


Duration: 4 seconds.Ĥ 10:44:41 wazuh-modulesd:syscollector: INFO: Evaluation finished.Ĥ 10:44:41 rootcheck: INFO: Starting rootcheck scan.Ĥ 10:44:46 rootcheck: INFO: Ending rootcheck scan.Ĥ 11:44:42 wazuh-modulesd:syscollector: INFO: Starting evaluation.Ĥ 11:45:00 wazuh-modulesd:syscollector: INFO: Evaluation finished.Ĥ 12:45:02 wazuh-modulesd:syscollector: INFO: Starting evaluation.Ĥ 12:45:20 wazuh-modulesd:syscollector: INFO: Evaluation finished.Ĥ 13:45:22 wazuh-modulesd:syscollector: INFO: Starting evaluation.Ĥ 13:45:42 wazuh-modulesd:syscollector: INFO: Evaluation finished.Ĥ 14:45:43 wazuh-modulesd:syscollector: INFO: Starting evaluation.Ĥ 14:46:02 wazuh-modulesd:syscollector: INFO: Evaluation finished.Ĥ 15:17:32 wazuh-agent: ERROR: Could not get message for (Application)Ĥ 15:31:17 wazuh-agent: INFO: Received exit signal.Ĥ 15:31:17 wazuh-agent: INFO: Set pending exit signal.Ĥ 15:31:17 wazuh-modulesd:syscollector: INFO: Stop received for Syscollector.Ĥ 15:31:17 wazuh-modulesd:syscollector: INFO: Module finished.Ĥ 15:31:17 wazuh-agent: INFO: Using notify time: 10 and max time to reconnect: 60Ĥ 15:31:18 wazuh-agent: INFO: (1410): Reading authentication keys file.Ĥ 15:31:18 wazuh-agent: INFO: Started (pid: 10216).Ĥ 15:31:18 wazuh-agent: INFO: Using AES as encryption method.Ĥ 15:31:18 wazuh-agent: INFO: Trying to connect to server (x.x.x.x:1514/tcp).Ĥ 15:31:18 wazuh-agent: INFO: (6001): File integrity monitoring disabled.Ĥ 15:31:18 wazuh-agent: WARNING: The check_winaudit option is deprecated in favor of the SCA module.Ĥ 15:31:18 rootcheck: INFO: Started (pid: 10216).Ĥ 15:31:18 wazuh-agent: INFO: (4102): Connected to the server (x.x.x.x:1514/tcp).Ĥ 15:31:18 wazuh-modulesd:agent-upgrade: INFO: (8153): Module Agent Upgrade started.Ĥ 15:31:18 wazuh-agent: INFO: Windows version is 6.0 or newer. Exiting.Ĥ 10:44:34 wazuh-agent: INFO: (1951): Analyzing event log: 'Security'.Ĥ 10:44:34 sca: INFO: Loaded policy 'C:\Program Files (x86)\ossec-agent\ruleset\sca\sca_win_audit.yml'Ĥ 10:44:34 wazuh-agent: INFO: (1951): Analyzing event log: 'System'.Ĥ 10:44:34 sca: INFO: Starting Security Configuration Assessment scan.Ĥ 10:44:34 wazuh-agent: INFO: (1950): Analyzing file: 'active-response\active-responses.log'.Ĥ 10:44:34 sca: INFO: Starting evaluation of policy: 'C:\Program Files (x86)\ossec-agent\ruleset\sca\sca_win_audit.yml'Ĥ 10:44:34 wazuh-agent: INFO: Started (pid: 11708).Ĥ 10:44:34 wazuh-modulesd:syscollector: INFO: Module started.Ĥ 10:44:34 wazuh-modulesd:syscollector: INFO: Starting evaluation.Ĥ 10:44:38 sca: INFO: Evaluation finished for policy 'C:\Program Files (x86)\ossec-agent\ruleset\sca\sca_win_audit.yml'Ĥ 10:44:38 sca: INFO: Security Configuration Assessment scan finished. Exiting.Ĥ 10:44:34 wazuh-modulesd:ciscat: INFO: Module disabled. (Microsoft Windows Server 2008 R2 Enterprise Edition (full) Service Pack 1 - Wazuh v4.2.5).Ĥ 10:44:34 wazuh-agent: INFO: (1951): Analyzing event log: 'Application'.Ĥ 10:44:34 wazuh-modulesd:osquery: INFO: Module disabled. 4 10:44:34 wazuh-agent: INFO: Received exit signal.Ĥ 10:44:34 wazuh-agent: INFO: Set pending exit signal.Ĥ 10:44:34 wazuh-modulesd:syscollector: INFO: Stop received for Syscollector.Ĥ 10:44:34 wazuh-agent: INFO: Using notify time: 10 and max time to reconnect: 60Ĥ 10:44:34 wazuh-agent: INFO: (1410): Reading authentication keys file.Ĥ 10:44:34 wazuh-agent: INFO: (1350): Active response disabled.Ĥ 10:44:34 wazuh-agent: INFO: Using AES as encryption method.Ĥ 10:44:34 wazuh-agent: INFO: Trying to connect to server (x.x.x.x:1514/tcp).Ĥ 10:44:34 wazuh-agent: INFO: (6001): File integrity monitoring disabled.Ĥ 10:44:34 wazuh-agent: WARNING: The check_winaudit option is deprecated in favor of the SCA module.Ĥ 10:44:34 rootcheck: INFO: Started (pid: 11708).Ĥ 10:44:34 wazuh-agent: INFO: (4102): Connected to the server (x.x.x.x:1514/tcp).Ĥ 10:44:34 wazuh-modulesd:agent-upgrade: INFO: (8153): Module Agent Upgrade started.Ĥ 10:44:34 wazuh-agent: INFO: Windows version is 6.0 or newer.
