Hi, everyone,
i am a Chinese user of Windows Server 2008 R2. And i noticed the auto-reboot of this server on around 8:45 am everyday recently. This server is for file-serving for my company and for financial database too.
The event log of this auto-reboot is as follows:
Log Name: System
From: EventLog
Date: 2016-07-20 08:45:44
Event ID: 6008
Task Category: none
Class: Error
Key Word: Classic
User: none
Computer: HFGKserver.hfgk.com.cn
Description:
上一次系统的 8:43:38 在 2016/7/20 上的关闭是意外的。
(It is exceptional for last system shutdown on 8:43:38 2016/7/20)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6008</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2016-07-20T00:45:44.000000000Z" />
<EventRecordID>96218</EventRecordID>
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security />
</System>
<EventData>
<Data>8:43:38</Data>
<Data>2016/7/20</Data>
<Data>
</Data>
<Data>
</Data>
<Data>385</Data>
<Data>
</Data>
<Data>
</Data>
<Binary>E00707000300140008002B0026008003E00707000300140000002B00260080033C0000003C000000000000000000000000000000000000000100000000000000</Binary>
</EventData>
</Event>
日志名称: System
来源: Microsoft-Windows-Kernel-Power
日期: 2016-07-19 08:47:53
事件 ID: 41
任务类别: (63)
级别: 关键
关键字: (2)
用户: SYSTEM
计算机: HFGKserver.hfgk.com.cn
描述:
系统在未首先正常关机的情况下重新启动。当系统停止响应、出现故障或意外断电时,会发生此错误。
事件 Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
<EventID>41</EventID>
<Version>2</Version>
<Level>1</Level>
<Task>63</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000002</Keywords>
<TimeCreated SystemTime="2016-07-19T00:47:53.406250000Z" />
<EventRecordID>95657</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="BugcheckCode">0</Data>
<Data Name="BugcheckParameter1">0x0</Data>
<Data Name="BugcheckParameter2">0x0</Data>
<Data Name="BugcheckParameter3">0x0</Data>
<Data Name="BugcheckParameter4">0x0</Data>
<Data Name="SleepInProgress">false</Data>
<Data Name="PowerButtonTimestamp">0</Data>
</EventData>
</Event>
日志名称: System
来源: Microsoft-Windows-Kernel-Power
日期: 2016-07-18 08:44:15
事件 ID: 41
任务类别: (63)
级别: 关键
关键字: (2)
用户: SYSTEM
计算机: HFGKserver.hfgk.com.cn
描述:
系统在未首先正常关机的情况下重新启动。当系统停止响应、出现故障或意外断电时,会发生此错误。
事件 Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
<EventID>41</EventID>
<Version>2</Version>
<Level>1</Level>
<Task>63</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000002</Keywords>
<TimeCreated SystemTime="2016-07-18T00:44:15.625000000Z" />
<EventRecordID>95401</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="BugcheckCode">0</Data>
<Data Name="BugcheckParameter1">0x0</Data>
<Data Name="BugcheckParameter2">0x0</Data>
<Data Name="BugcheckParameter3">0x0</Data>
<Data Name="BugcheckParameter4">0x0</Data>
<Data Name="SleepInProgress">false</Data>
<Data Name="PowerButtonTimestamp">0</Data>
</EventData>
</Event>
日志名称: System
来源: EventLog
日期: 2016-07-18 08:44:56
事件 ID: 6008
任务类别: 无
级别: 错误
关键字: 经典
用户: 暂缺
计算机: HFGKserver.hfgk.com.cn
描述:
上一次系统的 8:43:04 在 2016/7/18 上的关闭是意外的。
事件 Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6008</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2016-07-18T00:44:56.000000000Z" />
<EventRecordID>95394</EventRecordID>
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security />
</System>
<EventData>
<Data>8:43:04</Data>
<Data>2016/7/18</Data>
<Data>
</Data>
<Data>
</Data>
<Data>1526</Data>
<Data>
</Data>
<Data>
</Data>
<Binary>E00707000100120008002B0004008502E00707000100120000002B00040085023C0000003C000000000000000000000000000000000000000100000000000000</Binary>
</EventData>
</Event>
日志名称: System
来源: EventLog
日期: 2016-07-15 08:43:54
事件 ID: 6008
任务类别: 无
级别: 错误
关键字: 经典
用户: 暂缺
计算机: HFGKserver.hfgk.com.cn
描述:
上一次系统的 8:41:15 在 2016/7/15 上的关闭是意外的。
事件 Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6008</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2016-07-15T00:43:54.000000000Z" />
<EventRecordID>95062</EventRecordID>
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security />
</System>
<EventData>
<Data>8:41:15</Data>
<Data>2016/7/15</Data>
<Data>
</Data>
<Data>
</Data>
<Data>81227</Data>
<Data>
</Data>
<Data>
</Data>
<Binary>E007070005000F00080029000F002401E007070005000F00000029000F0024013C0000003C000000000000000000000000000000000000000100000000000000</Binary>
</EventData>
</Event>
And i tried to translated the first log from English to Chinese, and hope you could understand.
So, how to solve this problem?
Any suggestions would very appreciated!
i am a Chinese user of Windows Server 2008 R2. And i noticed the auto-reboot of this server on around 8:45 am everyday recently. This server is for file-serving for my company and for financial database too.
The event log of this auto-reboot is as follows:
Log Name: System
From: EventLog
Date: 2016-07-20 08:45:44
Event ID: 6008
Task Category: none
Class: Error
Key Word: Classic
User: none
Computer: HFGKserver.hfgk.com.cn
Description:
上一次系统的 8:43:38 在 2016/7/20 上的关闭是意外的。
(It is exceptional for last system shutdown on 8:43:38 2016/7/20)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6008</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2016-07-20T00:45:44.000000000Z" />
<EventRecordID>96218</EventRecordID>
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security />
</System>
<EventData>
<Data>8:43:38</Data>
<Data>2016/7/20</Data>
<Data>
</Data>
<Data>
</Data>
<Data>385</Data>
<Data>
</Data>
<Data>
</Data>
<Binary>E00707000300140008002B0026008003E00707000300140000002B00260080033C0000003C000000000000000000000000000000000000000100000000000000</Binary>
</EventData>
</Event>
日志名称: System
来源: Microsoft-Windows-Kernel-Power
日期: 2016-07-19 08:47:53
事件 ID: 41
任务类别: (63)
级别: 关键
关键字: (2)
用户: SYSTEM
计算机: HFGKserver.hfgk.com.cn
描述:
系统在未首先正常关机的情况下重新启动。当系统停止响应、出现故障或意外断电时,会发生此错误。
事件 Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
<EventID>41</EventID>
<Version>2</Version>
<Level>1</Level>
<Task>63</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000002</Keywords>
<TimeCreated SystemTime="2016-07-19T00:47:53.406250000Z" />
<EventRecordID>95657</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="BugcheckCode">0</Data>
<Data Name="BugcheckParameter1">0x0</Data>
<Data Name="BugcheckParameter2">0x0</Data>
<Data Name="BugcheckParameter3">0x0</Data>
<Data Name="BugcheckParameter4">0x0</Data>
<Data Name="SleepInProgress">false</Data>
<Data Name="PowerButtonTimestamp">0</Data>
</EventData>
</Event>
日志名称: System
来源: Microsoft-Windows-Kernel-Power
日期: 2016-07-18 08:44:15
事件 ID: 41
任务类别: (63)
级别: 关键
关键字: (2)
用户: SYSTEM
计算机: HFGKserver.hfgk.com.cn
描述:
系统在未首先正常关机的情况下重新启动。当系统停止响应、出现故障或意外断电时,会发生此错误。
事件 Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
<EventID>41</EventID>
<Version>2</Version>
<Level>1</Level>
<Task>63</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000002</Keywords>
<TimeCreated SystemTime="2016-07-18T00:44:15.625000000Z" />
<EventRecordID>95401</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="BugcheckCode">0</Data>
<Data Name="BugcheckParameter1">0x0</Data>
<Data Name="BugcheckParameter2">0x0</Data>
<Data Name="BugcheckParameter3">0x0</Data>
<Data Name="BugcheckParameter4">0x0</Data>
<Data Name="SleepInProgress">false</Data>
<Data Name="PowerButtonTimestamp">0</Data>
</EventData>
</Event>
日志名称: System
来源: EventLog
日期: 2016-07-18 08:44:56
事件 ID: 6008
任务类别: 无
级别: 错误
关键字: 经典
用户: 暂缺
计算机: HFGKserver.hfgk.com.cn
描述:
上一次系统的 8:43:04 在 2016/7/18 上的关闭是意外的。
事件 Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6008</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2016-07-18T00:44:56.000000000Z" />
<EventRecordID>95394</EventRecordID>
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security />
</System>
<EventData>
<Data>8:43:04</Data>
<Data>2016/7/18</Data>
<Data>
</Data>
<Data>
</Data>
<Data>1526</Data>
<Data>
</Data>
<Data>
</Data>
<Binary>E00707000100120008002B0004008502E00707000100120000002B00040085023C0000003C000000000000000000000000000000000000000100000000000000</Binary>
</EventData>
</Event>
日志名称: System
来源: EventLog
日期: 2016-07-15 08:43:54
事件 ID: 6008
任务类别: 无
级别: 错误
关键字: 经典
用户: 暂缺
计算机: HFGKserver.hfgk.com.cn
描述:
上一次系统的 8:41:15 在 2016/7/15 上的关闭是意外的。
事件 Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6008</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2016-07-15T00:43:54.000000000Z" />
<EventRecordID>95062</EventRecordID>
<Channel>System</Channel>
<Computer>HFGKserver.hfgk.com.cn</Computer>
<Security />
</System>
<EventData>
<Data>8:41:15</Data>
<Data>2016/7/15</Data>
<Data>
</Data>
<Data>
</Data>
<Data>81227</Data>
<Data>
</Data>
<Data>
</Data>
<Binary>E007070005000F00080029000F002401E007070005000F00000029000F0024013C0000003C000000000000000000000000000000000000000100000000000000</Binary>
</EventData>
</Event>
And i tried to translated the first log from English to Chinese, and hope you could understand.
So, how to solve this problem?
Any suggestions would very appreciated!