Which is the error that is still occurring?
I use Kaspersky Internet Security and have done so for about three years without an apparent problem. I have the same setup on my second computer including KIS and this has downloaded the updates without a problem. Also, I have been able to install some of the updates that I originally couldn't following some of your suggestions (see recent post). I can close the programme if you think that could be a problem.
I notice a line that says: The driver \Driver\WUDFRd failed to load for the device Root\PARAGONBLOCKDEVICE\0000.
I have Paragon HD Manager 12 on both machines.
Windows Driver Foundation - User-mode Driver Framework is set to manual and is running. Not sure if this is important or not.
I use Kaspersky Internet Security and have done so for about three years without an apparent problem. I have the same setup on my second computer including KIS and this has downloaded the updates without a problem. Also, I have been able to install some of the updates that I originally couldn't following some of your suggestions (see recent post). I can close the programme if you think that could be a problem.
Code:
Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 09/03/2015 15:07:26
Note: All dates below are in the format dd/mm/yyyy
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 09/03/2015 14:58:43
Type: Error Category: 0
Event: 0 Source: VMCService
GetLoggedOnUser
Log: 'Application' Date/Time: 09/03/2015 14:58:40
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Log: 'Application' Date/Time: 09/03/2015 14:58:39
Type: Error Category: 0
Event: 0 Source: VMCService
conflictManagerTypeValue
Log: 'Application' Date/Time: 08/03/2015 12:31:30
Type: Error Category: 0
Event: 0 Source: VMCService
GetLoggedOnUser
Log: 'Application' Date/Time: 08/03/2015 11:21:55
Type: Error Category: 0
Event: 0 Source: irstrtsv
The event description cannot be found.
Log: 'Application' Date/Time: 08/03/2015 08:55:41
Type: Error Category: 0
Event: 0 Source: irstrtsv
The event description cannot be found.
Log: 'Application' Date/Time: 08/03/2015 08:31:38
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Log: 'Application' Date/Time: 08/03/2015 08:31:38
Type: Error Category: 0
Event: 0 Source: VMCService
conflictManagerTypeValue
Log: 'Application' Date/Time: 07/03/2015 08:56:21
Type: Error Category: 0
Event: 0 Source: VMCService
GetLoggedOnUser
Log: 'Application' Date/Time: 07/03/2015 08:56:18
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Log: 'Application' Date/Time: 07/03/2015 08:56:18
Type: Error Category: 0
Event: 0 Source: VMCService
conflictManagerTypeValue
Log: 'Application' Date/Time: 06/03/2015 09:49:33
Type: Error Category: 0
Event: 0 Source: VMCService
GetLoggedOnUser
Log: 'Application' Date/Time: 06/03/2015 09:49:29
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Log: 'Application' Date/Time: 06/03/2015 09:49:28
Type: Error Category: 0
Event: 0 Source: VMCService
conflictManagerTypeValue
Log: 'Application' Date/Time: 05/03/2015 11:07:47
Type: Error Category: 0
Event: 257 Source: Microsoft-Windows-CAPI2
The Cryptographic Services service failed to initialize the Catalog Database. The ESENT error was: -1305.
Log: 'Application' Date/Time: 05/03/2015 11:07:41
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Log: 'Application' Date/Time: 05/03/2015 11:07:40
Type: Error Category: 0
Event: 0 Source: VMCService
conflictManagerTypeValue
Log: 'Application' Date/Time: 05/03/2015 11:04:47
Type: Error Category: 0
Event: 0 Source: VMCService
GetLoggedOnUser
Log: 'Application' Date/Time: 05/03/2015 11:04:46
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Log: 'Application' Date/Time: 05/03/2015 11:04:45
Type: Error Category: 0
Event: 0 Source: VMCService
conflictManagerTypeValue
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Information Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 09/03/2015 15:03:57
Type: Information Category: 0
Event: 1001 Source: Windows Error Reporting
Fault bucket 987003837, type 21 Event Name: PDUWICA Response: Not available Cab Id: 0 Problem signature: P1: 48 P2: 1.9 P3: 6.1.1.0 P4: 2057 P5: 99 P6: P7: P8: P9: P10: Attached files: These files may be available here: Analysis symbol: Rechecking for solution: 0 Report Id: 76a688c8-c66d-11e4-926c-c485083926e5 Report Status: 0
Log: 'Application' Date/Time: 09/03/2015 15:03:16
Type: Information Category: 3
Event: 2000 Source: UNS
User Notification Service started.
Log: 'Application' Date/Time: 09/03/2015 15:02:50
Type: Information Category: 0
Event: 1 Source: SecurityCenter
The Windows Security Center Service has started.
Log: 'Application' Date/Time: 09/03/2015 15:02:50
Type: Information Category: 0
Event: 902 Source: Microsoft-Windows-Security-SPP
The Software Protection service has started. 6.1.7601.17514
Log: 'Application' Date/Time: 09/03/2015 15:02:50
Type: Information Category: 0
Event: 1003 Source: Microsoft-Windows-Security-SPP
The Software Protection service has completed licensing status check. Application Id=55c92734-d682-4d71-983e-d6ec3f16059f Licensing Status=
1: 4de78642-0f7f-4b61-9392-8add86d70ae8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
2: 50e329f7-a5fa-46b2-85fd-f224e5da7764, 1, 1 [(0 [0x00000000, 1, 0], [(?)(?)( 1 0x00000000 0 0 msft:rm/algorithm/bios/4.0 0x00000000 0)(?)(?)(?)])(1 )(2 )]
3: 5a79ecd8-d33f-406c-a619-7785899b5d59, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
4: 770bc271-8dc1-467d-b574-73cbacbeccd1, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
5: 90a61a0d-0b76-4bf1-a8b8-89061855a4c9, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
6: 92f9d22a-65f5-49a7-90fe-06491b4fc379, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
7: 9abf5984-9c16-46f2-ad1e-7fe15931a8dd, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
8: 9ccffaf9-86a2-414e-b031-b2f777720e90, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
9: b92e9980-b9d5-4821-9c94-140f632f6312, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
10: c1027486-8ae8-4633-9cf9-9658ed80504d, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
11: c1e88de3-96c4-4563-ad7d-775f65b1e670, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
12: c33001fc-5e9c-4f27-8c05-e0154adb0db4, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
13: cf3c5b35-35ff-4c95-9bbd-a188e47ad14c, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
14: cff07cac-7534-4cc3-b3f3-99e1a0aa3c20, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
15: d188820a-cb63-4bad-a9a2-40b843ee23b7, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
16: d8e04254-f9a5-4729-ae86-886de6aa907c, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
17: da22eadd-46dc-4056-a287-f5041c852470, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
18: e120e868-3df2-464a-95a0-b52fa5ada4bf, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
19: e838d943-63ed-4a0b-9fb1-47152908acc9, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
20: 4a8149bb-7d61-49f4-8822-82c7bf88d64b, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
21: afd5f68f-b70f-4000-a21d-28dbc8be8b07, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
Log: 'Application' Date/Time: 09/03/2015 15:02:28
Type: Information Category: 0
Event: 1066 Source: Microsoft-Windows-Security-SPP
Initialization status for service objects. C:\windows\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\windows\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\windows\system32\sppobjs.dll, msft:rm/algorithm/pkey/2005, 0x00000000, 0x00000000
C:\windows\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\windows\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\windows\system32\sppobjs.dll, msft:spp/volume/services/kms/licenserenewal/1.0, 0x00000000, 0x00000000
Log: 'Application' Date/Time: 09/03/2015 15:02:25
Type: Information Category: 0
Event: 900 Source: Microsoft-Windows-Security-SPP
The Software Protection service is starting.
Log: 'Application' Date/Time: 09/03/2015 15:02:21
Type: Information Category: 0
Event: 0 Source: LMS
LMS started
Log: 'Application' Date/Time: 09/03/2015 15:02:17
Type: Information Category: 0
Event: 8224 Source: VSS
The VSS service is shutting down due to idle timeout.
Log: 'Application' Date/Time: 09/03/2015 15:01:19
Type: Information Category: 0
Event: 0 Source: BTHSSecurityMgr
The event description cannot be found.
Log: 'Application' Date/Time: 09/03/2015 14:59:41
Type: Information Category: 0
Event: 0 Source: VMCService
INFO: dom=<HLG-PC>; usr=<HL GORDON>
Log: 'Application' Date/Time: 09/03/2015 14:59:40
Type: Information Category: 0
Event: 0 Source: VMCService
NET REMOVAL ([URL="file://\\?\PCI#VEN_8086&DEV_088E&SUBSYS_40608086&REV_24#4&2fcb9188&0&00E0"]\\?\PCI#VEN_8086&DEV_088E&SUBSYS_40608086&REV_24#4&2fcb9188&0&00E0[/URL])
Log: 'Application' Date/Time: 09/03/2015 14:59:40
Type: Information Category: 0
Event: 0 Source: VMCService
NET REMOVAL ([URL="file://\\?\{5d624f94-8850-40c3-a3fa-a4fd2080baf3}#vwifimp#5&384fba7&0&01"]\\?\{5d624f94-8850-40c3-a3fa-a4fd2080baf3}#vwifimp#5&384fba7&0&01[/URL])
Log: 'Application' Date/Time: 09/03/2015 14:59:39
Type: Information Category: 0
Event: 0 Source: VMCService
NET REMOVAL ([URL="file://\\?\{5d624f94-8850-40c3-a3fa-a4fd2080baf3}#vwifimp#5&384fba7&0&02"]\\?\{5d624f94-8850-40c3-a3fa-a4fd2080baf3}#vwifimp#5&384fba7&0&02[/URL])
Log: 'Application' Date/Time: 09/03/2015 14:59:32
Type: Information Category: 0
Event: 0 Source: VMCService
INFO: dom=<HLG-PC>; usr=<HL GORDON>
Log: 'Application' Date/Time: 09/03/2015 14:59:32
Type: Information Category: 0
Event: 0 Source: VMCService
NET REMOVAL ([URL="file://\\?\BTH#MS_BTHPAN#7&1eb6b00f&0&2"]\\?\BTH#MS_BTHPAN#7&1eb6b00f&0&2[/URL])
Log: 'Application' Date/Time: 09/03/2015 14:58:59
Type: Information Category: 1
Event: 1003 Source: Microsoft-Windows-Search
The Windows Search Service started.
Log: 'Application' Date/Time: 09/03/2015 14:58:58
Type: Information Category: 3
Event: 302 Source: ESENT
Windows (4636) Windows: The database engine has successfully completed recovery steps.
Log: 'Application' Date/Time: 09/03/2015 14:58:57
Type: Information Category: 3
Event: 301 Source: ESENT
Windows (4636) Windows: The database engine has begun replaying logfile C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.
Log: 'Application' Date/Time: 09/03/2015 14:58:57
Type: Information Category: 3
Event: 300 Source: ESENT
Windows (4636) Windows: The database engine is initiating recovery steps.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 08/03/2015 12:31:30
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000_Classes:
Process 6840 (\Device\HarddiskVolume2\Windows\System32\rundll32.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000_CLASSES
Log: 'Application' Date/Time: 08/03/2015 12:31:30
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000:
Process 1028 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Log: 'Application' Date/Time: 07/03/2015 10:21:26
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000:
Process 1028 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Log: 'Application' Date/Time: 06/03/2015 10:19:03
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000:
Process 880 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Log: 'Application' Date/Time: 05/03/2015 11:21:16
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000_Classes:
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000_CLASSES
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000_CLASSES
Log: 'Application' Date/Time: 05/03/2015 11:21:16
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 48 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000:
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Process 644 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\SystemCertificates\Root
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Policies\Microsoft\SystemCertificates
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\SystemCertificates\My
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\SystemCertificates\My
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\SystemCertificates\CA
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\International\Scripts\3
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\MenuExt\E&xport to Microsoft Excel
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\LowRegistry\IEShims\NormalizedPaths
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\LowCache
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\MenuExt\Convert Link Target to Adobe PDF
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\MenuExt\Append to Existing PDF
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\MenuExt
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Windows NT\CurrentVersion
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\Main\FeatureControl
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\MenuExt\Append Link Target to Existing PDF
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\InternetRegistry
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Direct3D
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\SystemCertificates\trust
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Policies
Process 1608 (\Device\HarddiskVolume2\Program Files (x86)\Internet Explorer\iexplore.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000\Software\Microsoft\Internet Explorer\MenuExt\Convert to Adobe PDF
Log: 'Application' Date/Time: 05/03/2015 11:11:00
Type: Warning Category: 0
Event: 6006 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <Profiles> took 115 second(s) to handle the notification event (Logon).
Log: 'Application' Date/Time: 05/03/2015 11:10:04
Type: Warning Category: 0
Event: 6005 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <Profiles> is taking long time to handle the notification event (Logon).
Log: 'Application' Date/Time: 05/03/2015 11:07:03
Type: Warning Category: 0
Event: 6004 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <TrustedInstaller> failed a critical notification event.
Log: 'Application' Date/Time: 05/03/2015 11:05:54
Type: Warning Category: 0
Event: 6006 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <TrustedInstaller> took 63 second(s) to handle the notification event (CreateSession).
Log: 'Application' Date/Time: 05/03/2015 11:05:51
Type: Warning Category: 0
Event: 6005 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <TrustedInstaller> is taking long time to handle the notification event (CreateSession).
Log: 'Application' Date/Time: 05/03/2015 11:02:05
Type: Warning Category: 0
Event: 6004 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <TrustedInstaller> failed a critical notification event.
Log: 'Application' Date/Time: 05/03/2015 10:58:32
Type: Warning Category: 0
Event: 6004 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <TrustedInstaller> failed a critical notification event.
Log: 'Application' Date/Time: 05/03/2015 10:54:18
Type: Warning Category: 0
Event: 6004 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <TrustedInstaller> failed a critical notification event.
Log: 'Application' Date/Time: 05/03/2015 10:51:07
Type: Warning Category: 0
Event: 6004 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <TrustedInstaller> failed a critical notification event.
Log: 'Application' Date/Time: 04/03/2015 21:23:32
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000:
Process 840 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Log: 'Application' Date/Time: 03/03/2015 21:14:08
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000:
Process 1016 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Log: 'Application' Date/Time: 02/03/2015 20:33:35
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000:
Process 948 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Log: 'Application' Date/Time: 02/03/2015 20:28:06
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-1547637008-54338229-3159759193-1000:
Process 740 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-1547637008-54338229-3159759193-1000
Log: 'Application' Date/Time: 02/03/2015 20:12:39
Type: Warning Category: 0
Event: 6004 Source: Microsoft-Windows-Winlogon
The winlogon notification subscriber <TrustedInstaller> failed a critical notification event.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 12/02/2015 20:05:53
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Log: 'System' Date/Time: 12/02/2015 20:00:16
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 09/03/2015 14:58:44
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: cdrom
Log: 'System' Date/Time: 09/03/2015 14:58:37
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963"]\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 09/03/2015 14:58:37
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963"]\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 08/03/2015 12:31:26
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {F32D97DF-E3E5-4CB9-9E3E-0EB5B4E49801} did not register with DCOM within the required timeout.
Log: 'System' Date/Time: 08/03/2015 08:31:42
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: cdrom
Log: 'System' Date/Time: 08/03/2015 08:31:31
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963"]\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 08/03/2015 08:31:31
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963"]\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 07/03/2015 08:56:21
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: cdrom
Log: 'System' Date/Time: 07/03/2015 08:56:14
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963"]\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 07/03/2015 08:56:14
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963"]\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 06/03/2015 09:49:33
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: cdrom
Log: 'System' Date/Time: 06/03/2015 09:49:25
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963"]\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 06/03/2015 09:49:25
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963"]\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 05/03/2015 11:11:05
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80004005: Security Update for Windows 7 for x64-based Systems (KB3031432).
Log: 'System' Date/Time: 05/03/2015 11:11:05
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80004005: Security Update for Windows 7 for x64-based Systems (KB3004375).
Log: 'System' Date/Time: 05/03/2015 11:11:05
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x800f0826: Update for Windows 7 for x64-based Systems (KB3004394).
Log: 'System' Date/Time: 05/03/2015 11:07:44
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: cdrom
Log: 'System' Date/Time: 05/03/2015 11:07:36
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963"]\\?\Volume{f1c240c4-b999-11e1-a6f8-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 05/03/2015 11:07:36
Type: Error Category: 0
Event: 24620 Source: Microsoft-Windows-BitLocker-Driver
Encrypted volume check: Volume information on [URL="file://\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963"]\\?\Volume{a38779c5-9b71-11e1-b9e7-806e6f6e6963[/URL]} cannot be read.
Log: 'System' Date/Time: 05/03/2015 11:04:47
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: cdrom
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Information Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 09/03/2015 15:07:50
Type: Information Category: 0
Event: 7036 Source: Service Control Manager
The Software Protection service entered the stopped state.
Log: 'System' Date/Time: 09/03/2015 15:06:14
Type: Information Category: 0
Event: 7036 Source: Service Control Manager
The Multimedia Class Scheduler service entered the running state.
Log: 'System' Date/Time: 09/03/2015 15:05:32
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:05:22
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:05:18
Type: Information Category: 0
Event: 7036 Source: Service Control Manager
The Microsoft Software Shadow Copy Provider service entered the stopped state.
Log: 'System' Date/Time: 09/03/2015 15:05:17
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:05:13
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:05:12
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:05:11
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:05:10
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:05:10
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:05:06
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:05:05
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:04:48
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:04:47
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:04:47
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:04:47
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:04:38
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:04:37
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
Log: 'System' Date/Time: 09/03/2015 15:04:37
Type: Information Category: 0
Event: 7045 Source: Service Control Manager
A service was installed in the system. Service Name: RapportIaso Service File Name: c:\programdata\trusteer\rapport\store\exts\rapportms\baseline\rapportiaso64.sys Service Type: kernel mode driver Service Start Type: demand start Service Account:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 09/03/2015 14:59:37
Type: Warning Category: 0
Event: 10002 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN Extensibility Module has stopped. Module Path: C:\windows\System32\IWMSSvc.dll
Log: 'System' Date/Time: 09/03/2015 14:58:31
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device Root\PARAGONBLOCKDEVICE\0000.
Log: 'System' Date/Time: 09/03/2015 14:58:31
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device ACPI\ACPI0008\5&15d725f4&0.
Log: 'System' Date/Time: 08/03/2015 12:31:36
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.
Log: 'System' Date/Time: 08/03/2015 08:32:26
Type: Warning Category: 0
Event: 10002 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN Extensibility Module has stopped. Module Path: C:\windows\System32\IWMSSvc.dll
Log: 'System' Date/Time: 08/03/2015 08:31:25
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device Root\PARAGONBLOCKDEVICE\0000.
Log: 'System' Date/Time: 08/03/2015 08:31:25
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device ACPI\ACPI0008\5&15d725f4&0.
Log: 'System' Date/Time: 07/03/2015 10:21:30
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.
Log: 'System' Date/Time: 07/03/2015 10:21:02
Type: Warning Category: 0
Event: 10002 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN Extensibility Module has stopped. Module Path: C:\windows\System32\IWMSSvc.dll
Log: 'System' Date/Time: 07/03/2015 10:00:28
Type: Warning Category: 0
Event: 10002 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN Extensibility Module has stopped. Module Path: C:\windows\System32\IWMSSvc.dll
Log: 'System' Date/Time: 07/03/2015 09:19:38
Type: Warning Category: 0
Event: 10002 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN Extensibility Module has stopped. Module Path: C:\windows\System32\IWMSSvc.dll
Log: 'System' Date/Time: 07/03/2015 08:57:18
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name ctldl.windowsupdate.com timed out after none of the configured DNS servers responded.
Log: 'System' Date/Time: 07/03/2015 08:57:09
Type: Warning Category: 0
Event: 10002 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN Extensibility Module has stopped. Module Path: C:\windows\System32\IWMSSvc.dll
Log: 'System' Date/Time: 07/03/2015 08:56:07
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device Root\PARAGONBLOCKDEVICE\0000.
Log: 'System' Date/Time: 07/03/2015 08:56:07
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device ACPI\ACPI0008\5&15d725f4&0.
Log: 'System' Date/Time: 06/03/2015 10:19:08
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.
Log: 'System' Date/Time: 06/03/2015 09:50:28
Type: Warning Category: 0
Event: 10002 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN Extensibility Module has stopped. Module Path: C:\windows\System32\IWMSSvc.dll
Log: 'System' Date/Time: 06/03/2015 09:49:19
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device Root\PARAGONBLOCKDEVICE\0000.
Log: 'System' Date/Time: 06/03/2015 09:49:19
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device ACPI\ACPI0008\5&15d725f4&0.
Log: 'System' Date/Time: 05/03/2015 11:21:18
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.
I notice a line that says: The driver \Driver\WUDFRd failed to load for the device Root\PARAGONBLOCKDEVICE\0000.
I have Paragon HD Manager 12 on both machines.
Windows Driver Foundation - User-mode Driver Framework is set to manual and is running. Not sure if this is important or not.