Vino's Event Viewer v01c run on Windows 2008 in English Report run at 15/07/2013 18:22:32 Note: All dates below are in the format dd/mm/yyyy ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Critical Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Error Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Log: 'Application' Date/Time: 15/07/2013 17:18:38 Type: Error Category: 0 Event: 10 Source: Microsoft-Windows-WMI Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Log: 'Application' Date/Time: 15/07/2013 17:16:58 Type: Error Category: 0 Event: 100 Source: Bonjour Service mDNSCoreReceiveResponse: Unexpected conflict discarding 16 2.0.168.192.in-addr.arpa. PTR MDWILSON.local. Log: 'Application' Date/Time: 15/07/2013 17:16:58 Type: Error Category: 0 Event: 100 Source: Bonjour Service mDNSCoreReceiveResponse: Received from 192.168.0.2:5353 18 2.0.168.192.in-addr.arpa. PTR MDWILSON-2.local. Log: 'Application' Date/Time: 15/07/2013 17:14:56 Type: Error Category: 0 Event: 10 Source: Microsoft-Windows-WMI Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Log: 'Application' Date/Time: 15/07/2013 17:13:25 Type: Error Category: 0 Event: 100 Source: Bonjour Service mDNSCoreReceiveResponse: Unexpected conflict discarding 16 2.0.168.192.in-addr.arpa. PTR MDWILSON.local. Log: 'Application' Date/Time: 15/07/2013 17:13:25 Type: Error Category: 0 Event: 100 Source: Bonjour Service mDNSCoreReceiveResponse: Received from 192.168.0.2:5353 18 2.0.168.192.in-addr.arpa. PTR MDWILSON-2.local. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Warning Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Log: 'Application' Date/Time: 15/07/2013 09:58:00 Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 7 user registry handles leaked from \Registry\User\S-1-5-21-3790460671-1255928604-2741219469-1000: Process 996 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3790460671-1255928604-2741219469-1000\Software\Microsoft\Internet Explorer\Main\FeatureControl Process 996 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3790460671-1255928604-2741219469-1000\Software\Microsoft\Internet Explorer\Main Process 996 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3790460671-1255928604-2741219469-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings Process 996 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3790460671-1255928604-2741219469-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings Process 996 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3790460671-1255928604-2741219469-1000\Software Process 996 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3790460671-1255928604-2741219469-1000\Software\Policies Process 996 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3790460671-1255928604-2741219469-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings