Vino's Event Viewer v01c run on Windows 2008 in English Report run at 08/10/2012 7:45:10 AM Note: All dates below are in the format dd/mm/yyyy ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Critical Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Error Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Log: 'Application' Date/Time: 07/10/2012 9:33:22 PM Type: Error Category: 1 Event: 101 Source: Automatic LiveUpdate Scheduler The event description cannot be found. Log: 'Application' Date/Time: 07/10/2012 4:49:25 PM Type: Error Category: 101 Event: 1002 Source: Application Hang The program SM?RTP.exe version 4.90.0.1 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 7d0 Start Time: 01cda4a3f3c11eed Termination Time: 4646 Application Path: C:\Program Files\Smadav\SM?RTP.exe Report Id: ec84f88d-109e-11e2-88c2-485b39847ecb Log: 'Application' Date/Time: 07/10/2012 3:06:42 PM Type: Error Category: 0 Event: 20 Source: Google Update The event description cannot be found. Log: 'Application' Date/Time: 07/10/2012 2:32:25 PM Type: Error Category: 0 Event: 13 Source: SescLU The event description cannot be found. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Warning Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Log: 'Application' Date/Time: 07/10/2012 9:38:14 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000: Process 2028 (\Device\HarddiskVolume2\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts Log: 'Application' Date/Time: 07/10/2012 6:55:39 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000: Process 2264 (\Device\HarddiskVolume2\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000\Software\Symantec\Symantec Endpoint Protection\AV\Custom Tasks Log: 'Application' Date/Time: 07/10/2012 6:25:41 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000: Process 2268 (\Device\HarddiskVolume2\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000\Software\Symantec\Symantec Endpoint Protection\AV\Custom Tasks Log: 'Application' Date/Time: 07/10/2012 5:55:43 PM Type: Warning Category: 0 Event: 63 Source: Microsoft-Windows-WMI A provider, OffProv12, has been registered in the Windows Management Instrumentation namespace Root\MSAPPS12 to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. Log: 'Application' Date/Time: 07/10/2012 5:55:43 PM Type: Warning Category: 0 Event: 63 Source: Microsoft-Windows-WMI A provider, OffProv12, has been registered in the Windows Management Instrumentation namespace Root\MSAPPS12 to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. Log: 'Application' Date/Time: 07/10/2012 3:52:40 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000: Process 2152 (\Device\HarddiskVolume2\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000\Software\Symantec\Symantec Endpoint Protection\AV\Custom Tasks Log: 'Application' Date/Time: 07/10/2012 3:40:36 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000: Process 320 (\Device\HarddiskVolume2\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000\Software\Symantec\Symantec Endpoint Protection\AV\Custom Tasks Log: 'Application' Date/Time: 07/10/2012 3:34:24 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000: Process 1700 (\Device\HarddiskVolume2\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000\Software\Symantec\Symantec Endpoint Protection\AV\Custom Tasks Log: 'Application' Date/Time: 07/10/2012 3:26:46 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000: Process 1068 (\Device\HarddiskVolume2\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000\Software\Symantec\Symantec Endpoint Protection\AV\Custom Tasks Log: 'Application' Date/Time: 07/10/2012 3:26:46 PM Type: Warning Category: 0 Event: 6000 Source: Microsoft-Windows-Winlogon The winlogon notification subscriber was unavailable to handle a notification event. Log: 'Application' Date/Time: 07/10/2012 3:26:46 PM Type: Warning Category: 0 Event: 6000 Source: Microsoft-Windows-Winlogon The winlogon notification subscriber was unavailable to handle a notification event. Log: 'Application' Date/Time: 07/10/2012 3:11:46 PM Type: Warning Category: 0 Event: 22 Source: Symantec AntiVirus The event description cannot be found. Log: 'Application' Date/Time: 07/10/2012 3:11:31 PM Type: Warning Category: 0 Event: 6000 Source: Microsoft-Windows-Winlogon The winlogon notification subscriber was unavailable to handle a notification event. Log: 'Application' Date/Time: 07/10/2012 3:10:13 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000_Classes: Process 3548 (\Device\HarddiskVolume2\Program Files\SUPERAntiSpyware\SASCore.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000_CLASSES Log: 'Application' Date/Time: 07/10/2012 3:10:12 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000: Process 3548 (\Device\HarddiskVolume2\Program Files\SUPERAntiSpyware\SASCore.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000 Process 356 (\Device\HarddiskVolume2\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000\Software\Symantec\Symantec Endpoint Protection\AV\Custom Tasks Log: 'Application' Date/Time: 07/10/2012 2:57:41 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000_Classes: Process 1192 (\Device\HarddiskVolume2\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000_CLASSES Log: 'Application' Date/Time: 07/10/2012 2:57:40 PM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3057419981-3728841389-741378901-1000: Process 1192 (\Device\HarddiskVolume2\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-3057419981-3728841389-741378901-1000\Software\Symantec\Symantec Endpoint Protection\AV\Custom Tasks Log: 'Application' Date/Time: 07/10/2012 2:48:52 PM Type: Warning Category: 0 Event: 6 Source: Symantec AntiVirus The event description cannot be found. Log: 'Application' Date/Time: 07/10/2012 2:35:03 PM Type: Warning Category: 0 Event: 6 Source: Symantec AntiVirus The event description cannot be found. Log: 'Application' Date/Time: 07/10/2012 2:34:45 PM Type: Warning Category: 0 Event: 6 Source: Symantec AntiVirus The event description cannot be found.