Copied the logs for a short period. Can this help?
12/15/16
3:31:54.878 PM
12-15-2016 15:31:54.878 +0000 WARN FieldAliaser - Invalid field alias specification in stanza 'ri:pas:application': FIELDALIAS-event_id='event_id AS event_id'
host = prd-p-59vhkzlq9h5s source = /opt/splunk/var/log/splunk/splunkd.log sourcetype = splunkd
12/15/16
3:31:19.941 PM
12-15-2016 15:31:19.941 +0000 WARN SearchOperator:kv - IndexOutOfBounds invalid The FORMAT capturing group id: id=3, transform_name='error_info'
host = prd-p-59vhkzlq9h5s source = /opt/splunk/var/log/splunk/splunkd.log sourcetype = splunkd
12/15/16
3:31:19.888 PM
12-15-2016 15:31:19.888 +0000 WARN SearchOperator:kv - Invalid key-value parser, ignoring it, transform_name='mscs_counter_name'
host = prd-p-59vhkzlq9h5s source = /opt/splunk/var/log/splunk/splunkd.log sourcetype = splunkd
12/15/16
3:31:19.833 PM
12-15-2016 15:31:19.833 +0000 WARN FieldAliaser - Invalid field alias specification in stanza 'ri:pas:application': FIELDALIAS-event_id='event_id AS event_id'
host = prd-p-59vhkzlq9h5s source = /opt/splunk/var/log/splunk/splunkd.log sourcetype = splunkd
12/15/16
3:31:02.341 PM
12-15-2016 15:31:02.341 +0000 WARN SearchOperator:kv - IndexOutOfBounds invalid The FORMAT capturing group id: id=3, transform_name='error_info'
host = prd-p-59vhkzlq9h5s source = /opt/splunk/var/log/splunk/splunkd.log sourcetype = splunkd
12/15/16
3:31:02.227 PM
12-15-2016 15:31:02.227 +0000 WARN SearchOperator:kv - Invalid key-value parser, ignoring it, transform_name='mscs_counter_name'
host = prd-p-59vhkzlq9h5s source = /opt/splunk/var/log/splunk/splunkd.log sourcetype = splunkd
12/15/16
3:31:02.103 PM
12-15-2016 15:31:02.103 +0000 WARN FieldAliaser - Invalid field alias specification in stanza 'ri:pas:application': FIELDALIAS-event_id='event_id AS event_id'
... View more