Code:
Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 06/02/2011 10:44:47 AM
Note: All dates below are in the format dd/mm/yyyy
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 05/02/2011 2:41:49 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 04/02/2011 3:16:34 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 03/02/2011 8:07:09 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 03/02/2011 2:42:53 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 02/02/2011 3:47:33 PM
Type: Error Category: 3
Event: 215 Source: ESENT
wlmail (4884) WindowsLiveMail0: The backup has been stopped because it was halted by the client or the connection with the client failed.
Log: 'Application' Date/Time: 01/02/2011 2:56:32 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 31/01/2011 4:08:38 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 30/01/2011 9:57:52 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 30/01/2011 3:55:00 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 29/01/2011 2:42:36 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 28/01/2011 6:02:02 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 27/01/2011 5:52:18 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 26/01/2011 4:40:15 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 25/01/2011 3:33:49 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 24/01/2011 3:37:06 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 23/01/2011 8:16:42 PM
Type: Error Category: 101
Event: 1002 Source: Application Hang
The program insight.exe version 11.0.3.466 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1044 Start Time: 01cbbb392ad54a9a Termination Time: 239 Application Path: C:\Games\positscience\Cortex\features\com.positscience.bfc.feature.cinema_1.0.0\movies\insight.exe Report Id:
Log: 'Application' Date/Time: 22/01/2011 6:38:32 PM
Type: Error Category: 101
Event: 1002 Source: Application Hang
The program iexplore.exe version 8.0.7600.16700 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1684 Start Time: 01cbba6008c08b1f Termination Time: 15 Application Path: C:\Program Files\Internet Explorer\iexplore.exe Report Id: bc1dfc40-2656-11e0-a840-0015833d0a57
Log: 'Application' Date/Time: 22/01/2011 3:12:12 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 20/01/2011 2:51:00 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
Log: 'Application' Date/Time: 19/01/2011 7:13:47 PM
Type: Error Category: 0
Event: 1008 Source: Microsoft-Windows-CEIP
A problem prevented Customer Experience Improvement Program data from being sent to Microsoft, (Error 80004005).
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 06/02/2011 2:07:29 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Process 332 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 332 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Log: 'Application' Date/Time: 05/02/2011 5:12:29 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Process 336 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 336 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Log: 'Application' Date/Time: 03/02/2011 2:47:28 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 30 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Root
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Root
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\TrustedPeople
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\TrustedPeople
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\My
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\My
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\CA
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\CA
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Disallowed
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Disallowed
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\trust
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\trust
Process 1080 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 992 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\SmartCardRoot
Log: 'Application' Date/Time: 02/02/2011 7:17:47 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 0 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Log: 'Application' Date/Time: 01/02/2011 3:40:55 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Process 480 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 480 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Log: 'Application' Date/Time: 31/01/2011 8:48:31 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Process 5320 (\Device\HarddiskVolume4\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
Log: 'Application' Date/Time: 30/01/2011 7:37:00 PM
Type: Warning Category: 7
Event: 508 Source: ESENT
wuaueng.dll (1016) SUS20ClientDataStore: A request to write to the file "C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log" at offset 786432 (0x00000000000c0000) for 512 (0x00000200) bytes succeeded, but took an abnormally long time (67 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.
Log: 'Application' Date/Time: 28/01/2011 6:54:00 PM
Type: Warning Category: 7
Event: 508 Source: ESENT
Windows (3400) Windows: A request to write to the file "C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb" at offset 18022400 (0x0000000001130000) for 32768 (0x00008000) bytes succeeded, but took an abnormally long time (89 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.
Log: 'Application' Date/Time: 27/01/2011 8:55:02 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 0 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Log: 'Application' Date/Time: 26/01/2011 9:11:52 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 30 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Root
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Root
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\TrustedPeople
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\TrustedPeople
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\My
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\My
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\CA
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\CA
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Disallowed
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Disallowed
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\trust
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\trust
Process 2024 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 944 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\SmartCardRoot
Log: 'Application' Date/Time: 25/01/2011 9:23:41 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Process 3864 (<Unknown>) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Log: 'Application' Date/Time: 25/01/2011 3:57:46 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 15 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Root
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\TrustedPeople
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\SystemCertificates
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\My
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\CA
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\Disallowed
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\trust
Process 2096 (\Device\HarddiskVolume4\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\SystemCertificates\SmartCardRoot
Log: 'Application' Date/Time: 23/01/2011 4:17:15 PM
Type: Warning Category: 3
Event: 10024 Source: Microsoft-Windows-Search
The filter host process 6048 did not respond and is being forcibly terminated.
Log: 'Application' Date/Time: 23/01/2011 2:51:10 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-3934568982-3286372417-1360686444-1001:
Process 612 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 612 (\Device\HarddiskVolume4\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3934568982-3286372417-1360686444-1001\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Log: 'Application' Date/Time: 22/01/2011 5:49:48 PM
Type: Warning Category: 7
Event: 508 Source: ESENT
wuaueng.dll (976) SUS20ClientDataStore: A request to write to the file "C:\Windows\SoftwareDistribution\DataStore\DataStore.edb" at offset 1966080 (0x00000000001e0000) for 32768 (0x00008000) bytes succeeded, but took an abnormally long time (113 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.
Log: 'Application' Date/Time: 22/01/2011 5:49:48 PM
Type: Warning Category: 7
Event: 508 Source: ESENT
wuaueng.dll (976) SUS20ClientDataStore: A request to write to the file "C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log" at offset 240640 (0x000000000003ac00) for 512 (0x00000200) bytes succeeded, but took an abnormally long time (113 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.
Log: 'Application' Date/Time: 18/01/2011 9:17:55 PM
Type: Warning Category: 7
Event: 508 Source: ESENT
wuaueng.dll (980) SUS20ClientDataStore: A request to write to the file "C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log" at offset 1191424 (0x0000000000122e00) for 512 (0x00000200) bytes succeeded, but took an abnormally long time (69 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.
Log: 'Application' Date/Time: 18/01/2011 4:20:16 PM
Type: Warning Category: 0
Event: 10010 Source: Microsoft-Windows-RestartManager
Application 'C:\Program Files\Realtek\RtVOsd\RtVOsd.exe' (pid 732) cannot be restarted - Application SID does not match Conductor SID..
Log: 'Application' Date/Time: 18/01/2011 4:03:38 PM
Type: Warning Category: 0
Event: 10010 Source: Microsoft-Windows-RestartManager
Application 'C:\Windows\explorer.exe' (pid 3180) cannot be restarted - Application SID does not match Conductor SID..
Log: 'Application' Date/Time: 18/01/2011 3:59:31 PM
Type: Warning Category: 0
Event: 10010 Source: Microsoft-Windows-RestartManager
Application 'C:\Program Files\Realtek\RtVOsd\RtVOsd.exe' (pid 1720) cannot be restarted - Application SID does not match Conductor SID..
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 01/02/2011 7:35:19 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 31/01/2011 7:57:31 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 27/01/2011 7:46:18 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 23/01/2011 6:32:03 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 22/01/2011 6:05:51 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 20/01/2011 9:08:53 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 18/01/2011 9:06:39 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 18/01/2011 8:08:50 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 12/01/2011 10:35:16 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 09/01/2011 11:30:09 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 09/01/2011 4:00:13 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 22/12/2010 9:20:38 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 20/12/2010 12:01:32 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 06/02/2011 4:45:45 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The ASPI32 service failed to start due to the following error: This driver has been blocked from loading
Log: 'System' Date/Time: 06/02/2011 4:45:45 PM
Type: Error Category: 0
Event: 1060 Source: Application Popup
\SystemRoot\SysWow64\Drivers\ASPI32.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Log: 'System' Date/Time: 06/02/2011 3:22:04 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The ASPI32 service failed to start due to the following error: This driver has been blocked from loading
Log: 'System' Date/Time: 06/02/2011 3:22:04 PM
Type: Error Category: 0
Event: 1060 Source: Application Popup
\SystemRoot\SysWow64\Drivers\ASPI32.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Log: 'System' Date/Time: 06/02/2011 12:01:42 AM
Type: Error Category: 0
Event: 36888 Source: Schannel
The following fatal alert was generated: 40. The internal error state is 107.
Log: 'System' Date/Time: 06/02/2011 12:01:42 AM
Type: Error Category: 0
Event: 36874 Source: Schannel
An SSL 3.0 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
Log: 'System' Date/Time: 06/02/2011 12:01:42 AM
Type: Error Category: 0
Event: 36888 Source: Schannel
The following fatal alert was generated: 40. The internal error state is 107.
Log: 'System' Date/Time: 06/02/2011 12:01:42 AM
Type: Error Category: 0
Event: 36874 Source: Schannel
An SSL 3.0 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
Log: 'System' Date/Time: 06/02/2011 12:01:42 AM
Type: Error Category: 0
Event: 36888 Source: Schannel
The following fatal alert was generated: 40. The internal error state is 107.
Log: 'System' Date/Time: 06/02/2011 12:01:42 AM
Type: Error Category: 0
Event: 36874 Source: Schannel
An SSL 3.0 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
Log: 'System' Date/Time: 06/02/2011 12:01:42 AM
Type: Error Category: 0
Event: 36888 Source: Schannel
The following fatal alert was generated: 40. The internal error state is 107.
Log: 'System' Date/Time: 06/02/2011 12:01:42 AM
Type: Error Category: 0
Event: 36874 Source: Schannel
An SSL 3.0 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
Log: 'System' Date/Time: 05/02/2011 10:11:33 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The ASPI32 service failed to start due to the following error: This driver has been blocked from loading
Log: 'System' Date/Time: 05/02/2011 10:11:33 PM
Type: Error Category: 0
Event: 1060 Source: Application Popup
\SystemRoot\SysWow64\Drivers\ASPI32.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Log: 'System' Date/Time: 05/02/2011 4:21:15 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The ASPI32 service failed to start due to the following error: This driver has been blocked from loading
Log: 'System' Date/Time: 05/02/2011 4:21:15 PM
Type: Error Category: 0
Event: 1060 Source: Application Popup
\SystemRoot\SysWow64\Drivers\ASPI32.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Log: 'System' Date/Time: 05/02/2011 1:57:17 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The ASPI32 service failed to start due to the following error: This driver has been blocked from loading
Log: 'System' Date/Time: 05/02/2011 1:57:17 PM
Type: Error Category: 0
Event: 1060 Source: Application Popup
\SystemRoot\SysWow64\Drivers\ASPI32.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Log: 'System' Date/Time: 04/02/2011 8:19:44 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The ASPI32 service failed to start due to the following error: This driver has been blocked from loading
Log: 'System' Date/Time: 04/02/2011 8:19:44 PM
Type: Error Category: 0
Event: 1060 Source: Application Popup
\SystemRoot\SysWow64\Drivers\ASPI32.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 06/02/2011 5:44:24 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 5:43:54 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 5:24:59 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 5:24:29 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 5:22:13 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 5:21:43 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 5:04:36 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 5:04:06 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 4:50:50 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 4:50:20 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 4:49:50 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 3:55:55 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.
Log: 'System' Date/Time: 06/02/2011 3:55:55 PM
Type: Warning Category: 0
Event: 10002 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN Extensibility Module has stopped. Module Path: C:\Windows\system32\athihvs.dll
Log: 'System' Date/Time: 06/02/2011 3:55:47 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 3:55:17 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 3:52:57 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 3:52:27 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 3:49:45 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 3:49:15 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.
Log: 'System' Date/Time: 06/02/2011 3:45:51 PM
Type: Warning Category: 0
Event: 129 Source: amd_sata
Reset to device, \Device\RaidPort0, was issued.