Had a pretty busy day, but got around to this finally. With A. choice.
Vino's Event Viewer v01c run on Windows Vista in English
Report run at 13/09/2009 11:25:59 PM
Note: All dates below are in the format dd/mm/yyyy
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 13/09/2009 3:58:54 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application Ventrilo.exe, version 3.0.4.0, time stamp 0x49186014, faulting module unknown, version 0.0.0.0, time stamp 0x00000000, exception code 0xc0000005, fault offset 0xffff0000, process id 0x1170, application start time 0x01ca341fb17aab85.
Log: 'Application' Date/Time: 12/09/2009 1:26:07 AM
Type: Error Category: 0
Event: 8194 Source: VSS
Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005. This is often caused by incorrect security settings in either the writer or requestor process.
Operation:
Gathering Writer Data
Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {23c074e9-9ab5-4e55-bb46-635b60f00dc7}
Log: 'Application' Date/Time: 12/09/2009 12:27:34 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application hl.exe, version 1.1.1.1, time stamp 0x48feaf5a, faulting module hw.dll_unloaded, version 0.0.0.0, time stamp 0x4a36d3cc, exception code 0xc0000005, fault offset 0x08fa8fa0, process id 0x17e0, application start time 0x01ca333fc1707790.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Information Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 14/09/2009 12:27:07 AM
Type: Information Category: 0
Event: 8211 Source: System Restore
Successfully created scheduled restore point.
Log: 'Application' Date/Time: 14/09/2009 12:27:07 AM
Type: Information Category: 0
Event: 8194 Source: System Restore
Successfully created restore point (Process = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Description = Scheduled Checkpoint).
Log: 'Application' Date/Time: 13/09/2009 7:07:44 PM
Type: Information Category: 0
Event: 1 Source: SecurityCenter
The Windows Security Center Service has started.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 09/09/2009 4:31:54 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-1794223989-2284748475-97517747-1000:
Process 1108 (\Device\HarddiskVolume1\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-1794223989-2284748475-97517747-1000
Process 7716 (\Device\HarddiskVolume1\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-1794223989-2284748475-97517747-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Log: 'Application' Date/Time: 01/09/2009 6:44:12 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1794223989-2284748475-97517747-1000_Classes:
Process 948 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1794223989-2284748475-97517747-1000_CLASSES
Log: 'Application' Date/Time: 01/09/2009 6:44:11 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1794223989-2284748475-97517747-1000:
Process 948 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1794223989-2284748475-97517747-1000
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 13/09/2009 7:07:00 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The CoLinuxDriver service failed to start due to the following error: The system cannot find the path specified.
Log: 'System' Date/Time: 13/09/2009 7:07:00 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The adfs service failed to start due to the following error: The system cannot find the file specified.
Log: 'System' Date/Time: 13/09/2009 7:46:07 AM
Type: Error Category: 0
Event: 7016 Source: Service Control Manager
The NVIDIA Display Driver Service service has reported an invalid current state 32.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Information Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 14/09/2009 12:33:09 AM
Type: Information Category: 0
Event: 33 Source: volsnap
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.
Log: 'System' Date/Time: 14/09/2009 12:26:45 AM
Type: Information Category: 0
Event: 20001 Source: Microsoft-Windows-User-PnP
Driver Management concluded the process to install driver FileRepository\volsnap.inf_7eb8cdb5\volsnap.inf for Device Instance ID STORAGE\VOLUMESNAPSHOT\HARDDISKVOLUMESNAPSHOT14 with the following status: 0.
Log: 'System' Date/Time: 14/09/2009 12:25:32 AM
Type: Information Category: 0
Event: 7036 Source: Service Control Manager
The Microsoft Software Shadow Copy Provider service entered the running state.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 09/09/2009 4:30:45 PM
Type: Warning Category: 0
Event: 4376 Source: Microsoft-Windows-Servicing
Servicing has required reboot to complete the operation of setting package KB971961(Security Update) into Install Requested(Install Requested) state
Log: 'System' Date/Time: 09/09/2009 4:30:45 PM
Type: Warning Category: 0
Event: 4376 Source: Microsoft-Windows-Servicing
Servicing has required reboot to complete the operation of setting package KB971961(Security Update) into Install Requested(Install Requested) state
Log: 'System' Date/Time: 09/09/2009 4:30:45 PM
Type: Warning Category: 0
Event: 4376 Source: Microsoft-Windows-Servicing
Servicing has required reboot to complete the operation of setting package KB971961(Security Update) into Install Requested(Install Requested) state