Vino's Event Viewer v01c run on Windows 2008 in English Report run at 23/10/2018 9:22:29 PM Note: All dates below are in the format dd/mm/yyyy ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Critical Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Error Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Log: 'Application' Date/Time: 24/10/2018 4:17:57 AM Type: Error Category: 0 Event: 11316 Source: MsiInstaller Product: Avast Update Helper -- Error 1316. The specified account already exists. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 'Application' Log - Warning Type ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Log: 'Application' Date/Time: 24/10/2018 4:15:27 AM Type: Warning Category: 0 Event: 12348 Source: VSS Volume Shadow Copy Service warning: VSS was denied access to the root of volume \\?\Volume{18815ed6-4bed-11e2-8cfb-b4b52fb7793f}\. Denying administrators from accessing volume roots can cause many unexpected failures, and will prevent VSS from functioning properly. Check security on the volume, and try the operation again. Operation: Removing auto-release shadow copies Loading provider Context: Execution Context: System Provider Log: 'Application' Date/Time: 24/10/2018 3:36:47 AM Type: Warning Category: 6 Event: 3057 Source: Application Virtualization Client {tid=A7C} The Application Virtualization Client Core initialized correctly. Installed Product: Version: 4.6.3.24650 Install Path: C:\Program Files (x86)\Microsoft Application Virtualization Client Global Data Directory: C:\ProgramData\Microsoft\Application Virtualization Client\ Machine Name: BREESE76-HP Operating System: Windows 7 64-bit Service Pack 1.0 Build 7601 OSD Command: Log: 'Application' Date/Time: 24/10/2018 3:36:45 AM Type: Warning Category: 3 Event: 3191 Source: Application Virtualization Client {tid=A7C} -------------------------------------------------------- Initialized client log (C:\ProgramData\Microsoft\Application Virtualization Client\sftlog.txt) Log: 'Application' Date/Time: 24/10/2018 3:35:16 AM Type: Warning Category: 0 Event: 1530 Source: Microsoft-Windows-User Profiles Service Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-239473584-822298280-3168733615-1001: Process 1312 (\Device\HarddiskVolume3\Program Files\AVAST Software\Avast\AvastSvc.exe) has opened key \REGISTRY\USER\S-1-5-21-239473584-822298280-3168733615-1001 Process 516 (\Device\HarddiskVolume3\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-239473584-822298280-3168733615-1001