Event ID - 2025

Event Id2025
SourceServer
DescriptionThe server has detected an attempted Denial-Of-Service attack from client %2, and has disconnected the connection.
Event Information According to Microsoft :

Cause :

This event is logged when server has detected an attempted Denial-Of-Service attack from client and has disconnected the connection.

Resolution :

Security Alert - Review client or network usage

Denial of service (DoS) attacks are network attacks that are aimed at making a computer or a particular service on a computer unavailable to network users. It is important that you determine if the server is experiencing a DoS attack.

Verify :

To perform this procedure, you must have membership in Administrators , or you must have been delegated the appropriate authority.

To verify the Shared Folder (SMB) server is available:
  1. Open an elevated Command Prompt window. Click Start , point to All Programs , click Accessories , right-click Command Prompt , and then click Run as administrator .
  2. Type net config server .
  3. Verify that NetbiosSmb appears under the Server is active on section in the results.
Reference LinksEvent ID 2025 from Server

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.