DNS Errors 4015, 4004. Bad Reverse lookup Zone.

Posted on 2006-04-01
Last Modified: 2012-08-13
Dell SC1420, with SBS2003 (Standard Ed).
Single network adapter.
Internet connection via ADSL Router (Netgear DG834)

Server is PDC on small network (9 workstations).

Currently, DNS is logging error Event ID 4015 and 9999 at 63minute intervals.
Historically, it as also logged error 4004.
In the DNS Snap-In, two reverse lookup zones are present.
192.168.x.x - no errors
192.168.0.x - shown with red X and message that the zone could not be loaded and to check AD is functioning (it is).

ipconfig /all
Connection specific DNS suffix: balston.local
DHCP Enabled: No
IP Address:
Subnet Mask:
Default Gateway
DNS Servers:

nslookup balston.local
Server: UnKnown
Name: balston.local

Troubleshooting already tried:
1. Delete bad Reverse lookup Zone.
Not possible as it claims AD service is not available.

2. Uninstall DNS - reboot - Reinstall DNS
Previous configuration reappears including bad zone.

3. Use Change IP address Wizard to change server ip to
Bad reverse lookup zone persists.

4. Reconfigure DNS to have Forward Lookup zones only.
Bad reverse lookup zone persists.

5. Change DNS to non-AD integrated.
Cannot change bad zone to non-AD integ. because AD service not available.

Really don't know what to do now. On MS Technet an advisor suggested reformatting and reinstalling the entire server, which seems a bit extreme.

Surely the data for DNS Reverse Lookup Zone is stored somewhere (?registry) and can be deleted?


Question by:keithxp
    LVL 18

    Accepted Solution

    I have had the exact same problem. My Dell rep recommends reinstalling the operating system, perhaps a bit extreme. We were able to delete the reverse lookup zone by changing it to a non active directory zone. However, when the server is rebooted, the zone comes back and it is active directory, and the errors come back.  Wish someone had an answer to this one because I am not looking forward to reinstalling the operating system.
    I managed to fix this problem. I followed a method I found in a tech article that I don't have the link for (I am at home now!) though I will be able to give you the link on Monday.
    In short, I used the old NT4-era shut-everything-down-uninstall-reinstall-restart process - in which everyone of those dashes is a full power-off reboot! If I had a rubber chicken I would wave that over the server as well, just to be sure! ;-)
    What I figured was that the older network I had connected to had somehow got remembered by the system, so I first shut down the DNS processes, server and workstation, took the server physically off the network, uninstalled the MS DNS, and this next bit was the crucial bit...
    Open the Server Manager, and open the Active Directory section. Under the View menu, change the view to Advanced. Many more directories show up, one of which should be MSDNS. It was under this tree that I found a reference to the old subnet that kept 'magically' reappearing. I deleted this reference (after writing down the settings, just in case I was doing Something Bad). I also did a hunt through the registry for that subnet just to be sure I had got everything.
    Another reboot, and I reinstalled the DNS - and it all came back up! I barely had to do a thing, just add a reverse-lookup zone for our new subnet - and the wizard just about did that for me. The full-log nightmare was gone!
    As I mentioned, I am at home, and that is my recollection of what I did. I kept a reference to the tech note I found at work; I can send that on Monday. If you are feeling brave before then, I would advise doing a full backup of everything - after all I am an Architect, not an IT professional!

    Forums solution:

    Author Comment

    Well our situations are even more simple, I am a Landscape Architect and not an IT professional!!

    Found the entry ( in MicrosoftDNS using the Advanced View as you suggest.

    Rather alarmingly, when I go to delete this I get a message:

    Are you sure you want to delete this object?
    The selected object has other associated objects. Select those associated objects that you also want to delete.

    In the window I have
    Mark each selected Exchange mailbox for deletion.

    This is greyed out and ticked - I cannot untick it.

    Am I going to delete all my mailboxes?



    Author Comment

    I meant our situations are even more alike....

    Author Comment

    Decided to take the plunge, backed up all the exchange mailboxes and attempted to delete the entry.

    Unfortunately, I was not permitted to delete it because:
    "The directory service encountered an unknown error."


    I was allowed to rename it, however, to "X". I was also allowed to move it to the System folder under AD. When I reinstalled DNS, the culprit zone did not appear.

    The DNS event log is error free...  A bit of a cludge, but everything is working. I'll have to live with that dodgy entry in AD lurking.


    LVL 10

    Expert Comment


    Author Comment

    Thanks - I am very familiar with that entry on I could almost recite it...

    Featured Post

    Free Trending Threat Insights Every Day

    Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

    Join & Write a Comment

    Suggested Solutions

    Occasionally you run into the website or two that will not resolve properly using your own DNS servers.  Some people simply set up global forwarders for their DNS server.  I don’t recommend doing this because it can cause problems resolving addresse…
    Data center, now-a-days, is referred as the home of all the advanced technologies. In-fact, most of the businesses are now establishing their entire organizational structure around the IT capabilities.
    After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
    In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor ( If you're interested in additional methods for monitoring bandwidt…

    728 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    19 Experts available now in Live!

    Get 1:1 Help Now