If you're using a tool, you'd have to reach the vendor to find out exactly what it does during the peneration testing.
No idea what it did to cause that problem, I'd probably try to bounce the CCM service, and if that does not help, restart the whole server.
Really no way to tell you what logs to look at, without knowing what your penetration testing was doing.
HTH
java
if this helps, please rate