code 800f0826 win 7 sp1

Page 1 of 2 12 LastLast

  1. Posts : 26
    Windows 7 Ultimate 64
       #1

    code 800f0826 win 7 sp1


    Ok, so sp1 won't install. Fails to configure at 2%.

    I've turned off MSEssentials. and installed hotfix for windows(KB947821)

    Tried at least 5 times thru windows update, same result every time.

    Any ideas? I've never had a problem with any other update.
      My Computer


  2. Posts : 8,608
    Windows 7 Ultimate 32bit SP1
       #2

    Look in 'services.msc' and see if Windows Defender is disabled.
      My Computer


  3. Posts : 26
    Windows 7 Ultimate 64
    Thread Starter
       #3

    It's on manual. What should it be on ?
      My Computer


  4. Posts : 8,608
    Windows 7 Ultimate 32bit SP1
       #4

    Let's see if VEW can shed some light ...

    Download VEW by Vino Rosso http://images.malwareremoval.com/vino/VEW.exe
    and save it to your desktop
    Double click it to start it Note: If running Windows Vista or Windows 7 you will need to right click the file and select Run as administrator and click Continue or Allow at the User Account Control Prompt.
    Click the check boxes next to Application and System located under Select log to query on the upper left
    Under Select type to list on the right click the boxes next to Error and Warning Note: If running Windows Vista or Windows 7 also click the box next to Critical (not XP).
    Under Number or date of events select Number of events and type 20 in the box next to 1 to 20 and click Run
    Once it finishes it will display a log file in notepad
    Please copy and paste its entire contents into your next reply
      My Computer


  5. Posts : 26
    Windows 7 Ultimate 64
    Thread Starter
       #5

    Vino's Event Viewer v01c run on Windows 2008 in English
    Report run at 26/03/2011 6:24:55 PM

    Note: All dates below are in the format dd/mm/yyyy

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - Critical Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - Error Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'Application' Date/Time: 24/03/2011 10:18:49 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 10:18:49 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 10:18:43 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 10:18:43 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 10:14:15 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:24:44 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:24:35 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:24:35 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:24:03 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:24:02 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:57 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:57 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:57 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:57 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
    Type: Error Category: 0
    Event: 4107 Source: Microsoft-Windows-CAPI2
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - Warning Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'Application' Date/Time: 23/03/2011 9:11:32 PM
    Type: Warning Category: 0
    Event: 4102 Source: Microsoft-Windows-CAPI2
    Reached crypt32 threshold of 50 events and will suspend logging for 60 minutes.

    Log: 'Application' Date/Time: 04/03/2011 11:03:13 PM
    Type: Warning Category: 0
    Event: 4102 Source: Microsoft-Windows-CAPI2
    Reached crypt32 threshold of 50 events and will suspend logging for 60 minutes.

    Log: 'Application' Date/Time: 28/02/2011 6:50:01 PM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 3408 (\Device\HarddiskVolume1\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer


    Log: 'Application' Date/Time: 22/02/2011 7:11:45 PM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 3288 (\Device\HarddiskVolume1\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts


    Log: 'Application' Date/Time: 22/02/2011 7:11:15 PM
    Type: Warning Category: 0
    Event: 10010 Source: Microsoft-Windows-RestartManager
    Application 'C:\PROGRA~1\COMMON~1\ADOBEA~1\Versions\1.0\RESOUR~1\ADOBEA~1.EXE' (pid 1076) cannot be restarted - Application SID does not match Conductor SID..

    Log: 'Application' Date/Time: 22/02/2011 7:11:15 PM
    Type: Warning Category: 0
    Event: 10010 Source: Microsoft-Windows-RestartManager
    Application 'C:\PROGRA~1\COMMON~1\ADOBEA~1\Versions\1.0\RESOUR~1\ADOBEA~1.EXE' (pid 3900) cannot be restarted - Application SID does not match Conductor SID..

    Log: 'Application' Date/Time: 21/02/2011 11:40:22 PM
    Type: Warning Category: 0
    Event: 11 Source: Microsoft-Windows-RPC-Events
    Possible Memory Leak. Application (C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted) (PID: 892) has passed a non-NULL pointer to RPC for an [out] parameter marked [allocate(all_nodes)]. [allocate(all_nodes)] parameters are always reallocated; if the original pointer contained the address of valid memory, that memory will be leaked. The call originated on the interface with UUID ({3F31C91E-2545-4B7B-9311-9529E8BFFEF6}), Method number (20). User Action: Contact your application vendor for an updated version of the application.

    Log: 'Application' Date/Time: 05/11/2010 10:37:58 PM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 2392 (\Device\HarddiskVolume1\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts


    Log: 'Application' Date/Time: 20/10/2010 2:59:52 AM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500_Classes:
    Process 1696 (\Device\HarddiskVolume1\Program Files\mcShoutCast\mcShoutCastECommerceService.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES


    Log: 'Application' Date/Time: 11/10/2010 4:01:21 AM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


    Log: 'Application' Date/Time: 15/09/2010 11:53:41 PM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


    Log: 'Application' Date/Time: 03/09/2010 1:45:41 AM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


    Log: 'Application' Date/Time: 31/08/2010 11:26:52 AM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


    Log: 'Application' Date/Time: 30/08/2010 9:15:51 AM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
    Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


    Log: 'Application' Date/Time: 17/08/2010 2:03:41 AM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows NT\CurrentVersion
    Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Policies
    Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software
    Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
    Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\BitBucket\Volume\{9652be48-172e-11df-baea-806e6f6e6963}


    Log: 'Application' Date/Time: 11/08/2010 5:56:14 AM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


    Log: 'Application' Date/Time: 26/05/2010 2:30:08 PM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 21 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500_Classes:
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\518\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\518\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\24\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\17\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\17\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Applications\uTorrent.exe
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\24\Shell\{C4D98F09-6124-4FE0-9942-826416082DA9}
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\24\Shell\{C4D98F09-6124-4FE0-9942-826416082DA9}
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\17\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\17\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\518\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\518\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}


    Log: 'Application' Date/Time: 26/05/2010 2:30:08 PM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 27 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows NT\CurrentVersion
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Policies
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Policies
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows NT\CurrentVersion\Network\Location Awareness
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Internet Explorer\IETld
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\MSF\Registration\Listen
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\Shell
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\HomeGroup\Printers
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Internet Explorer\Suggested Sites
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\Shell\Bags\1\Desktop
    Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed
    Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Internet Explorer\Main\WindowsSearch


    Log: 'Application' Date/Time: 14/05/2010 4:20:21 AM
    Type: Warning Category: 0
    Event: 1530 Source: Microsoft-Windows-User Profiles Service
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
    Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


    Log: 'Application' Date/Time: 12/05/2010 2:10:37 PM
    Type: Warning Category: 3
    Event: 3036 Source: Microsoft-Windows-Search
    The content source <csc://{S-1-5-21-2980201588-199797276-3725048021-500}/> cannot be accessed.

    Context: Application, SystemIndex Catalog

    Details:
    The URL was already processed during this update. If you received this message while processing alerts, then the alerts are redundant, or else Modify should be used instead of Add. (HRESULT : 0x80040d0d) (0x80040d0d)


    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - Critical Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'System' Date/Time: 26/03/2011 9:38:53 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 14/03/2011 9:25:02 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 02/03/2011 11:35:22 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 26/02/2011 8:00:45 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 31/01/2011 12:49:28 AM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 31/01/2011 12:27:18 AM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 11/10/2010 1:03:53 AM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 12/05/2010 2:09:36 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 12/05/2010 1:38:29 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 08/05/2010 8:27:48 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 01/04/2010 3:43:04 AM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 01/04/2010 3:37:43 AM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 01/04/2010 3:17:21 AM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 01/04/2010 1:04:53 AM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 01/04/2010 12:37:10 AM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 31/03/2010 11:32:12 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 31/03/2010 11:07:39 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 31/03/2010 11:02:53 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 30/03/2010 4:36:49 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    Log: 'System' Date/Time: 28/03/2010 6:37:08 PM
    Type: Critical Category: 63
    Event: 41 Source: Microsoft-Windows-Kernel-Power
    The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - Error Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'System' Date/Time: 26/03/2011 10:14:14 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 26/03/2011 10:13:09 PM
    Type: Error Category: 0
    Event: 7023 Source: Service Control Manager
    The Windows Modules Installer service terminated with the following error: The system cannot find the file specified.

    Log: 'System' Date/Time: 26/03/2011 9:39:24 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 26/03/2011 9:39:02 PM
    Type: Error Category: 0
    Event: 6008 Source: EventLog
    The previous system shutdown at 6:36:15 PM on ?3/?25/?2011 was unexpected.

    Log: 'System' Date/Time: 25/03/2011 9:03:05 PM
    Type: Error Category: 0
    Event: 18 Source: Microsoft-Windows-WHEA-Logger
    A fatal hardware error has occurred. Reported by component: Processor Core Error Source: Machine Check Exception Error Type: Cache Hierarchy Error Processor ID: 0 The details view of this entry contains further information.

    Log: 'System' Date/Time: 25/03/2011 9:03:03 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 24/03/2011 8:36:10 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 23/03/2011 7:51:39 PM
    Type: Error Category: 1
    Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
    Installation Failure: Windows failed to install the following update with error 0x800f0826: Windows 7 Service Pack 1 (KB976932).

    Log: 'System' Date/Time: 23/03/2011 7:48:45 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 23/03/2011 7:47:51 PM
    Type: Error Category: 0
    Event: 7023 Source: Service Control Manager
    The Windows Modules Installer service terminated with the following error: The system cannot find the file specified.

    Log: 'System' Date/Time: 23/03/2011 7:28:18 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 23/03/2011 3:40:51 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 22/03/2011 4:03:44 PM
    Type: Error Category: 0
    Event: 18 Source: Microsoft-Windows-WHEA-Logger
    A fatal hardware error has occurred. Reported by component: Processor Core Error Source: Machine Check Exception Error Type: Cache Hierarchy Error Processor ID: 0 The details view of this entry contains further information.

    Log: 'System' Date/Time: 22/03/2011 4:03:42 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 21/03/2011 5:18:50 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 18/03/2011 9:19:07 PM
    Type: Error Category: 0
    Event: 18 Source: Microsoft-Windows-WHEA-Logger
    A fatal hardware error has occurred. Reported by component: Processor Core Error Source: Machine Check Exception Error Type: Cache Hierarchy Error Processor ID: 0 The details view of this entry contains further information.

    Log: 'System' Date/Time: 18/03/2011 9:19:06 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    Log: 'System' Date/Time: 17/03/2011 9:16:50 PM
    Type: Error Category: 0
    Event: 14332 Source: Microsoft-Windows-WMPNSS-Service
    Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.

    Log: 'System' Date/Time: 17/03/2011 9:16:25 PM
    Type: Error Category: 0
    Event: 18 Source: Microsoft-Windows-WHEA-Logger
    A fatal hardware error has occurred. Reported by component: Processor Core Error Source: Machine Check Exception Error Type: Cache Hierarchy Error Processor ID: 0 The details view of this entry contains further information.

    Log: 'System' Date/Time: 17/03/2011 9:16:24 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: atitray

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - Warning Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'System' Date/Time: 26/03/2011 10:13:18 PM
    Type: Warning Category: 0
    Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
    WLAN AutoConfig service has successfully stopped.

    Log: 'System' Date/Time: 25/03/2011 9:52:53 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 25/03/2011 9:06:22 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 24/03/2011 10:42:25 PM
    Type: Warning Category: 0
    Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
    WLAN AutoConfig service has successfully stopped.

    Log: 'System' Date/Time: 24/03/2011 10:32:30 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 24/03/2011 10:32:07 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name isatap.nyc.rr.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 24/03/2011 8:36:48 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 23/03/2011 10:49:12 PM
    Type: Warning Category: 0
    Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
    WLAN AutoConfig service has successfully stopped.

    Log: 'System' Date/Time: 23/03/2011 7:50:14 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 23/03/2011 7:47:52 PM
    Type: Warning Category: 0
    Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
    WLAN AutoConfig service has successfully stopped.

    Log: 'System' Date/Time: 23/03/2011 7:27:27 PM
    Type: Warning Category: 0
    Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
    WLAN AutoConfig service has successfully stopped.

    Log: 'System' Date/Time: 23/03/2011 6:54:19 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 23/03/2011 3:41:49 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 22/03/2011 6:34:16 PM
    Type: Warning Category: 0
    Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
    WLAN AutoConfig service has successfully stopped.

    Log: 'System' Date/Time: 22/03/2011 5:01:39 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 22/03/2011 4:05:00 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 21/03/2011 5:27:21 PM
    Type: Warning Category: 0
    Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
    WLAN AutoConfig service has successfully stopped.

    Log: 'System' Date/Time: 21/03/2011 5:19:42 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

    Log: 'System' Date/Time: 18/03/2011 10:08:00 PM
    Type: Warning Category: 0
    Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
    WLAN AutoConfig service has successfully stopped.

    Log: 'System' Date/Time: 18/03/2011 10:06:19 PM
    Type: Warning Category: 0
    Event: 1014 Source: Microsoft-Windows-DNS-Client
    Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.
      My Computer


  6. Posts : 8,608
    Windows 7 Ultimate 32bit SP1
       #6

    Download CKScanner by askey127 from HERE
    Important - Save it to your desktop.
    Doubleclick CKScanner.exe and click Search For Files.
    After a very short time, when the cursor hourglass disappears, click Save List To File.
    A message box will verify the file saved.
    Double-click the CKFiles.txt icon on your desktop and copy/paste the contents in your next reply.

    Next, Please download WVCheck and save it to the desktop.
    • Right click on WVCheck.exe and select Run as Administrator and follow the prompts.
    • The scan may take some time depending on the Hard-Drive size.
    • Please post the contents of the notepad file WVCheck_1436_dd-mm-yyyy that can be located on the desktop.
      Once the program is done, copy the contents of the notepad file as a reply.


    Post both logs in your next reply.
      My Computer


  7. Posts : 908
    Vista Home Premium x86 SP2
       #7

    Hello!

    Please post the logs requested by Jacee. In the meantime, I am just going to pick out the VINO entries I think may be relevant (or I just want to fix)

    Code:
    Log: 'System' Date/Time: 26/03/2011 10:13:09 PM
    Type: Error Category: 0
    Event: 7023 Source: Service Control Manager
    The Windows Modules Installer service terminated with the following error:  The system cannot find the file specified.
    Code:
    Log: 'System' Date/Time: 17/03/2011 9:16:50 PM
    Type: Error Category: 0
    Event: 14332 Source: Microsoft-Windows-WMPNSS-Service
    Service 'WMPNetworkSvc' did not start correctly because  CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'.  Verify that the UPnPHost service is running and that the UPnPHost  component of Windows is installed properly.
    Code:
    Log: 'System' Date/Time: 21/03/2011 5:18:50 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load:  atitray
    Will talk more later :)

    Richard
      My Computer


  8. Posts : 26
    Windows 7 Ultimate 64
    Thread Starter
       #8

    All updated and good now. Repaired the os and that worked well. It seems I had error on the disk. Ran chkdsk and i think that's what ultimately let me install sp1.

    Thank you.
      My Computer


  9. Posts : 16
    Windows 7 Home Premium 32 BIT OS
       #9

    T0r0 said:
    All updated and good now. Repaired the os and that worked well. It seems I had error on the disk. Ran chkdsk and i think that's what ultimately let me install sp1.

    Thank you.
    Did you check both boxes or just the first one as seen inthe attached image?
    Attached Thumbnails Attached Thumbnails code 800f0826 win 7 sp1-untitled.jpg  
      My Computer


  10. Posts : 16
    Windows 7 Home Premium 32 BIT OS
       #10

    Chkdsk did not work for me
      My Computer


 
Page 1 of 2 12 LastLast

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 00:48.
Find Us