BSOD and Lockups alot in win7

shamus252

New member
Local time
12:34 PM
Messages
5
Im having issues with windows 7 x64 build 7600. Im getting alot of freezing all my fans will still be going but hard drive lights will stop. my bios is upto date, so are my chipset and graphic. Then happens mostly when i play games which is really what my pc is for, but i have had it happen just browsing the internet also, and watching video's.

Now ive only had it BSOD once maybe twice, most the time it just freezes and i have to use power button to restart it. Here is a few things from my error log.

I like 10 of these in event viewer.
Code:
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp6D34.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#ff0000] xmlns[/COLOR][COLOR=#0000ff]="[/COLOR][B][COLOR=#ff0000]http://schemas.microsoft.com/win/2004/08/events/event[/COLOR][/B][COLOR=#0000ff]">[/COLOR]
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp6D34.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Provider[/COLOR] [COLOR=#990000]Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Microsoft-Windows-Kernel-Power[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] Guid[/COLOR][COLOR=#0000ff]="[/COLOR][B]{331C3B3A-2005-44C2-AC5E-77220C37D6B4}[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR][B]41[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR][B]2[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR][B]1[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR][B]63[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR][B]0x8000000000000002[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]TimeCreated[/COLOR] [COLOR=#990000]SystemTime[/COLOR][COLOR=#0000ff]="[/COLOR][B]2009-10-17T04:10:39.591600000Z[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR][B]12864[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Correlation[/COLOR] [COLOR=#0000ff]/>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Execution[/COLOR] [COLOR=#990000]ProcessID[/COLOR][COLOR=#0000ff]="[/COLOR][B]4[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] ThreadID[/COLOR][COLOR=#0000ff]="[/COLOR][B]8[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR][B]System[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR][B]Shane-PC[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Security[/COLOR] [COLOR=#990000]UserID[/COLOR][COLOR=#0000ff]="[/COLOR][B]S-1-5-18[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp6D34.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]BugcheckCode[/B][COLOR=#0000ff]">[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]BugcheckParameter1[/B][COLOR=#0000ff]">[/COLOR][B]0x0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]BugcheckParameter2[/B][COLOR=#0000ff]">[/COLOR][B]0x0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]BugcheckParameter3[/B][COLOR=#0000ff]">[/COLOR][B]0x0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]BugcheckParameter4[/B][COLOR=#0000ff]">[/COLOR][B]0x0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]SleepInProgress[/B][COLOR=#0000ff]">[/COLOR][B]false[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]PowerButtonTimestamp[/B][COLOR=#0000ff]">[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#0000ff]>[/COLOR]
I also have this show up in prof logs from time to time.
Code:
The Desktop Window Manager is experiencing heavy resource contention.
Reason : Graphics subsystem resources are over-utilized.
Diagnosis : A sharp degradation in Desktop Window Manager responsiveness was observed.
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp6D34.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#ff0000] xmlns[/COLOR][COLOR=#0000ff]="[/COLOR][B][COLOR=#ff0000]http://schemas.microsoft.com/win/2004/08/events/event[/COLOR][/B][COLOR=#0000ff]">[/COLOR]
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp6D34.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Provider[/COLOR] [COLOR=#990000]Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Microsoft-Windows-Diagnostics-Performance[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] Guid[/COLOR][COLOR=#0000ff]="[/COLOR][B]{CFC18EC0-96B1-4EBA-961B-622CAEE05B0A}[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR][B]501[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR][B]1[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR][B]3[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR][B]4006[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR][B]42[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR][B]0x8000000000010000[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]TimeCreated[/COLOR] [COLOR=#990000]SystemTime[/COLOR][COLOR=#0000ff]="[/COLOR][B]2009-10-14T18:46:24.988400000Z[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR][B]414[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Correlation[/COLOR] [COLOR=#990000]ActivityID[/COLOR][COLOR=#0000ff]="[/COLOR][B]{00000100-0000-0000-0C88-55F18B4CCA01}[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Execution[/COLOR] [COLOR=#990000]ProcessID[/COLOR][COLOR=#0000ff]="[/COLOR][B]1296[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] ThreadID[/COLOR][COLOR=#0000ff]="[/COLOR][B]3988[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR][B]Microsoft-Windows-Diagnostics-Performance/Operational[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR][B]Shane-PC[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Security[/COLOR] [COLOR=#990000]UserID[/COLOR][COLOR=#0000ff]="[/COLOR][B]S-1-5-19[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp6D34.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Reason[/B][COLOR=#0000ff]">[/COLOR][B]2[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Diagnosis[/B][COLOR=#0000ff]">[/COLOR][B]2[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#0000ff]>[/COLOR]

Ive been keeping an eye on my temp with gaming CPU is around 38-40c video 65-70c and HD 34-35c and system temp around 30-34c. So I know im not over heating. Ive also run seagte tools for windows no error, memtest for 8hr no errors. Never had any of these issues with vista x64.

I seen on here a few times people asking for minidumps, I would like to go ahead and throw up I have no idea what a minidump is or where to find it.

Ill also attach some of my data from hwmonitor.
 

My Computer My Computer

At a glance

Windows 7 x64Phentom x4 99504 Gig GSkillMSI 260GTX
Computer Manufacturer/Model Number
Custom
OS
Windows 7 x64
CPU
Phentom x4 9950
Motherboard
Biostar TF8200
Memory
4 Gig GSkill
Graphics Card(s)
MSI 260GTX
Sound Card
SoundBlaster Audigy
Monitor(s) Displays
Acer and SVA
Screen Resolution
160x1050 and 1024x768
Hard Drives
SeaGate
WD
PSU
900 Watts
Cooling
3 120mm Fans
Keyboard
Sidewinder x6
Mouse
Explorer 3
Internet Speed
Cable
sometimes AVs or firewalls clash with windows 7 stuff. Do you have an AV or firewall installed? If so try disabling windows firewall and defender.
 

My Computer My Computer

At a glance

Windows 7 x86Intel atom 1.6ghz (2 cpu)1.5gbIntel chipset 950GMA
Computer Manufacturer/Model Number
Acer aspre one AOA150
OS
Windows 7 x86
CPU
Intel atom 1.6ghz (2 cpu)
Memory
1.5gb
Graphics Card(s)
Intel chipset 950GMA
Screen Resolution
1024 x 600
Mouse
usb logitech laser mouse
Internet Speed
16mbps over wifi (slows it down some)
Yes i have AVG i uninstalled it, 30 mins or so ago and was going to try out avast.
 

My Computer My Computer

At a glance

Windows 7 x64Phentom x4 99504 Gig GSkillMSI 260GTX
Computer Manufacturer/Model Number
Custom
OS
Windows 7 x64
CPU
Phentom x4 9950
Motherboard
Biostar TF8200
Memory
4 Gig GSkill
Graphics Card(s)
MSI 260GTX
Sound Card
SoundBlaster Audigy
Monitor(s) Displays
Acer and SVA
Screen Resolution
160x1050 and 1024x768
Hard Drives
SeaGate
WD
PSU
900 Watts
Cooling
3 120mm Fans
Keyboard
Sidewinder x6
Mouse
Explorer 3
Internet Speed
Cable
Minidumps, if there are any, are to be found in the \Windows\Minidump folder on your machine. Copy the contents of that folder to another location, zip it all up, and upload here.

The first event you posted is just a side-effect of the forced (power button) reboot. You can safely ignore that one for the purposes of this investigation. The second one is more interesting, but it's also unlikely to be the cause of the lockups/BSODs.

It would be a good idea to start with minidump analysis first.
 

My Computer My Computer

At a glance

Win7x64
Computer Manufacturer/Model Number
Multiple machines in various stages of decomposition.
OS
Win7x64
Here is a few minidumps, all from Oct 3rd tho which is while ago. Ive had probley 10-20 freezes sence then. Few other things ive done but forgot to say in first post is, ive ran scf/ scannow thing. One other thing is a few times after then freeze and ive had to hit my reset button ive goten a red kernel screen with weird loader options you have to select ive always chosen default, happened 2 or 3 times.
 

My Computer My Computer

At a glance

Windows 7 x64Phentom x4 99504 Gig GSkillMSI 260GTX
Computer Manufacturer/Model Number
Custom
OS
Windows 7 x64
CPU
Phentom x4 9950
Motherboard
Biostar TF8200
Memory
4 Gig GSkill
Graphics Card(s)
MSI 260GTX
Sound Card
SoundBlaster Audigy
Monitor(s) Displays
Acer and SVA
Screen Resolution
160x1050 and 1024x768
Hard Drives
SeaGate
WD
PSU
900 Watts
Cooling
3 120mm Fans
Keyboard
Sidewinder x6
Mouse
Explorer 3
Internet Speed
Cable
Here is a few minidumps, all from Oct 3rd tho which is while ago. Ive had probley 10-20 freezes sence then. Few other things ive done but forgot to say in first post is, ive ran scf/ scannow thing. One other thing is a few times after then freeze and ive had to hit my reset button ive goten a red kernel screen with weird loader options you have to select ive always chosen default, happened 2 or 3 times.

Unfortunately, your minidumps suggest that the hardware has detected severe problems. Windows is merely passing along this message:

WHEA_UNCORRECTABLE_ERROR (124)
A fatal hardware error has occurred. Parameter 1 identifies the type of error
source that reported the error. Parameter 2 holds the address of the
WHEA_ERROR_RECORD structure that describes the error conditon.

If you're overclocking, that's a bad idea. Otherwise, if the machine is still under warranty, you might want to take it back, explain that the hardware is raising "machine check exceptions" (as per the minidumps), and let them sort it out on their own time - after they give you a new machine.

There's little point in troubleshooting freezes and other potential software problems on a machine with underlying hardware badness.

Sorry about the sub-optimal news :(
 

My Computer My Computer

At a glance

Win7x64
Computer Manufacturer/Model Number
Multiple machines in various stages of decomposition.
OS
Win7x64
Well that sucks. I think then windows 7 might be killing some people computers cause i never had any issues in vista x64 this all start like 2 or 3 days after installing win 7.

And computer is custom build but most of my parts still have warranty.
 

My Computer My Computer

At a glance

Windows 7 x64Phentom x4 99504 Gig GSkillMSI 260GTX
Computer Manufacturer/Model Number
Custom
OS
Windows 7 x64
CPU
Phentom x4 9950
Motherboard
Biostar TF8200
Memory
4 Gig GSkill
Graphics Card(s)
MSI 260GTX
Sound Card
SoundBlaster Audigy
Monitor(s) Displays
Acer and SVA
Screen Resolution
160x1050 and 1024x768
Hard Drives
SeaGate
WD
PSU
900 Watts
Cooling
3 120mm Fans
Keyboard
Sidewinder x6
Mouse
Explorer 3
Internet Speed
Cable
Well that sucks. I think then windows 7 might be killing some people computers cause i never had any issues in vista x64 this all start like 2 or 3 days after installing win 7.

And computer is custom build but most of my parts still have warranty.

Different drivers "drive" in different ways. It's possible for a newer version of a (software) driver to expose an underlying flaw in hardware which was always there but never previously triggered. That doesn't mean the newer software zapped the hardware and damaged it, or anything like that.

To put it another way, just because the hardware is only now reporting problems doesn't mean they weren't always there to begin with.

You're not over-clocking, are you?
 

My Computer My Computer

At a glance

Win7x64
Computer Manufacturer/Model Number
Multiple machines in various stages of decomposition.
OS
Win7x64
Na no overclocks had another freeze few mins ago while watching a movie. and noticed these in log around times freezes happened today.

Code:
The NVIDIA Display Driver Service service has reported an invalid current state 32.
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#ff0000] xmlns[/COLOR][COLOR=#0000ff]="[/COLOR][B][COLOR=#ff0000]http://schemas.microsoft.com/win/2004/08/events/event[/COLOR][/B][COLOR=#0000ff]">[/COLOR]
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Provider[/COLOR] [COLOR=#990000]Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Service Control Manager[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] Guid[/COLOR][COLOR=#0000ff]="[/COLOR][B]{555908d1-a6d7-4695-8e1e-26931d2012f4}[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] EventSourceName[/COLOR][COLOR=#0000ff]="[/COLOR][B]Service Control Manager[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventID Qualifiers[/COLOR][COLOR=#0000ff]="[/COLOR][B]49152[/B][COLOR=#0000ff]">[/COLOR][B]7016[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR][B]2[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR][B]0x8080000000000000[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]TimeCreated[/COLOR] [COLOR=#990000]SystemTime[/COLOR][COLOR=#0000ff]="[/COLOR][B]2009-10-17T06:19:00.019400000Z[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR][B]13466[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Correlation[/COLOR] [COLOR=#0000ff]/>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Execution[/COLOR] [COLOR=#990000]ProcessID[/COLOR][COLOR=#0000ff]="[/COLOR][B]544[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] ThreadID[/COLOR][COLOR=#0000ff]="[/COLOR][B]3616[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR][B]System[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR][B]Shane-PC[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Security[/COLOR] [COLOR=#0000ff]/>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param1[/B][COLOR=#0000ff]">[/COLOR][B]NVIDIA Display Driver Service[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param2[/B][COLOR=#0000ff]">[/COLOR][B]32[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#0000ff]>[/COLOR]

Code:
The driver detected a controller error on \Device\Harddisk2\DR2.
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#ff0000] xmlns[/COLOR][COLOR=#0000ff]="[/COLOR][B][COLOR=#ff0000]http://schemas.microsoft.com/win/2004/08/events/event[/COLOR][/B][COLOR=#0000ff]">[/COLOR]
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Provider[/COLOR] [COLOR=#990000]Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Disk[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventID Qualifiers[/COLOR][COLOR=#0000ff]="[/COLOR][B]49156[/B][COLOR=#0000ff]">[/COLOR][B]11[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR][B]2[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR][B]0x80000000000000[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]TimeCreated[/COLOR] [COLOR=#990000]SystemTime[/COLOR][COLOR=#0000ff]="[/COLOR][B]2009-10-17T06:14:57.831200000Z[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR][B]13442[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR][B]System[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR][B]Shane-PC[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Security[/COLOR] [COLOR=#0000ff]/>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR][B]\Device\Harddisk2\DR2[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Binary[/COLOR][COLOR=#0000ff]>[/COLOR][B]0E04800001000000000000000B0004C003010000000000000000000000082D000000000000000000B4D1000000000000FFFFFFFF060000005800000000000000FF0006120C000010000000003C00000000000000000000004058130680FAFFFF000000000000000030ADB50E80F9FFFF0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Binary[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#0000ff]>[/COLOR]
about 5 of thoes disk ones all a few sec apart.

Code:
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{B77C4C36-0154-4C52-AB49-FAA03837E47F}
and APPID 
{EA022610-0748-4C24-B229-6C507EBDFDBB}
to the user Shane-PC\Shane SID (S-1-5-21-1834548450-1208255700-2952757960-1001) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#ff0000] xmlns[/COLOR][COLOR=#0000ff]="[/COLOR][B][COLOR=#ff0000]http://schemas.microsoft.com/win/2004/08/events/event[/COLOR][/B][COLOR=#0000ff]">[/COLOR]
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Provider[/COLOR] [COLOR=#990000]Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Microsoft-Windows-DistributedCOM[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] Guid[/COLOR][COLOR=#0000ff]="[/COLOR][B]{1B562E86-B7AA-4131-BADC-B6F3A001407E}[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] EventSourceName[/COLOR][COLOR=#0000ff]="[/COLOR][B]DCOM[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventID Qualifiers[/COLOR][COLOR=#0000ff]="[/COLOR][B]49152[/B][COLOR=#0000ff]">[/COLOR][B]10016[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR][B]2[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR][B]0x80000000000000[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]TimeCreated[/COLOR] [COLOR=#990000]SystemTime[/COLOR][COLOR=#0000ff]="[/COLOR][B]2009-10-17T05:06:25.000000000Z[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR][B]12967[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Correlation[/COLOR] [COLOR=#0000ff]/>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Execution[/COLOR] [COLOR=#990000]ProcessID[/COLOR][COLOR=#0000ff]="[/COLOR][B]0[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] ThreadID[/COLOR][COLOR=#0000ff]="[/COLOR][B]0[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR][B]System[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR][B]Shane-PC[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Security[/COLOR] [COLOR=#990000]UserID[/COLOR][COLOR=#0000ff]="[/COLOR][B]S-1-5-21-1834548450-1208255700-2952757960-1001[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param1[/B][COLOR=#0000ff]">[/COLOR][B]application-specific[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param2[/B][COLOR=#0000ff]">[/COLOR][B]Local[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param3[/B][COLOR=#0000ff]">[/COLOR][B]Activation[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param4[/B][COLOR=#0000ff]">[/COLOR][B]{B77C4C36-0154-4C52-AB49-FAA03837E47F}[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param5[/B][COLOR=#0000ff]">[/COLOR][B]{EA022610-0748-4C24-B229-6C507EBDFDBB}[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param6[/B][COLOR=#0000ff]">[/COLOR][B]Shane-PC[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param7[/B][COLOR=#0000ff]">[/COLOR][B]Shane[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param8[/B][COLOR=#0000ff]">[/COLOR][B]S-1-5-21-1834548450-1208255700-2952757960-1001[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]param9[/B][COLOR=#0000ff]">[/COLOR][B]LocalHost (Using LRPC)[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#0000ff]>[/COLOR]

Code:
Audit events have been dropped by the transport. 0
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#ff0000] xmlns[/COLOR][COLOR=#0000ff]="[/COLOR][B][COLOR=#ff0000]http://schemas.microsoft.com/win/2004/08/events/event[/COLOR][/B][COLOR=#0000ff]">[/COLOR]
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Provider[/COLOR] [COLOR=#990000]Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Microsoft-Windows-Eventlog[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] Guid[/COLOR][COLOR=#0000ff]="[/COLOR][B]{fc65ddd8-d6ef-4962-83d5-6e5cfe9ce148}[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR][B]1101[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR][B]2[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR][B]101[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR][B]0x4020000000000000[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]TimeCreated[/COLOR] [COLOR=#990000]SystemTime[/COLOR][COLOR=#0000ff]="[/COLOR][B]2009-10-17T04:10:47.422800000Z[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR][B]3570[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Correlation[/COLOR] [COLOR=#0000ff]/>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Execution[/COLOR] [COLOR=#990000]ProcessID[/COLOR][COLOR=#0000ff]="[/COLOR][B]896[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] ThreadID[/COLOR][COLOR=#0000ff]="[/COLOR][B]1020[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR][B]Security[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR][B]Shane-PC[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Security[/COLOR] [COLOR=#0000ff]/>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]UserData[/COLOR][COLOR=#0000ff]>[/COLOR]
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]AuditEventsDropped[/COLOR][COLOR=#ff0000] xmlns:auto-ns3[/COLOR][COLOR=#0000ff]="[/COLOR][B][COLOR=#ff0000]http://schemas.microsoft.com/win/2004/08/events[/COLOR][/B][COLOR=#0000ff]"[/COLOR][COLOR=#ff0000] xmlns[/COLOR][COLOR=#0000ff]="[/COLOR][B][COLOR=#ff0000]http://manifests.microsoft.com/win/2004/08/windows/eventlog[/COLOR][/B][COLOR=#0000ff]">[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Reason[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Reason[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]AuditEventsDropped[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]UserData[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#0000ff]>[/COLOR]

Code:
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. 
DETAIL - 
1 user registry handles leaked from \Registry\User\S-1-5-21-1834548450-1208255700-2952757960-1001:
Process 2688 (\Device\HarddiskVolume2\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-1834548450-1208255700-2952757960-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#ff0000] xmlns[/COLOR][COLOR=#0000ff]="[/COLOR][B][COLOR=#ff0000]http://schemas.microsoft.com/win/2004/08/events/event[/COLOR][/B][COLOR=#0000ff]">[/COLOR]
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Provider[/COLOR] [COLOR=#990000]Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Microsoft-Windows-User Profiles Service[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] Guid[/COLOR][COLOR=#0000ff]="[/COLOR][B]{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR][B]1530[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Version[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR][B]3[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Level[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Task[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR][B]0[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Opcode[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR][B]0x8000000000000000[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Keywords[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]TimeCreated[/COLOR] [COLOR=#990000]SystemTime[/COLOR][COLOR=#0000ff]="[/COLOR][B]2009-10-17T06:27:16.492600000Z[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR][B]4680[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventRecordID[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Correlation[/COLOR] [COLOR=#0000ff]/>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Execution[/COLOR] [COLOR=#990000]ProcessID[/COLOR][COLOR=#0000ff]="[/COLOR][B]1000[/B][COLOR=#0000ff]"[/COLOR][COLOR=#990000] ThreadID[/COLOR][COLOR=#0000ff]="[/COLOR][B]4012[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR][B]Application[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Channel[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR][B]Shane-PC[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Computer[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Security[/COLOR] [COLOR=#990000]UserID[/COLOR][COLOR=#0000ff]="[/COLOR][B]S-1-5-18[/B][COLOR=#0000ff]" />[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]System[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
[URL="file:///C:/Users/Shane/AppData/Local/Temp/tmp1C4.xml#"][B][FONT=Courier New][COLOR=#ff0000]-[/COLOR][/FONT][/B][/URL] [COLOR=#0000ff]<[/COLOR][COLOR=#990000]EventData Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]EVENT_HIVE_LEAK[/B][COLOR=#0000ff]">[/COLOR]
 [COLOR=#0000ff]<[/COLOR][COLOR=#990000]Data Name[/COLOR][COLOR=#0000ff]="[/COLOR][B]Detail[/B][COLOR=#0000ff]">[/COLOR][B]1 user registry handles leaked from \Registry\User\S-1-5-21-1834548450-1208255700-2952757960-1001: Process 2688 (\Device\HarddiskVolume2\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-1834548450-1208255700-2952757960-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts[/B][COLOR=#0000ff]</[/COLOR][COLOR=#990000]Data[/COLOR][COLOR=#0000ff]>[/COLOR] 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]EventData[/COLOR][COLOR=#0000ff]>[/COLOR]
 
 
 [COLOR=#0000ff]</[/COLOR][COLOR=#990000]Event[/COLOR][COLOR=#0000ff]>[/COLOR]

Think this is the HD in the one error http://wdc.custhelp.com/cgi-bin/wdc.cfg/php/enduser/std_adp.php?p_faqid=1974
 
Last edited:

My Computer My Computer

At a glance

Windows 7 x64Phentom x4 99504 Gig GSkillMSI 260GTX
Computer Manufacturer/Model Number
Custom
OS
Windows 7 x64
CPU
Phentom x4 9950
Motherboard
Biostar TF8200
Memory
4 Gig GSkill
Graphics Card(s)
MSI 260GTX
Sound Card
SoundBlaster Audigy
Monitor(s) Displays
Acer and SVA
Screen Resolution
160x1050 and 1024x768
Hard Drives
SeaGate
WD
PSU
900 Watts
Cooling
3 120mm Fans
Keyboard
Sidewinder x6
Mouse
Explorer 3
Internet Speed
Cable

My Computer My Computer

At a glance

Win7 x64 + x86Intel i7 920, other Intel chips, and the Atom...12 gB; 4 gB Lenovo; 1 gB Samsung netbookATI 4870
Computer Manufacturer/Model Number
Home built (x64), Lenovo x61s Tablet, Samsung Netbook
OS
Win7 x64 + x86
CPU
Intel i7 920, other Intel chips, and the Atom in the netbook
Motherboard
Asus P6T Deluxe
Memory
12 gB; 4 gB Lenovo; 1 gB Samsung netbook
Graphics Card(s)
ATI 4870
Sound Card
Yes, I have one of these
Monitor(s) Displays
32" Sharp Aquos TV
Screen Resolution
800x600 - I have vision issues
Hard Drives
4 - 150 gB Velociraptors in RAID 5
Promise controller
PSU
1000 watt (can't recall the brand)
Case
Antec 300
Cooling
Big honking cooler that was rated highly at Toms Hardware
Keyboard
Microsoft Natural
Mouse
Logitech Trackman
Internet Speed
Cable
Other Info
GeekSquad UPS
CyberPower UPS
DLink DNS-323 NAS (2 tB)
Netgear wireless router as an access point
Netgear wired router FSV-318
Home network consists of
4 desktop computers (2 Vista, 2 Win7)
1 netbook (Win7)
4 laptop computers (XP, 2-Vista, Win7)
Wii and XBox 360
Back
Top