send the archive redo log to standby database
    so that not more than 1 minute changes in database
    are lost. I am using 10g R2 on windows 2003 server.
    am unable to find a solution. Any help?
    http://download.oracle.com/docs/cd/B19306_01/server.102/b14231/onlineredo.htm#sthref934Khurram

  • 6 Log Files every minute

    I have a networked HP All In One Office Jet Pro L7500 running on Windows XP.
    I removed all HP Software except the drivers. I was constantly getting messages from HP Monitoring SW that my printer was connected, disconnected, connected and on and on and on.
    In addition, my temp folder would create 6 HP log files every minute. I hoped removing everything but the drivers would fix this - no.
    I checked to see if there were updated drivers and I seem to have the latest.
    How can this be fixed? My computer is freezing up if I do not delete these every few hours, also as it writes the files, my computer will slow down to a halt. The files are typically 1K but every 10 files or so will be around a 1MB.
    HELP!!
    Next step is removing the drivers and buying a better printer without this issue and trust me it will not be an HP if that is the case.

    This is worrying to me because
    A. nobody has answered yet
    B. I have the same issue with an HP Photosmart D7400
    I love the printer and the network caqpability, but it goes crazy with the log files to where it will eventually clog the hard drive on my Windows XP machine.
    HP should reconsider the banner across the top of this paqe saying "Join the Conversation" if the chance of people doing so are slim.

  • Security Log entries on domain controllers

    Hi Everyone,
    I started working in an environment where they must log all security events due to regulations on one of the domains. It has 200 Windows XP and Windows 7 computers and about 200 users give or take. It has several servers including 2 Windows 2008 R2 domain
    controllers.
    The security log on domain controller 1 fills up to 400 MB after a week, archives the log, clears the log and starts all over again. The security log on the domain controller 2 reaches 400 MB every day and archives the entries, clears them and starts again.
    Sometimes the domain controller 2 will reach 400 MB two or three times in a day.
    The other sys admin tells me this issue just started three months ago and he can't determine why. Both servers only reached 400 MB once a week in the past. I've looked at the logs and don't see errors. There are a hundreds of thousands of logon\logoff events--ID
    4634. It shows domain controller 1 constantly connecting to domain controller 2. This doesn't seem to be expected behavior for such a small domain? I'd appreciate any guidance on how to reduce the security entries without cutting back on logging.
    Thanks,
    Greg

    Hi Greg,
    Please post the exact event message for further troubleshooting.
    In addition, please note that support for Windows XP ended on April 8, 2014, please upgrade Windows XP machines as soon as possible.
    A notification about the end of Windows XP support
    http://support.microsoft.com/kb/2934207
    Best Regards,
    Amy
    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

  • Maximum write speed to log file, trying to get a log entry every 100ms.

    I have a DAQmx application which data I want ot log. The aquistion is ran at a high speed, 1 KHz. I want to log the measurements to a text file which can read in Matlab or excel. I a wondering what the best approach is for this and what is the maximum speed.
    I have created a program below to test. But it seems that the log is not consistent at 10 Hz alread. The log interval is set to 100 ms while the loop is running at 10 ms.  If I look at the time between the sampes 6 of them are higher than the 100ms. The time between some steps is 700ms which is quite high. Is this implementation wrong or is this just due to the undeterminstic computer?

    LennartM wrote:
    But the program does not stop...It seems it is waiting on another notification to stop or something?
    That is a very likely scenario.  The simple solution here is to destroy the notifier after the top loop completes and make your bottom loop stop when there is an error from the Notifier (when it was destroyed).  That would eliminate the need for the local variable and would ensure that both of your loops stopped.
    There are only two ways to tell somebody thanks: Kudos and Marked Solutions
    Unofficial Forum Rules and Guidelines

  • Mysterious repeat log entries in System events log

    I tried unsuccessfully to share internet connection with 2 iMacs without router(That doesn't matter). But after this, my iMac (24" 2.8 GHz) not networked or on internet now shows this repeated log entries every minute:
    com.apple.launchd[1] (com.apple.InternetSharing): Throttling respawn: Will start in 10 seconds
    This message gets repeated every minute on System events log. Daily, Monthly maintenance was not done automatically earlier today on this iMac (usually it did without any problem) which was on all-night.
    I checked with Disk Utility, repaired permissions. Although no problems in working, this continuous log writings disturbs me.
    Thanks for any help & Happy New Year!
    Best.

    Thanks, V.K. Did that (was asked password). System log showed after restart:
    com.apple.launchd[1] (com.apple.InternetSharing[152]): Exited with exit code: 1
    com.apple.launchd[1] (com.apple.InternetSharing): Throttling respawn: Will start in 10 seconds
    com.apple.launchd[1] (com.apple.InternetSharing153): Exited with exit code: 1
    com.apple.launchd[1] (com.apple.InternetSharing): Throttling respawn: Will start in 10 seconds
    Then it started again the same way as above - with each aditional line each time as shown above. Thanks for sticking with me on this. Hope you will offer other suggestions.
    Best.

  • Is there any Harm to switch the log file of production every minute

    Is there any Harm to switch the log file of production every minute as we r trying to build a replication process. We are plaining to swith the redologs everyminute and then FTP it and use it for replication to achive the relatime senario

    Is there a reason that you're not using DataGuard and/or Streams here? It would seem a lot easier to use the tools Oracle provides than to roll your own solution...
    Switching the log file every minute may have some negative performance implications in your environment.
    Justin
    Distributed Database Consulting, Inc.
    http://www.ddbcinc.com/askDDBC

  • All Windows VM - Virtual Disk Service start/stop every minute

    Dear all
    I recently discovered that all my Windows VM's (2003/2008/2008R2) start and stop the virtual disk service:
    System Log File:
    08:37:27 Virtual Disk Service --> Service started
    08:37:27 Service Control Manager --> The Virtual Disk service entered the running state.
    08:37:28 Virtual Disk Service --> Service stopped
    08:37:28 Service Control Manager --> The Virtual Disk service entered the stopped state.
    and i have this entry every minute.
    I removed the DVD Drive from the VM but no change. What could be the reason for this? All my physical servers with the same backup program haven't this behavior.
    Thanks for any hint
    JBAB

    Just as a follow up:
    Dell know that problem and it will be "fixed" in Version 4.7.
    "In releases of the Host Integration Tools previous to V4.6,  Auto Snapshot Manager would query the entire system state every time a refresh was performed.  In Host
    Integration Tools V4.6 Auto Snapshot Manager will query the entire system state only during the initial load.  After that ASM uses event notifications to keep itself up to date refreshing only these changed items.   However event notifications
    aren’t enough,  to pick up some application changes Engineering implemented a polling mechanism.   The Virtual Disk Service events are a side effect of that polling and are normal and expected.
    However while these messages are entirely benign,  Engineering understands these message could be a concern as  they do fill up the event log and drown out important
    events.  Changes have been added to the V4.7 release of Auto Snapshot Manager giving the user the ability to control how often these refreshes occur along with the option of disabling automatic refreshes and using just a manual refresh button in the GUI."

  • AD get records of security log..

    Hello everyone:)
    i must get some records (by event id, time, etc..) of security log.
    adler_steven answer me for previous my post(http://forum.java.sun.com/thread.jspa?threadID=5292943&messageID=10238354#10238354)
    he sad look at http://forum.java.sun.com/thread.jspa?threadID=5116320&tstart=15
    I must use WMI HTTP Mapper and some WBEM library...
    Ok, i install and configure WMI HTTP Mapper and use next source for try get :) security log, by this dont work...
    connect success, but retrieving information failed
    adler_steven :) help me :)
    *EXHIBIT A - Sun Industry Standards Source License
    *"The contents of this file are subject to the Sun Industry
    *Standards Source License Version 1.2 (the "License");
    *You may not use this file except in compliance with the
    *License. You may obtain a copy of the
    *License at http://wbemservices.sourceforge.net/license.html
    *Software distributed under the License is distributed on
    *an "AS IS" basis, WITHOUT WARRANTY OF ANY KIND, either
    *express or implied. See the License for the specific
    *language governing rights and limitations under the License.
    *The Original Code is WBEM Services.
    *The Initial Developer of the Original Code is:
    *Sun Microsystems, Inc.
    *Portions created by: Sun Microsystems, Inc.
    *are Copyright � 2001 Sun Microsystems, Inc.
    *All Rights Reserved.
    *Contributor(s): _______________________________________
    import java.io.IOException;
    import java.util.Enumeration;
    import javax.wbem.cim.*;
    import javax.wbem.client.*;
    import javax.wbem.client.UserPrincipal;
    import javax.wbem.client.PasswordCredential;
    * This class will perform an CIMClient.execQuery using a WQL query string that
    * is passed on the command line.  If a query isn't passed on the command line,
    * the user will be prompted for the query
    public class TestQuery {
        public TestQuery(String args[]) {
            String serverName = "win2003";
            String user = "administrator";
            String pass = "welcome1";
            CIMClient cimClient = null;
            CIMObjectPath cimPath = null;
            String wbemNameSpace = "root/CIMV2";
            int wbemPortNumber = 5988;
            String wbemProtocol = CIMClient.CIM_XML;
            try {
                    System.out.println("connecting..\n");
                    String hostURL = "http://" + serverName + ":" + wbemPortNumber;
                    CIMNameSpace cimNameSpace = new CIMNameSpace(hostURL,wbemNameSpace);
                    UserPrincipal userName = new UserPrincipal(user);
                    PasswordCredential userPass = new PasswordCredential(pass);
                    cimClient = new CIMClient(cimNameSpace,userName,userPass,wbemProtocol);
            catch (CIMException e) {
                    System.err.println("Failed to access CIMOM: " + e);
            try {
                    System.out.println("get win32_ntlogevent");
                    cimPath = new CIMObjectPath("Win32_NTLogEvent");
                    System.out.println("cimPath");
                    Enumeration e = cimClient.enumerateInstances(cimPath); // this line hang
                    System.out.println("Enumeration");
                    if (e.hasMoreElements()) {
                            CIMInstance ci = (CIMInstance)e.nextElement();
                            // i think, there must be properties of Win32_NTLogEvent Class, such as message, eventid, eventcode...
                            CIMProperty cp = ci.getProperty("Message");
                            System.out.println("   Message: " + cp.getValue());
                    System.out.println("stop get win32..");
                    cimClient.close();
            catch (NullPointerException e) {
                    System.err.println("Null Pointer Exception: " + e);
            catch (CIMException e) {
                    System.err.println("Failed to enumerate WBEM Info: " + e);
        public static void main(String args[]) {
         new TestQuery(args);
    {code}
    Edited by: Jeqpbl4 on Jun 9, 2008 4:24 AM                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               

    I figure I've abused enough people today on the forum, that it's time to redeem myself.
    Firstly, as I've always admitted, I'm not a Java developer, so there may be better ways of doing this. Secondly, I'm not an expert on WBEM/WMI, so I'm not sure of the different classes, methods or properties that WBEM exposes. I think I recommended some references in the links mentioned in this post, so if you want to dig deeper, go read those.
    This is just a quick and dirty WBEM query that retrieves the security events. One thing I discovered is that if you have lots of events, you'll get a heap overflow exception. I guess there may be a way to retrieve pages of results, otherwise use a more refined query to return a smaller number of records.
    * WBEMQueryLog, retrieve the entries from the security log from a server
    * demonstrating the use of a WBEM Query
    import java.io.*;
    import java.util.*;
    import javax.wbem.cim.*;
    import javax.wbem.client.CIMClient;
    import javax.wbem.client.UserPrincipal;
    import javax.wbem.client.PasswordCredential;
    public class wbemquerylog {
        public static void main(String args[]) throws CIMException {
         CIMClient cc = null;
         CIMObjectPath cop = null;
         CIMInstance ci = null;
         String hostname = "myServer";
         String nameSpace = "root/CIMV2";
         int portNumber = 5988;
         String hostURL = "http://" + hostname + ":" + portNumber;
         String protocol = CIMClient.CIM_XML;
         try {
             CIMNameSpace cns = new CIMNameSpace(hostURL,nameSpace);
             UserPrincipal username = new UserPrincipal("myServer/Administrator");
             PasswordCredential password = new PasswordCredential("XXXXXX");
             cc = new CIMClient(cns,username,password,protocol);
         catch (CIMException e) {
              System.err.println("Failed to access CIMOM: " + e);
              System.exit(1);
         cop = new CIMObjectPath();
         //lets try to get the Security Log entries, using a query
         try {
              cop = new CIMObjectPath();//"Win32_NTLogEvent");
              String query = "Select * from Win32_NTLogEvent where Logfile='Security'";
              Enumeration e = cc.execQuery(cop,query,CIMClient.WQL);
              for (int i = 1;e.hasMoreElements();i++) {
                   System.out.println("Event: " + i);
                   System.out.println(e.nextElement());
         catch (CIMException e) {
              System.err.println("Failed to query security log: " + e);
              System.exit(1);
         System.exit(0);
    }If you want to retrieve specific Security Log Events, you could construct a more complex query, such as below, which will find Account Logon Failures
    String query = "Select * from Win32_NTLogEvent where Logfile='Security' And EventCode = '681'";You could also use an enumeration as you have done, the only thing I haven't bothered to work out is how to enumerate the Security log itself, rather than every event in all the logs. I guess it's just a matter of working out what the CIM Path is, if it as at all possible.
    * WBEMEnumLog, enumerate the NTEventLogs from a server
    * Should find out the full CIM Path for the security logs
    import java.io.*;
    import java.util.*;
    import javax.wbem.cim.*;
    import javax.wbem.client.CIMClient;
    import javax.wbem.client.UserPrincipal;
    import javax.wbem.client.PasswordCredential;
    public class wbemenumlog {
        public static void main(String args[]) throws CIMException {
         CIMClient cc = null;
         CIMObjectPath cop = null;
         CIMInstance ci = null;
         String hostname = "myServer";
         String nameSpace = "root/CIMV2";
         int portNumber = 5988;
         String hostURL = "http://" + hostname + ":" + portNumber;
         String protocol = CIMClient.CIM_XML;
         try {
             CIMNameSpace cns = new CIMNameSpace(hostURL,nameSpace);
             UserPrincipal username = new UserPrincipal("myServer/Administrator");
             PasswordCredential password = new PasswordCredential("XXXXXX");
             cc = new CIMClient(cns,username,password,protocol);
         catch (CIMException e) {
              System.err.println("Failed to access CIMOM: " + e);
              System.exit(1);
         cop = new CIMObjectPath();
         try {
              Enumeration en = cc.enumNameSpace(cop,true);
              if (en != null) {
                   while (en.hasMoreElements()) {
                        CIMObjectPath obj = (CIMObjectPath)(en.nextElement());
                        System.out.println("Namespace: " + obj.toString());
         catch (CIMException e) {
              System.err.println("Failed to enumerate namespace: " + e);
              System.exit(1);
         //lets try to get the event logs
         try {
              cop = new CIMObjectPath("Win32_NTLogEvent");
              System.out.println("Host: " + cop.getHost());
              System.out.println("Object Name: " + cop.getObjectName());
              String attrs[] = {"Logfile","Sourcename","EventIdentifier","EventType","TimeGenerated","Type","CategoryString","User"};
              Enumeration e = cc.enumerateInstances(cop,false,false,false,false,attrs);
              for (int i = 1;e.hasMoreElements();i++) {
                   System.out.println("Disk: " + i);
                   System.out.println(e.nextElement());
         catch (CIMException e) {
              System.err.println("Failed to enumerate Event Log: " + e);
              System.exit(1);
         System.exit(0);
    }Good luck....

  • My 2012 MBA on Mav 10.9.1 tries to log out every 10 to 12 minutes

    My 2012 MBA on Mav 10.9.1 is closing out programs in the background every 10-12 min. and then trying to log out.  When it get's to the one I'm working on,usually Xcode, I have to cancel the ''close", but other programs are closed out by then. Is Server 3.03 doing this? Preferences for screen saver and power mode at this point are set to "never",  If I get up to take a phone call or use the facilities I'll come back to the login screen.  At times it seems to be quicker than 10-12 minutes.  It can drive you nuts when you have a few versions of your app up on xcode and maybe some reference pages from the dev lib up on chrome or safari,  Email closes out also, so I don't realize, I just assume since I'm not getting notifications that I'm not getting mail.  I hear my phone get the notifications though so if I were to stop the log out and open mail it would download them right away.  Please help, it's driving me crazy.
    One thing, this computer does act as a server when connected, but 99% of the time I am logged into my main server.  Sorry its so long, I just couldn't quantify my question without the background information so that I can get a proper answer.  So the question agin is, is the Server software on Maverick's doing this since my preferences are set to never go to slepp or a screen saver.
    I have been working on an app for the last two months, doing everything with it as a one man show so the compter is used 20 hours a day.

    From the menu bar, select
     ▹ System Preferences... ▹ Security & Privacy ▹ Advanced...
    and uncheck the box marked
    Log out after … minutes of inactivity
    If there's a closed padlock icon in the lower left corner of the preference pane, you may need to click it to unlock the settings. Enter your login password when prompted.

  • Jrun errors logged every minute in CF8

    Hi. We've had errors logged every few minutes for several years and would like to know how to stop them please? The log path and a file name example is:
    <drive>\JRun4\lib\wsconfig\1\LogFiles\jrun_iis6_wildcard130603.log
    The first few lines of the latest log are below.
    2013-06-03 07:59:09 jrISAPI[init:2060]  JRun ISAPI Extension DLL Detaching (FreeLibrary)
    2013-06-03 08:19:15 jrISAPI[init:3816]  JRun 4.0 (Build 108673) JRun ISAPI Extension - Mar 13 2008 19:48:36
    2013-06-03 08:19:15 jrISAPI[init:3816]  JRun ISAPI Extension DLL Attaching
    2013-06-03 08:19:30 jrISAPI[5648:3816]  127.0.0.1:51020 connect failed[740]: 10060 Connection timed out
    2013-06-03 08:19:30 jrISAPI[5648:3816]  Couldn't initialize from remote server, JRun server(s) probably down.
    2013-06-03 08:20:49 jrISAPI[3712:3816]  127.0.0.1:51020 connect failed[644]: 10060 Connection timed out
    2013-06-03 08:20:49 jrISAPI[3712:3816]  Couldn't initialize from remote server, JRun server(s) probably down.
    2013-06-03 08:21:21 jrISAPI[1824:3816]  127.0.0.1:51020 connect failed[804]: 10060 Connection timed out
    2013-06-03 08:21:21 jrISAPI[1824:3816]  Couldn't initialize from remote server, JRun server(s) probably down.
    The last 2 lines are repeated every minute.
    We stopped the built-in Jrun web server after installation years ago as it's an uncessary component in production. I don't understand why something is still requesting data from the Jrun server every minute.
    Setup: CF 8.01 x64 installed as multi-server instance on Windows 2008 R2 with IIS7.5.
    Thanks in advance for any solutions or suggestions.
    Gary F

    Delete and re-add the web server connector?
    Adam

  • Security (Console log entries)

    The following entries appear repeatedly every few seconds in my Console log:
    10/29/07 12:24:56 PM mDNSResponder[16] handleLNTGetExternalAddressResponse: Router returned bad address
    10/29/07 12:24:56 PM mDNSResponder[16] Error getting external address 3
    My D-Link router is performing properly and I have no problems with the network connections between my two computers or my Internet connections.
    I found four technical documents that reference mDNSResponder issues but they pertain mostly to Apple Security issues and do not suggest what might be causing the repetitive log error entries.
    Any suggestions other than to just forget that I ever saw these log entries?

    I did a state dump for mDNSResponder (sudo killall -INFO mDNSResponder) both before and after killing and restarting the process (sudo killall -KILL mDNSResponder). Then offender appears to be in this area:
    Oct 30 19:59:15 MaxG5 Unknown23: NAT Traversals
    Oct 30 19:59:15 MaxG5 Unknown23: 0080A21C UDP Int 4500 Ext 0 Err 0 Retry 822 Interval 900 Expire 0
    Oct 30 20:02:01 MaxG5 Unknown355: NAT Traversals
    Oct 30 20:02:01 MaxG5 Unknown355: <None>
    Note the number of retries and the expire value.
    After killing and having the process restart itself, the messages in the log go away. The NAT Traversals values in the mDNSResponse state appear to be gone as well.

  • AFP session closing and logging in every 5 minutes.

    I have a new Macbook Pro and an Airport Extreme Dual Band that I seem to be having an issue with. I look at the logs in Airport Utility to check to make sure things are going well with my routers and I am continuously seeing this:
    Nov 01 05:04:43
    Severity:5
    AFP session from <Guest>@10.0.1.5 closing.
    Nov 01 05:04:43
    Severity:5
    AFP login OK from <Guest>@10.0.1.5.
    Nov 01 05:12:29
    Severity:5
    AFP session from <Guest>@10.0.1.5 closing.
    Nov 01 05:12:29
    Severity:5
    AFP login OK from <Guest>@10.0.1.5.
    Nov 01 05:14:47
    Severity:7
    Public address reported as 24.22.102.255 to 10.0.1.19:5353
    Nov 01 05:17:43
    Severity:5
    AFP session from <Guest>@10.0.1.5 closing.
    Nov 01 05:17:43
    Severity:5
    AFP login OK from <Guest>@10.0.1.5.
    Nov 01 05:22:57
    Severity:5
    AFP session from <Guest>@10.0.1.5 closing.
    Nov 01 05:22:57
    Severity:5
    AFP login OK from <Guest>@10.0.1.5.
    Nov 01 05:28:11
    Severity:5
    AFP session from <Guest>@10.0.1.5 closing.
    Nov 01 05:28:11
    Severity:5
    AFP login OK from <Guest>@10.0.1.5.
    Nov 01 05:28:25
    Severity:5
    Associated with station 8c:58:77:30:dc:81
    Nov 01 05:28:25
    Severity:5
    Installed unicast CCMP key for supplicant 8c:58:77:30:dc:81
    Nov 01 05:29:48
    Severity:7
    Public address reported as 24.22.102.255 to 10.0.1.19:5353
    Nov 01 05:33:26
    Severity:5
    AFP session from <Guest>@10.0.1.5 closing.
    Nov 01 05:33:26
    Severity:5
    AFP login OK from <Guest>@10.0.1.5.
    Nov 01 05:38:40
    Severity:5
    AFP session from <Guest>@10.0.1.5 closing.
    Nov 01 05:38:40
    Severity:5
    AFP login OK from <Guest>@10.0.1.5.
    Nov 01 05:43:54
    Severity:5
    AFP session from <Guest>@10.0.1.5 closing.
    Nov 01 05:43:55
    Severity:5
    AFP login OK from <Guest>@10.0.1.5.
    10.0.1.5 is my Macbook Pro's IP address on my network and this log continues showing the session closing and logging in every 5 minutes or so. I don't know why it would be doing this. If I restart the router, all is fine for a day or so but it goes back to doing this again. Any suggestions?

    This issue can be caused by corrupted cookies.
    Clear the cache and the cookies from sites that cause problems.
    "Remove Cookies" from sites causing problems:
    * Tools > Options > Privacy > Cookies: "Show Cookies"
    Start Firefox in <u>[[Safe Mode]]</u> to check if one of the extensions is causing the problem (switch to the DEFAULT theme: Firefox (Tools) > Add-ons > Appearance/Themes).
    *Don't make any changes on the Safe mode start window.
    *https://support.mozilla.com/kb/Safe+Mode

  • SQL Server log generating minidump files every minute

    Good afternoon.
    Our SQL server recently started generating minidump files almost every minute.
    I'm waiting on the final dbcc checkdb of the final database but all others have returned without error.
    I've run the dump files through the debugging utility and have the following stack dump which I'm not sure how to interpret.
    At this point, I'm not quite sure how to proceed, pending on the results from dbcc.
    There are no other obvious errors in the event or system logs to cross-reference.
    Thanks
    0:027> kC 1000
    Call Site
    KERNELBASE!RaiseException
    sqlservr!CDmpDump::Dump
    sqlservr!SQLDumperLibraryInvoke
    sqlservr!CImageHelper::DoMiniDump
    sqlservr!stackTrace
    sqlservr!stackTraceCallBack
    sqlservr!ex_raise2
    sqlservr!ex_raise
    sqlservr!RaiseInconsistencyError
    sqlservr!Page::DeleteRow
    sqlservr!PageRef::ExpungeGhostRow
    sqlservr!IndexPageRef::ExpungeGhost
    sqlservr!CleanVersionsOnBTreePage
    sqlservr!IndexDataSetSession::CleanupVersionsOnPage
    sqlservr!GhostExorciser::CleanupPage
    sqlservr!TaskGhostCleanup::ProcessTskPkt
    sqlservr!GhostRecordCleanupTask
    sqlservr!CGhostCleanupTask::ProcessTskPkt
    sqlservr!TaskReqPktTimer::ExecuteTask
    sqlservr!OnDemandTaskContext::ProcessTskPkt
    sqlservr!SystemTaskEntryPoint
    sqlservr!OnDemandTaskContext::FuncEntryPoint
    sqlservr!SOS_Task::Param::Execute
    sqlservr!SOS_Scheduler::RunTask
    sqlservr!SOS_Scheduler::ProcessTasks
    sqlservr!SchedulerManager::WorkerEntryPoint
    sqlservr!SystemThread::RunWorker
    sqlservr!SystemThreadDispatcher::ProcessWorker
    sqlservr!SchedulerManager::ThreadEntryPoint
    msvcr80!_callthreadstartex
    0x0
    0x0
    0x0

    i agree with Erland. Run DBCC CHECKDB on the database. Most likely there is corruption in database.
    Balmukund Lakhani
    Please mark solved if I've answered your question, vote for it as helpful to help other users find a solution quicker
    This posting is provided "AS IS" with no warranties, and confers no rights.
    My Blog |
    Team Blog | @Twitter
    | Facebook
    Author: SQL Server 2012 AlwaysOn -
    Paperback, Kindle

  • TNS-12537 - Service_died, Service_register events being logged every minute

    We have an 11.2.0.2 Grid Infrastructure listener that is configured with Oracle Restart. At this time, the listener is listening for connections to a 10.2.0.4 database. The following events are being logged every minute in the listener.log file. In the past, we have occasionally seen similar events logged in the 10.2.0.4 log file, but not every minute.
    21-MAR-2011 14:38:25 * (CONNECT_DATA=(CID=(PROGRAM=)(HOST=my.host.here)(USER=oracle))(COMMAND=status)(ARGUMENTS=64)(SERVICE=LISTENER)(VERSION=186647040)) * status * 0
    21-MAR-2011 14:38:25 * service_died * LsnrAgt * 12537
    21-MAR-2011 14:38:25 * version * 0
    Dynamic address is already listened on (DESCRIPTION=(ADDRESS=(PROTOCOL=tcp)(HOST=my.host.here)(PORT=1521)))
    21-MAR-2011 14:38:25 * service_register * LsnrAgt * 0
    oerr tns 12537
    12537, 00000, "TNS:connection closed"
    // *Cause: "End of file" condition has been reached; partner has disconnected.
    // *Action: None needed; this is an information message.
    I am wondering if the LsnrAgt is part of the Oracle Restart configuration and is it really just informational when it is occurring every minute?
    Thanks for any help or pointers to docuements that may explain these events that are being logged every minute.
    Edited by: patriciaashe on Mar 21, 2011 3:08 PM
    Edited by: patriciaashe on Mar 21, 2011 3:09 PM

    This error seems to be directly tied to the auto restart configuration of the listener.
    If you remove the listener from the config, the problem goes away.
    ie.
    srvctl remove listener -l listener
    Also, if you want to leave the configuration, you can modify the check interval to alleviate the problems.
    Setting it to 0, prevents the service_died errors. Of course this has the impact of listener not automatically restarting in the event it crashes.
    crsctl modify resource ora.LISTENER.lsnr -attr CHECK_INTERVAL=0

Maybe you are looking for

  • WiFi Sync no longer works

    I've had wifi sync succefully work on my iPhone 4 since iOS 5 was first released but it recently stopped working. I didn't notice at first because I rarely use it. I'm using a Windows 7 64 bit desktop. I'm not sure what the problem is I first tried d

  • Video Not showing in Capture screen, w/ a few other questions.

    Ok, so i've used Final Cut Pro HD for awhile. and have never experienced this problem. I recently just purchased a MacBook Pro for editing on the road. And i had to throw a coverage video together really qucikly. So i captured all the video onto my m

  • Upgrade from Win 32 to X64 Configuration- HashTrailingSlash error.

    Hi, We upgrading from VS2008 to VS2013.  In our product we have 3 solution(.sln) files (for server, rep and client). Server and rep migrated successfully to VS2013 with .vcxproj and filters files created In client solution file we have some win32 con

  • CSa and MS Exchange

    In the CSA Whitepaper the list there being a Pre Canned Policy for Exchange, however I don't see this listed in my lists of policies. Does anyone have any recommendations for what policy elements should be included for a Exchange 2003 installation Th

  • How to stop //ANDROID:${from} has sent you a Sprint Voice Message. Call ${callbackno} to listen.?

    I keep getting this text message on my ipone4s every hour. //ANDROID:${from} has sent you a Sprint Voice Message. Call ${callbackno} to listen. CFGs1840.0=0fb15457cd82d2573628IAkhiRv//CM Does anyone know how to stop this. Sprint has no idea and it's