Getting NTFS File Sysytem Driver error. It says severity normal. Ill try to get some screen shots. I don't get an actual error in the Widows Server log. It just says job started then states when I stop it. I have some logs also. Log #4 is interesting. Shows a VSS error in Windows application log.. Ill try to get this over to you
Log Name: System
Source: Ntfs
Date: 1/8/2015 4:37:45 AM
Event ID: 55
Task Category: None
Level: Error
Keywords:
User: SYSTEM
Computer: Jackie-PC
Description:
A corruption was discovered in the file system structure on volume ??.
The exact nature of the corruption is unknown. The file system structures need to be scanned online.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Ntfs" Guid="{DD70BC80-EF44-421B-8AC3-CD31DA613A4E}" />
<EventID>55</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2015-01-08T09:37:45.361887800Z" />
<EventRecordID>683489</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8360" />
<Channel>System</Channel>
<Computer>Jackie-PC</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="DriveName">??</Data>
<Data Name="DeviceName">
</Data>
<Data Name="CorruptionState">0x0</Data>
<Data Name="HeaderFlags">0x2</Data>
<Data Name="Severity">Normal</Data>
<Data Name="Origin">File System Driver</Data>
<Data Name="Verb">Force Proactive Scan</Data>
<Data Name="Description">The exact nature of the corruption is unknown. The file system structures need to be scanned online.
</Data>
<Data Name="Signature">0xe2b3f0fb</Data>
<Data Name="Outcome">Pseudo Verb</Data>
<Data Name="SampleLength">0</Data>
<Data Name="SampleData">
</Data>
<Data Name="SourceFile">0x12</Data>
<Data Name="SourceLine">3144</Data>
<Data Name="SourceTag">7</Data>
<Data Name="CallStack">Ntfs+0x131c0c, Ntfs+0x82090, Ntfs+0xfe4c, ntoskrnl+0x7dacc, ntoskrnl+0x101440, ntoskrnl+0x1570c6</Data>
</EventData>
</Event>
Log Name: Application
Source: VSS
Date: 1/8/2015 1:31:01 AM
Event ID: 8194
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Jackie-PC
Description:
Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
. This is often caused by incorrect security settings in either the writer or requestor process.
Operation:
Gathering Writer Data
Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {eb62fb70-31f3-412c-bb15-76d82d8c3ddc}
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="VSS" />
<EventID Qualifiers="0">8194</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2015-01-08T06:31:01.000000000Z" />
<EventRecordID>196038</EventRecordID>
<Channel>Application</Channel>
<Computer>Jackie-PC</Computer>
<Security />
</System>
<EventData>
<Data>0x80070005, Access is denied.
</Data>
<Data>
Operation:
Gathering Writer Data
Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {eb62fb70-31f3-412c-bb15-76d82d8c3ddc}</Data>
<Binary>2D20436F64653A20575254575254494330303030313239352D2043616C6C3A20575254575254494330303030313234392D205049443A202030303030313636302D205449443A202030303030353230342D20434D443A2020433A5C57494E444F57535C73797374656D33325C737663686F73742E657865202D6B204E6574776F726B53657276696365202020202020202D20557365723A204E616D653A204E5420415554484F524954595C4E4554574F524B20534552564943452C205349443A532D312D352D3230</Binary>
</EventData>
</Event>
Log Name: WSSG
Source: Windows Server
Date: 1/8/2015 1:31:01 AM
Event ID: 512
Task Category: Backup
Level: Information
Keywords: Classic
User: N/A
Computer: Jackie-PC
Description:
Backup job 36 started on SERVER2011.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Windows Server" />
<EventID Qualifiers="20479">512</EventID>
<Level>4</Level>
<Task>2</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2015-01-08T06:31:01.000000000Z" />
<EventRecordID>998</EventRecordID>
<Channel>WSSG</Channel>
<Computer>Jackie-PC</Computer>
<Security />
</System>
<EventData>
<Data>36</Data>
<Data>SERVER2011</Data>
</EventData>
</Event>
Log Name: WSSG
Source: Windows Server
Date: 1/8/2015 8:57:28 AM
Event ID: 517
Task Category: Backup
Level: Error
Keywords: Classic
User: N/A
Computer: Jackie-PC
Description:
Backup of volume D: to SERVER2011 did not succeed. Reason: Operation cancelled by client
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Windows Server" />
<EventID Qualifiers="53247">517</EventID>
<Level>2</Level>
<Task>2</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2015-01-08T13:57:28.000000000Z" />
<EventRecordID>999</EventRecordID>
<Channel>WSSG</Channel>
<Computer>Jackie-PC</Computer>
<Security />
</System>
<EventData>
<Data>36</Data>
<Data>D:</Data>
<Data>SERVER2011</Data>
<Data>Operation cancelled by client</Data>
</EventData>
</Event>