New
#1
This in Event Viewer
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.
DETAIL -
5 user registry handles leaked from \Registry\User\S-1-5-21-1215785520-2173831582-646944407-1000:
Process 552 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-1215785520-2173831582-646944407-1000
Process 552 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-1215785520-2173831582-646944407-1000
Process 552 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-1215785520-2173831582-646944407-1000\Software\Microsoft\SystemCertificates\My
Process 552 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-1215785520-2173831582-646944407-1000\Software\Microsoft\SystemCertificates\CA
Process 552 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-1215785520-2173831582-646944407-1000\Software\Microsoft\SystemCertificates\Disallowed
I am getting this seems to be on restarts, i got a couple of them what is it?