Vino's Event Viewer v01c run on Windows 2008 in English Report run at 17/02/2012 2:43:35 PM Note: All dates below are in the format dd/mm/yyyy ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Critical Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Error Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Log: 'Application' Date/Time: 17/02/2012 7:39:21 PM Type: Error Category: 100 Event: 1000 Source: Application Error Faulting application name: aswMBR.exe, version: 0.9.9.1532, time stamp: 0x4f216fd3 Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec49b8f Exception code: 0xc0000005 Fault offset: 0x0002e41b Faulting process id: 0x3bc Faulting application start time: 0x01ccedab3e0ca1c6 Faulting application path: C:\Users\Mayra\Desktop\To Fix PC\aswMBR.exe Faulting module path: C:\Windows\SysWOW64\ntdll.dll Report Id: 162b352e-599f-11e1-900a-00016c073756 Log: 'Application' Date/Time: 17/02/2012 7:34:11 PM Type: Error Category: 100 Event: 1000 Source: Application Error Faulting application name: aswMBR.exe, version: 0.9.9.1532, time stamp: 0x4f216fd3 Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec49b8f Exception code: 0xc0000005 Fault offset: 0x0002e41b Faulting process id: 0x344 Faulting application start time: 0x01ccedaa77734b86 Faulting application path: C:\Users\Mayra\Desktop\To Fix PC\aswMBR.exe Faulting module path: C:\Windows\SysWOW64\ntdll.dll Report Id: 5d716407-599e-11e1-900a-00016c073756 Log: 'Application' Date/Time: 17/02/2012 7:19:09 PM Type: Error Category: 100 Event: 1000 Source: Application Error Faulting application name: aswMBR.exe, version: 0.9.9.1532, time stamp: 0x4f216fd3 Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec49b8f Exception code: 0xc0000005 Fault offset: 0x0002e41b Faulting process id: 0x22c Faulting application start time: 0x01cceda86a96edd2 Faulting application path: C:\Users\Mayra\Desktop\To Fix PC\aswMBR.exe Faulting module path: C:\Windows\SysWOW64\ntdll.dll Report Id: 43d7e91b-599c-11e1-900a-00016c073756 Log: 'Application' Date/Time: 17/02/2012 8:32:14 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 17/02/2012 3:30:52 AM Type: Error Category: 101 Event: 1002 Source: Application Hang The program chrome.exe version 17.0.963.46 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: a4c Start Time: 01cced1fbb8881e7 Termination Time: 12 Application Path: C:\Users\Mayra\AppData\Local\Google\Chrome\Application\chrome.exe Report Id: c8994523-5917-11e1-8b11-00016c073756 Log: 'Application' Date/Time: 16/02/2012 8:41:42 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 15/02/2012 8:32:10 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 14/02/2012 8:31:55 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 13/02/2012 8:31:50 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 12/02/2012 8:31:52 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 11/02/2012 8:32:05 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 10/02/2012 8:31:54 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 09/02/2012 9:49:56 PM Type: Error Category: 101 Event: 1002 Source: Application Hang The program DirectFTP.exe version 6.2.0.62 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: a70 Start Time: 01cce774905cf0ed Termination Time: 24 Application Path: C:\Program Files (x86)\CoffeeCup Software\CoffeeCup Direct FTP\DirectFTP.exe Report Id: ff6771b4-5367-11e1-9e4d-00016c073756 Log: 'Application' Date/Time: 09/02/2012 9:48:28 PM Type: Error Category: 101 Event: 1002 Source: Application Hang The program DirectFTP.exe version 6.2.0.62 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 2a0 Start Time: 01cce77454aa8ad8 Termination Time: 11 Application Path: C:\Program Files (x86)\CoffeeCup Software\CoffeeCup Direct FTP\DirectFTP.exe Report Id: cb17698d-5367-11e1-9e4d-00016c073756 Log: 'Application' Date/Time: 09/02/2012 10:09:28 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 09/02/2012 4:21:49 AM Type: Error Category: 101 Event: 1002 Source: Application Hang The program firefox.exe version 10.0.0.4411 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: df8 Start Time: 01cce6c95bee1d04 Termination Time: 17 Application Path: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Report Id: 938e502b-52d5-11e1-bff5-00016c073756 Log: 'Application' Date/Time: 08/02/2012 7:14:06 PM Type: Error Category: 0 Event: 4096 Source: VSTO 3.0 The event description cannot be found. Log: 'Application' Date/Time: 08/02/2012 7:11:59 PM Type: Error Category: 0 Event: 4096 Source: VSTO 3.0 The event description cannot be found. Log: 'Application' Date/Time: 08/02/2012 8:31:00 AM Type: Error Category: 0 Event: 72 Source: SideBySide Activation context generation failed for "c:\program files\microsoft security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft security client\MSESysprep.dll" on line 10. The element imaging appears as a child of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by this version of Windows. Log: 'Application' Date/Time: 07/02/2012 9:10:52 PM Type: Error Category: 0 Event: 4104 Source: Windows Backup The backup was not successful. The error is: The backup storage location is invalid. You cannot use a volume that is included in the backup as a storage location. (0x80780040). ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Warning Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Log: 'Application' Date/Time: 17/02/2012 8:36:46 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 15 user registry handles leaked from \Registry\User\S-1-5-21-659118132-2395072876-1647836114-1000: Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\My Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\CA Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Disallowed Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Root Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\SmartCardRoot Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\trust Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\TrustedPeople Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1944 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Log: 'Application' Date/Time: 17/02/2012 6:47:30 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 15 user registry handles leaked from \Registry\User\S-1-5-21-659118132-2395072876-1647836114-1000: Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\My Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\CA Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Disallowed Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Root Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\SmartCardRoot Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\trust Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\TrustedPeople Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1676 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Log: 'Application' Date/Time: 17/02/2012 6:15:20 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 15 user registry handles leaked from \Registry\User\S-1-5-21-659118132-2395072876-1647836114-1000: Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\My Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\CA Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Disallowed Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Root Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\SmartCardRoot Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\trust Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\TrustedPeople Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1776 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Log: 'Application' Date/Time: 17/02/2012 11:13:03 AM Type: Warning Category: 3 Event: 3036 Source: Microsoft-Windows-Search The content source cannot be accessed. Context: Application, SystemIndex Catalog Details: A server error occurred. Check that the server is available. (HRESULT : 0x80041206) (0x80041206) Log: 'Application' Date/Time: 16/02/2012 11:12:59 AM Type: Warning Category: 3 Event: 3036 Source: Microsoft-Windows-Search The content source cannot be accessed. Context: Application, SystemIndex Catalog Details: A server error occurred. Check that the server is available. (HRESULT : 0x80041206) (0x80041206) Log: 'Application' Date/Time: 15/02/2012 11:12:57 AM Type: Warning Category: 3 Event: 3036 Source: Microsoft-Windows-Search The content source cannot be accessed. Context: Application, SystemIndex Catalog Details: A server error occurred. Check that the server is available. (HRESULT : 0x80041206) (0x80041206) Log: 'Application' Date/Time: 14/02/2012 11:12:56 AM Type: Warning Category: 3 Event: 3036 Source: Microsoft-Windows-Search The content source cannot be accessed. Context: Application, SystemIndex Catalog Details: A server error occurred. Check that the server is available. (HRESULT : 0x80041206) (0x80041206) Log: 'Application' Date/Time: 11/02/2012 8:41:52 PM Type: Warning Category: 3 Event: 3036 Source: Microsoft-Windows-Search The content source cannot be accessed. Context: Application, SystemIndex Catalog Details: A server error occurred. Check that the server is available. (HRESULT : 0x80041206) (0x80041206) Log: 'Application' Date/Time: 11/02/2012 11:13:28 AM Type: Warning Category: 1 Event: 1020 Source: ASP.NET 4.0.30319.0 Updates to the IIS metabase were aborted because IIS is either not installed or is disabled on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i. Log: 'Application' Date/Time: 11/02/2012 11:13:17 AM Type: Warning Category: 1 Event: 1020 Source: ASP.NET 4.0.30319.0 Updates to the IIS metabase were aborted because IIS is either not installed or is disabled on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i. Log: 'Application' Date/Time: 11/02/2012 11:02:58 AM Type: Warning Category: 1 Event: 1020 Source: ASP.NET 4.0.30319.0 Updates to the IIS metabase were aborted because IIS is either not installed or is disabled on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i. Log: 'Application' Date/Time: 11/02/2012 11:02:47 AM Type: Warning Category: 1 Event: 1020 Source: ASP.NET 4.0.30319.0 Updates to the IIS metabase were aborted because IIS is either not installed or is disabled on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i. Log: 'Application' Date/Time: 10/02/2012 8:41:47 PM Type: Warning Category: 3 Event: 3036 Source: Microsoft-Windows-Search The content source cannot be accessed. Context: Application, SystemIndex Catalog Details: A server error occurred. Check that the server is available. (HRESULT : 0x80041206) (0x80041206) Log: 'Application' Date/Time: 10/02/2012 8:04:46 PM Type: Warning Category: 3 Event: 3036 Source: Microsoft-Windows-Search The content source cannot be accessed. Context: Application, SystemIndex Catalog Details: A server error occurred. Check that the server is available. (HRESULT : 0x80041206) (0x80041206) Log: 'Application' Date/Time: 10/02/2012 8:02:45 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 15 user registry handles leaked from \Registry\User\S-1-5-21-659118132-2395072876-1647836114-1000: Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\My Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\CA Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Disallowed Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Root Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\SmartCardRoot Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\trust Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\TrustedPeople Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1840 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Log: 'Application' Date/Time: 10/02/2012 6:45:33 PM Type: Warning Category: 3 Event: 3036 Source: Microsoft-Windows-Search The content source cannot be accessed. Context: Application, SystemIndex Catalog Details: A server error occurred. Check that the server is available. (HRESULT : 0x80041206) (0x80041206) Log: 'Application' Date/Time: 09/02/2012 6:36:16 PM Type: Warning Category: 3 Event: 3036 Source: Microsoft-Windows-Search The content source cannot be accessed. Context: Application, SystemIndex Catalog Details: A server error occurred. Check that the server is available. (HRESULT : 0x80041206) (0x80041206) Log: 'Application' Date/Time: 09/02/2012 6:34:28 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 15 user registry handles leaked from \Registry\User\S-1-5-21-659118132-2395072876-1647836114-1000: Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\My Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\CA Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Disallowed Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Root Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\SmartCardRoot Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\trust Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\TrustedPeople Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1888 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Log: 'Application' Date/Time: 09/02/2012 4:28:18 AM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 15 user registry handles leaked from \Registry\User\S-1-5-21-659118132-2395072876-1647836114-1000: Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\My Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\CA Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Disallowed Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Root Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\SmartCardRoot Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\trust Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\TrustedPeople Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1804 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Log: 'Application' Date/Time: 08/02/2012 7:28:13 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 15 user registry handles leaked from \Registry\User\S-1-5-21-659118132-2395072876-1647836114-1000: Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000 Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\My Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\CA Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Disallowed Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\Root Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\SmartCardRoot Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\trust Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Microsoft\SystemCertificates\TrustedPeople Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates Process 1796 (\Device\HarddiskVolume1\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-659118132-2395072876-1647836114-1000\Software\Policies\Microsoft\SystemCertificates