I have a application server that has been getting lots (1 or 2 per second) of the following events in the Security Log and it doesn't have any info to tell me where it is coming from. Can anyone help?
Log Name: Security
Source: Microsoft-Windows-Security-Auditing
Date: 6/6/2014 3:02:45 PM
Event ID: 4625
Task Category: Logon
Level: Information
Keywords: Audit Failure
User: N/A
Computer: Servername.domain.com
Description:
An account failed to log on.
Subject:
Security ID:NULL SID
Account Name:-
Account Domain:-
Logon ID:0x0
Logon Type:3
Account For Which Logon Failed:
Security ID:NULL SID
Account Name:
Account Domain:
Failure Information:
Failure Reason:An Error occured during Logon.
Status:0xc000006d
Sub Status:0x80090325
Process Information:
Caller Process ID:0x0
Caller Process Name:-
Network Information:
Workstation Name:-
Source Network Address:-
Source Port:-
...