Dashboards & Visualizations

Why do I see strange characters in Splunk events?

dahlberg
New Member

I'm looking over an XML log and in the Splunk viewer there are events with long strings of the following:

'\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00'

I can't seem to find this string and/or key combination anywhere within the actual raw log files. Any idea why this might be?

Thanks,
Mike

Tags (2)
0 Karma

aakwah
Builder

Hello,

This usually happens when there are hidden .swp files created while you are opening the files by an editor.

Regards

0 Karma

ddrillic
Ultra Champion

Maybe the following can help - Why are some of the events garbled with "\x00"?

0 Karma
Get Updates on the Splunk Community!

Buttercup Games: Further Dashboarding Techniques

Hello! We are excited to kick off a new series of blogs from SplunkTrust member ITWhisperer, who demonstrates ...

Message Parsing in SOCK

Introduction This blog post is part of an ongoing series on SOCK enablement. In this blog post, I will write ...

Exploring the OpenTelemetry Collector’s Kubernetes annotation-based discovery

We’ve already explored a few topics around observability in a Kubernetes environment -- Common Failures in a ...