Quantcast
Viewing all articles
Browse latest Browse all 11372

Warning logs from Event Viewer\Windows Logs\Application

Below is the logs I copy from the Warning file.

Kindly help to explain as I couldnt understand what is happening here.
Meanwhile, I having my sound problems since age ago and I thought it was due to speaker faulty.
Anyway, whenever I plug in external speaker, it works well and I just ignore the problems.
Is it due to the regedit problems as below shown?
Kindly advise. Thanks.

************************************************************************

Log Name:      Application

Source:        Microsoft-Windows-User Profiles Service

Date:          6/25/2014 8:00:47 PM

Event ID:      1530

Task Category: None

Level:         Warning

Keywords:     

User:          SYSTEM

Computer:      VasTeh-PC

Description:

Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. 

 DETAIL -

 5 user registry handles leaked from \Registry\User\S-1-5-21-3515508538-895676998-986705530-1000:

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000\Software\Microsoft\SystemCertificates\My

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000\Software\Microsoft\SystemCertificates\CA

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000\Software\Microsoft\SystemCertificates\Disallowed

Event Xml:

<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">

  <System>

    <Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />

    <EventID>1530</EventID>

    <Version>0</Version>

    <Level>3</Level>

    <Task>0</Task>

    <Opcode>0</Opcode>

    <Keywords>0x8000000000000000</Keywords>

    <TimeCreated SystemTime="2014-06-25T12:00:47.139583300Z" />

    <EventRecordID>9182</EventRecordID>

    <Correlation ActivityID="{00000100-0000-0002-6406-E0AB6590CF01}" />

    <Execution ProcessID="468" ThreadID="672" />

    <Channel>Application</Channel>

    <Computer>VasTeh-PC</Computer>

    <Security UserID="S-1-5-18" />

  </System>

  <EventData Name="EVENT_HIVE_LEAK">

    <Data Name="Detail">5 user registry handles leaked from \Registry\User\S-1-5-21-3515508538-895676998-986705530-1000:

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000\Software\Microsoft\SystemCertificates\My

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000\Software\Microsoft\SystemCertificates\CA

Process 628 (\Device\HarddiskVolume2\Windows\System32\lsass.exe) has opened key \REGISTRY\USER\S-1-5-21-3515508538-895676998-986705530-1000\Software\Microsoft\SystemCertificates\Disallowed

</Data>

  </EventData>

</Event>


Viewing all articles
Browse latest Browse all 11372

Trending Articles