code 800f0826 win 7 sp1

T0r0

New member
Ok, so sp1 won't install. Fails to configure at 2%.

I've turned off MSEssentials. and installed hotfix for windows(KB947821)

Tried at least 5 times thru windows update, same result every time.

Any ideas? I've never had a problem with any other update.
 

My Computer

OS
Windows 7 Ultimate 64
CPU
AMD Phenom 2 x4 955 3.2
Motherboard
790FX GD70
Memory
G.SKILL 4GB (2 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600
Graphics Card(s)
SAPPHIRE 100281SR Radeon HD 5870 (Cypress XT)
Sound Card
Onboard- Realtek ALC889
Monitor(s) Displays
Pioneer Pro Elite 101FD / 7 inch LCD on SilverStone case
Screen Resolution
1920x1080 / 800x600
Hard Drives
Western Digital Raptor WD740GD 74GB 10000 RPM 8MB Cache SATA

HITACHI 0A38016 1TB 7200 RPM 16MB Cache SATA
PSU
ENERMAX REVOLUTION85+ ERV850EWT 850W ATX12V
Case
SilverStone CW03-MT
Cooling
Stock
Keyboard
Logitech Elite Keyboard
Mouse
Logitech G5
Internet Speed
10.+ Mb/s DL -- .73 Mb/s UL
Other Info
Linksys WRT150N
SD HDHomerun
Look in 'services.msc' and see if Windows Defender is disabled.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
It's on manual. What should it be on ?
 

My Computer

OS
Windows 7 Ultimate 64
CPU
AMD Phenom 2 x4 955 3.2
Motherboard
790FX GD70
Memory
G.SKILL 4GB (2 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600
Graphics Card(s)
SAPPHIRE 100281SR Radeon HD 5870 (Cypress XT)
Sound Card
Onboard- Realtek ALC889
Monitor(s) Displays
Pioneer Pro Elite 101FD / 7 inch LCD on SilverStone case
Screen Resolution
1920x1080 / 800x600
Hard Drives
Western Digital Raptor WD740GD 74GB 10000 RPM 8MB Cache SATA

HITACHI 0A38016 1TB 7200 RPM 16MB Cache SATA
PSU
ENERMAX REVOLUTION85+ ERV850EWT 850W ATX12V
Case
SilverStone CW03-MT
Cooling
Stock
Keyboard
Logitech Elite Keyboard
Mouse
Logitech G5
Internet Speed
10.+ Mb/s DL -- .73 Mb/s UL
Other Info
Linksys WRT150N
SD HDHomerun
Let's see if VEW can shed some light ...

Download VEW by Vino Rosso http://images.malwareremoval.com/vino/VEW.exe
and save it to your desktop
Double click it to start it Note: If running Windows Vista or Windows 7 you will need to right click the file and select Run as administrator and click Continue or Allow at the User Account Control Prompt.
Click the check boxes next to Application and System located under Select log to query on the upper left
Under Select type to list on the right click the boxes next to Error and Warning Note: If running Windows Vista or Windows 7 also click the box next to Critical (not XP).
Under Number or date of events select Number of events and type 20 in the box next to 1 to 20 and click Run
Once it finishes it will display a log file in notepad
Please copy and paste its entire contents into your next reply
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 26/03/2011 6:24:55 PM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 24/03/2011 10:18:49 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 10:18:49 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 10:18:43 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 10:18:43 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 10:14:15 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:24:44 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:24:35 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:24:35 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:24:03 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:24:02 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:57 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:57 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:57 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:57 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

Log: 'Application' Date/Time: 24/03/2011 9:23:56 PM
Type: Error Category: 0
Event: 4107 Source: Microsoft-Windows-CAPI2
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file. .

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 23/03/2011 9:11:32 PM
Type: Warning Category: 0
Event: 4102 Source: Microsoft-Windows-CAPI2
Reached crypt32 threshold of 50 events and will suspend logging for 60 minutes.

Log: 'Application' Date/Time: 04/03/2011 11:03:13 PM
Type: Warning Category: 0
Event: 4102 Source: Microsoft-Windows-CAPI2
Reached crypt32 threshold of 50 events and will suspend logging for 60 minutes.

Log: 'Application' Date/Time: 28/02/2011 6:50:01 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 3408 (\Device\HarddiskVolume1\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer


Log: 'Application' Date/Time: 22/02/2011 7:11:45 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 3288 (\Device\HarddiskVolume1\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts


Log: 'Application' Date/Time: 22/02/2011 7:11:15 PM
Type: Warning Category: 0
Event: 10010 Source: Microsoft-Windows-RestartManager
Application 'C:\PROGRA~1\COMMON~1\ADOBEA~1\Versions\1.0\RESOUR~1\ADOBEA~1.EXE' (pid 1076) cannot be restarted - Application SID does not match Conductor SID..

Log: 'Application' Date/Time: 22/02/2011 7:11:15 PM
Type: Warning Category: 0
Event: 10010 Source: Microsoft-Windows-RestartManager
Application 'C:\PROGRA~1\COMMON~1\ADOBEA~1\Versions\1.0\RESOUR~1\ADOBEA~1.EXE' (pid 3900) cannot be restarted - Application SID does not match Conductor SID..

Log: 'Application' Date/Time: 21/02/2011 11:40:22 PM
Type: Warning Category: 0
Event: 11 Source: Microsoft-Windows-RPC-Events
Possible Memory Leak. Application (C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted) (PID: 892) has passed a non-NULL pointer to RPC for an [out] parameter marked [allocate(all_nodes)]. [allocate(all_nodes)] parameters are always reallocated; if the original pointer contained the address of valid memory, that memory will be leaked. The call originated on the interface with UUID ({3F31C91E-2545-4B7B-9311-9529E8BFFEF6}), Method number (20). User Action: Contact your application vendor for an updated version of the application.

Log: 'Application' Date/Time: 05/11/2010 10:37:58 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 2392 (\Device\HarddiskVolume1\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts


Log: 'Application' Date/Time: 20/10/2010 2:59:52 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500_Classes:
Process 1696 (\Device\HarddiskVolume1\Program Files\mcShoutCast\mcShoutCastECommerceService.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES


Log: 'Application' Date/Time: 11/10/2010 4:01:21 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


Log: 'Application' Date/Time: 15/09/2010 11:53:41 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


Log: 'Application' Date/Time: 03/09/2010 1:45:41 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


Log: 'Application' Date/Time: 31/08/2010 11:26:52 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


Log: 'Application' Date/Time: 30/08/2010 9:15:51 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
Process 472 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


Log: 'Application' Date/Time: 17/08/2010 2:03:41 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows NT\CurrentVersion
Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Policies
Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software
Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
Process 3784 (\Device\HarddiskVolume1\Program Files\uTorrent\uTorrent.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\BitBucket\Volume\{9652be48-172e-11df-baea-806e6f6e6963}


Log: 'Application' Date/Time: 11/08/2010 5:56:14 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


Log: 'Application' Date/Time: 26/05/2010 2:30:08 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 21 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500_Classes:
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\518\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\518\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\24\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\17\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\17\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Applications\uTorrent.exe
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\24\Shell\{C4D98F09-6124-4FE0-9942-826416082DA9}
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\24\Shell\{C4D98F09-6124-4FE0-9942-826416082DA9}
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\17\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\17\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\518\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\Bags\518\Shell\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}


Log: 'Application' Date/Time: 26/05/2010 2:30:08 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 27 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows NT\CurrentVersion
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Policies
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Policies
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows NT\CurrentVersion\Network\Location Awareness
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Internet Explorer\IETld
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\MSF\Registration\Listen
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\Shell
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\HomeGroup\Printers
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Internet Explorer\Suggested Sites
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Windows\Shell\Bags\1\Desktop
Process 476 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed
Process 1676 (\Device\HarddiskVolume1\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\Internet Explorer\Main\WindowsSearch


Log: 'Application' Date/Time: 14/05/2010 4:20:21 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 5 user registry handles leaked from \Registry\User\S-1-5-21-2980201588-199797276-3725048021-500:
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\My
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\CA
Process 480 (\Device\HarddiskVolume1\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-2980201588-199797276-3725048021-500\Software\Microsoft\SystemCertificates\Disallowed


Log: 'Application' Date/Time: 12/05/2010 2:10:37 PM
Type: Warning Category: 3
Event: 3036 Source: Microsoft-Windows-Search
The content source <csc://{S-1-5-21-2980201588-199797276-3725048021-500}/> cannot be accessed.

Context: Application, SystemIndex Catalog

Details:
The URL was already processed during this update. If you received this message while processing alerts, then the alerts are redundant, or else Modify should be used instead of Add. (HRESULT : 0x80040d0d) (0x80040d0d)


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 26/03/2011 9:38:53 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 14/03/2011 9:25:02 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 02/03/2011 11:35:22 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 26/02/2011 8:00:45 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 31/01/2011 12:49:28 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 31/01/2011 12:27:18 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 11/10/2010 1:03:53 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 12/05/2010 2:09:36 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 12/05/2010 1:38:29 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 08/05/2010 8:27:48 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 01/04/2010 3:43:04 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 01/04/2010 3:37:43 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 01/04/2010 3:17:21 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 01/04/2010 1:04:53 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 01/04/2010 12:37:10 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 31/03/2010 11:32:12 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 31/03/2010 11:07:39 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 31/03/2010 11:02:53 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 30/03/2010 4:36:49 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 28/03/2010 6:37:08 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 26/03/2011 10:14:14 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 26/03/2011 10:13:09 PM
Type: Error Category: 0
Event: 7023 Source: Service Control Manager
The Windows Modules Installer service terminated with the following error: The system cannot find the file specified.

Log: 'System' Date/Time: 26/03/2011 9:39:24 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 26/03/2011 9:39:02 PM
Type: Error Category: 0
Event: 6008 Source: EventLog
The previous system shutdown at 6:36:15 PM on ?3/?25/?2011 was unexpected.

Log: 'System' Date/Time: 25/03/2011 9:03:05 PM
Type: Error Category: 0
Event: 18 Source: Microsoft-Windows-WHEA-Logger
A fatal hardware error has occurred. Reported by component: Processor Core Error Source: Machine Check Exception Error Type: Cache Hierarchy Error Processor ID: 0 The details view of this entry contains further information.

Log: 'System' Date/Time: 25/03/2011 9:03:03 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 24/03/2011 8:36:10 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 23/03/2011 7:51:39 PM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x800f0826: Windows 7 Service Pack 1 (KB976932).

Log: 'System' Date/Time: 23/03/2011 7:48:45 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 23/03/2011 7:47:51 PM
Type: Error Category: 0
Event: 7023 Source: Service Control Manager
The Windows Modules Installer service terminated with the following error: The system cannot find the file specified.

Log: 'System' Date/Time: 23/03/2011 7:28:18 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 23/03/2011 3:40:51 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 22/03/2011 4:03:44 PM
Type: Error Category: 0
Event: 18 Source: Microsoft-Windows-WHEA-Logger
A fatal hardware error has occurred. Reported by component: Processor Core Error Source: Machine Check Exception Error Type: Cache Hierarchy Error Processor ID: 0 The details view of this entry contains further information.

Log: 'System' Date/Time: 22/03/2011 4:03:42 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 21/03/2011 5:18:50 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 18/03/2011 9:19:07 PM
Type: Error Category: 0
Event: 18 Source: Microsoft-Windows-WHEA-Logger
A fatal hardware error has occurred. Reported by component: Processor Core Error Source: Machine Check Exception Error Type: Cache Hierarchy Error Processor ID: 0 The details view of this entry contains further information.

Log: 'System' Date/Time: 18/03/2011 9:19:06 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

Log: 'System' Date/Time: 17/03/2011 9:16:50 PM
Type: Error Category: 0
Event: 14332 Source: Microsoft-Windows-WMPNSS-Service
Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.

Log: 'System' Date/Time: 17/03/2011 9:16:25 PM
Type: Error Category: 0
Event: 18 Source: Microsoft-Windows-WHEA-Logger
A fatal hardware error has occurred. Reported by component: Processor Core Error Source: Machine Check Exception Error Type: Cache Hierarchy Error Processor ID: 0 The details view of this entry contains further information.

Log: 'System' Date/Time: 17/03/2011 9:16:24 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: atitray

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 26/03/2011 10:13:18 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 25/03/2011 9:52:53 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 25/03/2011 9:06:22 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 24/03/2011 10:42:25 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 24/03/2011 10:32:30 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 24/03/2011 10:32:07 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name isatap.nyc.rr.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 24/03/2011 8:36:48 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 23/03/2011 10:49:12 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 23/03/2011 7:50:14 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 23/03/2011 7:47:52 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 23/03/2011 7:27:27 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 23/03/2011 6:54:19 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 23/03/2011 3:41:49 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 22/03/2011 6:34:16 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 22/03/2011 5:01:39 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 22/03/2011 4:05:00 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 21/03/2011 5:27:21 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 21/03/2011 5:19:42 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 18/03/2011 10:08:00 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 18/03/2011 10:06:19 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ad.wsod.com timed out after none of the configured DNS servers responded.
 

My Computer

OS
Windows 7 Ultimate 64
CPU
AMD Phenom 2 x4 955 3.2
Motherboard
790FX GD70
Memory
G.SKILL 4GB (2 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600
Graphics Card(s)
SAPPHIRE 100281SR Radeon HD 5870 (Cypress XT)
Sound Card
Onboard- Realtek ALC889
Monitor(s) Displays
Pioneer Pro Elite 101FD / 7 inch LCD on SilverStone case
Screen Resolution
1920x1080 / 800x600
Hard Drives
Western Digital Raptor WD740GD 74GB 10000 RPM 8MB Cache SATA

HITACHI 0A38016 1TB 7200 RPM 16MB Cache SATA
PSU
ENERMAX REVOLUTION85+ ERV850EWT 850W ATX12V
Case
SilverStone CW03-MT
Cooling
Stock
Keyboard
Logitech Elite Keyboard
Mouse
Logitech G5
Internet Speed
10.+ Mb/s DL -- .73 Mb/s UL
Other Info
Linksys WRT150N
SD HDHomerun
Download CKScanner by askey127 from HERE
Important - Save it to your desktop.
Doubleclick CKScanner.exe and click Search For Files.
After a very short time, when the cursor hourglass disappears, click Save List To File.
A message box will verify the file saved.
Double-click the CKFiles.txt icon on your desktop and copy/paste the contents in your next reply.

Next, Please download WVCheck and save it to the desktop.
  • Right click on WVCheck.exe and select Run as Administrator and follow the prompts.
  • The scan may take some time depending on the Hard-Drive size.
  • Please post the contents of the notepad file WVCheck_1436_dd-mm-yyyy that can be located on the desktop.
    Once the program is done, copy the contents of the notepad file as a reply.

Post both logs in your next reply.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Hello!

Please post the logs requested by Jacee. In the meantime, I am just going to pick out the VINO entries I think may be relevant (or I just want to fix)

Code:
Log: 'System' Date/Time: 26/03/2011 10:13:09 PM
Type: Error Category: 0
Event: 7023 Source: Service Control Manager
The Windows Modules Installer service terminated with the following error:  The system cannot find the file specified.

Code:
Log: 'System' Date/Time: 17/03/2011 9:16:50 PM
Type: Error Category: 0
Event: 14332 Source: Microsoft-Windows-WMPNSS-Service
Service 'WMPNetworkSvc' did not start correctly because  CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'.  Verify that the UPnPHost service is running and that the UPnPHost  component of Windows is installed properly.

Code:
Log: 'System' Date/Time: 21/03/2011 5:18:50 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load:  atitray

Will talk more later :)

Richard
 

My Computer

Computer Manufacturer/Model Number
Dell XPS 420
OS
Vista Home Premium x86 SP2
CPU
Intel Core 2 Quad Q9300 2.50GHz
Motherboard
Stock Dell 0TP406
Memory
4 gb (DDR2 800) 400MHz
Graphics Card(s)
ATI Radeon HD 3870 (512 MBytes)
Monitor(s) Displays
1 x Dell 2007FP and 1 x (old) Sonic flat screen
Screen Resolution
1600 x 1200 and 1280 x 1204
Hard Drives
1 x 640Gb (SATA 300) Western Digital: WDC WD6400AAKS-75A7B0 1 x 1Tb (SATA 600) Western Digital: Caviar Black, SATA 6GB/S, 64Mb cache, 8ms Western Digital: WDC WD1002FAEX-00Z3A0 ATA Device
Case
Dell XPS 420
Cooling
Stock Fan
Keyboard
Dell Bluetooth
Mouse
Advent Optical ADE-WG01 (colour change light up)
Internet Speed
Varies from 10kb/s to 170kb/s. So unreliable it is not funny
Other Info
ASUS USB 3.0 5Gbps/SATA 6Gbps - PCI-Express Combo Controller Card (U3S6)
All updated and good now. Repaired the os and that worked well. It seems I had error on the disk. Ran chkdsk and i think that's what ultimately let me install sp1.

Thank you.
 

My Computer

OS
Windows 7 Ultimate 64
CPU
AMD Phenom 2 x4 955 3.2
Motherboard
790FX GD70
Memory
G.SKILL 4GB (2 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600
Graphics Card(s)
SAPPHIRE 100281SR Radeon HD 5870 (Cypress XT)
Sound Card
Onboard- Realtek ALC889
Monitor(s) Displays
Pioneer Pro Elite 101FD / 7 inch LCD on SilverStone case
Screen Resolution
1920x1080 / 800x600
Hard Drives
Western Digital Raptor WD740GD 74GB 10000 RPM 8MB Cache SATA

HITACHI 0A38016 1TB 7200 RPM 16MB Cache SATA
PSU
ENERMAX REVOLUTION85+ ERV850EWT 850W ATX12V
Case
SilverStone CW03-MT
Cooling
Stock
Keyboard
Logitech Elite Keyboard
Mouse
Logitech G5
Internet Speed
10.+ Mb/s DL -- .73 Mb/s UL
Other Info
Linksys WRT150N
SD HDHomerun
All updated and good now. Repaired the os and that worked well. It seems I had error on the disk. Ran chkdsk and i think that's what ultimately let me install sp1.

Thank you.

Did you check both boxes or just the first one as seen inthe attached image?
 

Attachments

  • Untitled.jpg
    Untitled.jpg
    22.5 KB · Views: 638

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite L455D
OS
Windows 7 Home Premium 32 BIT OS
CPU
AMD Sempron SI-42 2.10 Ghz
Memory
DDR2 2048 MB (2 module of 1024 MB Each)
Graphics Card(s)
ATI Radeon 3100
Monitor(s) Displays
Generic Pnp monitor
Chkdsk did not work for me
:mad:
 

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite L455D
OS
Windows 7 Home Premium 32 BIT OS
CPU
AMD Sempron SI-42 2.10 Ghz
Memory
DDR2 2048 MB (2 module of 1024 MB Each)
Graphics Card(s)
ATI Radeon 3100
Monitor(s) Displays
Generic Pnp monitor

SFC -System File Checker - Instructions
Click on Start > All Programs > Accessories
Right-click on the Command Prompt entry
Select Run as Administrator and accept the UAC prompt - the Elevated Command Prompt window should pop up.
At the Command prompt, type
SFC /SCANNOW
and hit the Enter key

Wait for the scan to finish - make a note of any error messages - and then reboot.
Copy the CBS.log file created to your desktop (you can't manipulate it directly) and then compress the copy and upload it to your SkyDrive (http://skydrive.live.com ) and post a link to it so that I can take a look.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Back
Top