I have just taken over administration of a network and my first thoughts are the amount of 482 events occurring on the domain controllers. One of the DC is running Exchange 2007. Any assistance would be appreciated. The events occur all day long, and I have no idea if anything changed recently to spawn these events as I just took over last week. See below
Alert Time: 2014-01-13 14:20:52Z
Event Time: 07:19:12 PM 13-Jan-2014 UTC
Description: lsass (2684) An attempt to write to the file "\\?\GLOBALROOT\Device\HarddiskVolumeShadowCopy3188\WINDOWS\NTDS\edb.log" at offset 5227520 (0x00000000004fc400) for 512 (0x00000200) bytes failed after 0 seconds with system error 19 (0x00000013): "The media is write protected. ". The write operation will fail with error -1032 (0xfffffbf8). If this error persists then the file may be damaged and may need to be restored from a previous backup.