Event Id | 4008 |
Source | Microsoft-Windows-PerfCtrs |
Description | Unable to look up the ID of this object in MIB. Check that the MIB.BIN file is correct. |
Event Information | According to Microsoft : Cause : The Remote Registry service is not enabled Resolution : Enable the Remote Registry service Membership in the target system's local Administrators group is the minimum required to change service settings. To enable the Remote Registry service:
The File and Printer Sharing firewall exception is not installed on a remote Windows Vista system Resolution : The File and Printer Sharing firewall exception is not enabled on a remote Windows Vista system On systems running Windows Vista, the File and Printer Sharing firewall exception must be enabled on the destination system. Membership in the destination computer's local Administrators group is required to change firewall settings. Resolution : Enable the File and Printer Sharing firewall exception on a remote system running Windows Vista Membership in the target system's local Administrators group is required to change firewall settings. To enable the File and Printer Sharing firewall exception:
The application is running as a user with insufficient privileges Resolution : Run the application as a user with sufficient privileges By default, an application runs with the same privileges as the user who started it. You can configure services to run as the local system account or as a specific user. You can also start an application as Administrator, but in Windows Vista or Windows Server 2008 with User Account Control enabled, you must confirm that you want to start the application each time it runs if it is configured to run as Administrator. Consider running services that collect performance counter data as the local system account to resolve privilege issues. If for security reasons you do not want to run the application or service as the local system account, you can add the user the application runs as to the Performance Log Users group and assign the group the Log on as a Batch Job user right to enable performance counter collection each time the application runs. Membership in the destination computer's local Administrators group is required to complete these procedures. Add a user to the Performance Log Users group To add a user to the Performance Log Users group:
In order for members of the Performance Log Users group to initiate data logging or modify Data Collector Sets, the group must first be assigned the Log on as a batch job user right. To assign this user right, use the Local Security Policy snap-in in Microsoft Management Console (MMC). To assign the Log on as a batch job user right to the Performance Log Users group:
The list of counters is corrupt Resolution : Rebuild the list of available counters Membership in the local Administrators group is required to complete this procedure. To rebuild the list of counters in the registry:
You can use Windows Reliability and Performance Monitor to verify that netowkr performance counters are properly collected and displayed in a Performance Monitor graph. In addition, you can use the typeperf command to get a list of the available counters on the local system. Membership in the local Administrators group is required to complete these procedures View counters in Performance Monitor To view counters in Performance Monitor:
|
Reference Links | Event ID 4008 from Source Microsoft-Windows-PerfCtrs |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.