Good afternoon, how are you activating the <syscheck>
on a server but now my agent stops every moment and indicates the following error. please if you could help me
2021/03/12 14:59:06 rootcheck: INFO: Started (pid: 6304).
2021/03/12 14:59:06 ossec-agent: INFO: Trying to connect to server (xxxxxx:1514/tcp).
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\batfile', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\batfile'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\cmdfile', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\cmdfile'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\comfile', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\comfile'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\exefile', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\exefile'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\piffile', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\piffile'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\AllFilesystemObjects', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\AllFilesystemObjects'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\Directory', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\Directory'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\Folder', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\Folder'.
2021/03/12 14:59:06 ossec-agent: INFO: (4102): Connected to the server (xxxxxx:1514/tcp).
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\Protocols [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\Protocols'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\Protocols', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Classes\Protocols'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Policies [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Policies'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Policies', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Policies'.
2021/03/12 14:59:06 ossec-agent: INFO: Windows version is 6.0 or newer. (Microsoft Windows Server 2016 Standard [Ver: 10.0.14393] - Wazuh v4.1.1).
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Security', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 wazuh-modulesd:agent-upgrade: INFO: (8153): Module Agent Upgrade started.
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Security'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer'.
2021/03/12 14:59:06 wazuh-modulesd:osquery: INFO: Module disabled. Exiting...
2021/03/12 14:59:06 wazuh-modulesd:syscollector: INFO: Module started.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Session Manager\KnownDLLs', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Session Manager\KnownDLLs'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SecurePipeServers\winreg', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SecurePipeServers\winreg'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnceEx', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnceEx'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\URL [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\URL'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\URL', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\URL'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies'.
2021/03/12 14:59:06 ossec-agent: INFO: (1951): Analyzing event log: 'Application'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies'.
2021/03/12 14:59:06 ossec-agent: INFO: (1951): Analyzing event log: 'Security'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon'.
2021/03/12 14:59:06 ossec-agent: INFO: (1951): Analyzing event log: 'System'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon'.
2021/03/12 14:59:06 sca: INFO: Module started.
2021/03/12 14:59:06 wazuh-modulesd:ciscat: INFO: Module disabled. Exiting...
2021/03/12 14:59:06 ossec-agent: INFO: (1950): Analyzing file: 'active-response\active-responses.log'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components [x64]', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components'.
2021/03/12 14:59:06 ossec-agent: INFO: (6002): Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components', with options 'size | permissions | owner | group | mtime | hash_md5 | hash_sha1 | hash_sha256'
2021/03/12 14:59:06 sca: INFO: Loaded policy 'C:\Program Files (x86)\ossec-agent\ruleset\sca\sca_win_audit.yml'
2021/03/12 14:59:06 ossec-agent: INFO: (6356): Maximum file size limit to generate diff information configured to '51200 KB' for 'HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components'.
2021/03/12 14:59:06 sca: INFO: Starting Security Configuration Assessment scan.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\programdata\microsoft\windows\start menu\programs\startup', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | realtime'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\windows', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | scheduled'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\windows\sysnative', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | scheduled'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\windows\sysnative\drivers\etc', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | scheduled'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\windows\sysnative\wbem', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | scheduled'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\windows\sysnative\windowspowershell\v1.0', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | scheduled'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\windows\system32', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | scheduled'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\windows\system32\drivers\etc', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | scheduled'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\windows\system32\wbem', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | scheduled'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'c:\windows\system32\windowspowershell\v1.0', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | scheduled'.
2021/03/12 14:59:06 ossec-agent: INFO: (6003): Monitoring path: 'd:\data\documentos', with options 'size | permissions | owner | group | mtime | inode | hash_md5 | hash_sha1 | hash_sha256 | attributes | realtime'.
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'file' entry 'c:\programdata\microsoft\windows\start menu\programs\startup\desktop.ini'
2021/03/12 14:59:06 ossec-agent: INFO: (6207): Ignore 'file' sregex '.log$|.htm$|.jpg$|.png$|.chm$|.pnf$|.evtx$'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\Security\Policy\Secrets'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\Security\SAM\Domains\Account\Users'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\MpsSvc\Parameters\AppCs'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\MpsSvc\Parameters\PortKeywords\DHCP'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\MpsSvc\Parameters\PortKeywords\IPTLSIn'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\MpsSvc\Parameters\PortKeywords\IPTLSOut'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\MpsSvc\Parameters\PortKeywords\RPC-EPMap'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\MpsSvc\Parameters\PortKeywords\Teredo'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PolicyAgent\Parameters\Cache'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnceEx'
2021/03/12 14:59:06 ossec-agent: INFO: (6206): Ignore 'registry' entry 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ADOVMPPackage\Final'
2021/03/12 14:59:06 ossec-agent: INFO: (6207): Ignore 'registry' sregex '\Enum$'
2021/03/12 14:59:06 ossec-agent: INFO: Started (pid: 6304).
2021/03/12 14:59:06 sca: INFO: Starting evaluation of policy: 'C:\Program Files (x86)\ossec-agent\ruleset\sca\sca_win_audit.yml'
2021/03/12 14:59:06 ossec-agent: INFO: Started (pid: 6304).
2021/03/12 14:59:06 rootcheck: INFO: Starting rootcheck scan.
2021/03/12 14:59:06 ossec-agent: INFO: (6000): Starting daemon...
2021/03/12 14:59:06 ossec-agent: INFO: (6010): File integrity monitoring scan frequency: 43200 seconds
2021/03/12 14:59:06 ossec-agent: INFO: (6008): File integrity monitoring scan started.
2021/03/12 14:59:07 wazuh-modulesd:syscollector: INFO: Starting evaluation.
2021/03/12 14:59:09 wazuh-modulesd:syscollector: INFO: Evaluation finished.
2021/03/12 14:59:09 sca: INFO: Evaluation finished for policy 'C:\Program Files (x86)\ossec-agent\ruleset\sca\sca_win_audit.yml'
2021/03/12 14:59:09 sca: INFO: Security Configuration Assessment scan finished. Duration: 3 seconds.
2021/03/12 14:59:11 rootcheck: INFO: Ending rootcheck scan.
2021/03/12 15:42:28 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx\xxxxxxxxxxx v4.xlsx'. Error code: 32
2021/03/12 15:42:28 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx\pxxxxxxxxx 2021 v2.pptx'. Error code: 32
2021/03/12 15:42:29 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx\~$xxxxxxxxxx 2021 v2.pptx'. Error code: 32
2021/03/12 15:42:29 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx\~$xxxxxxxxxxx v4.xlsx'. Error code: 32
2021/03/12 15:59:07 wazuh-modulesd:syscollector: INFO: Starting evaluation.
2021/03/12 15:59:13 wazuh-modulesd:syscollector: INFO: Evaluation finished.
2021/03/12 16:40:19 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxxxxxx\12. tax 2020-12\xxxxx.xlsx'. Error code: 32
2021/03/12 16:40:21 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxxxxxxxxxxxx\~$lxxxx.xlsx'. Error code: 32
2021/03/12 16:59:07 wazuh-modulesd:syscollector: INFO: Starting evaluation.
2021/03/12 16:59:10 wazuh-modulesd:syscollector: INFO: Evaluation finished.
2021/03/12 17:15:26 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxx\01.xxxxxxx 2021.xlsx'. Error code: 32
2021/03/12 17:15:39 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxx\07. xxxxxxx 2021.xlsx'. Error code: 32
2021/03/12 17:15:40 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxx\~$07. xxxxxx 2021.xlsx'. Error code: 32
2021/03/12 17:15:46 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxx\05. xxxxxx.xlsx'. Error code: 32
2021/03/12 17:15:46 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxx\~$05. xxxxxxxx.xlsx'. Error code: 32
2021/03/12 17:15:49 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxx\01.1 xxxxxxxxxxxxxxxxxxxxxxxxxx.xlsx'. Error code: 32
2021/03/12 17:15:50 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxx\03.- xxxxxxxx.xlsx'. Error code: 32
2021/03/12 17:15:50 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxx\~$03.- xxxxxx.xlsx'. Error code: 32
2021/03/12 17:15:50 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxx\03.-xxxxxxxx.xlsx'. Error code: 32
2021/03/12 17:19:10 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxx\xxxxxxx.xlsx'. Error code: 32
2021/03/12 17:19:10 ossec-agent: ERROR: (6716): Could not open handle for 'd:\xxxxxx\~$3.- xxxxxx.xlsx'. Error code: 32
2021/03/12 17:19:25 ossec-agent: INFO: Received exit signal.
2021/03/12 17:19:25 ossec-agent: INFO: Exiting...
2021/03/12 17:19:25 ossec-agent: CRITICAL: At pthread_rwlock_wrlock(): Invalid argument
2021/03/12 17:19:25 ossec-agent: INFO: (1314): Shutdown received. Deleting responses.