Član
- Učlanjen(a)
- 06.09.2009
- Poruka
- 239
Pozdrav svima.Instalirao sam danas cistu sedmicu,i kada restartujem kompjuter dobijam ovakvo obavestenje:
Log Name: Application
Source: Microsoft-Windows-User Profiles Service
Date: 03-Nov-17 16:27:46
Event ID: 1530
Task Category: None
Level: Warning
Keywords:
User: SYSTEM
Computer: Dusan-PC
Description:
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.
DETAIL -
15 user registry handles leaked from \Registry\User\S-1-5-21-3948959264-3135342632-3574142430-1000:
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\My
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\CA
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\trust
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\Root
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
<EventID>1530</EventID>
<Version>0</Version>
<Level>3</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2017-11-03T15:27:46.650014200Z" />
<EventRecordID>530</EventRecordID>
<Correlation />
<Execution ProcessID="1104" ThreadID="5020" />
<Channel>Application</Channel>
<Computer>Dusan-PC</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData Name="EVENT_HIVE_LEAK">
<Data Name="Detail">15 user registry handles leaked from \Registry\User\S-1-5-21-3948959264-3135342632-3574142430-1000:
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\My
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\CA
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\trust
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\Root
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\TrustedPeople
</Data>
</EventData>
</Event>
Zna li neko kako se ovo resava?
Log Name: Application
Source: Microsoft-Windows-User Profiles Service
Date: 03-Nov-17 16:27:46
Event ID: 1530
Task Category: None
Level: Warning
Keywords:
User: SYSTEM
Computer: Dusan-PC
Description:
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.
DETAIL -
15 user registry handles leaked from \Registry\User\S-1-5-21-3948959264-3135342632-3574142430-1000:
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\My
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\CA
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\trust
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\Root
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
<EventID>1530</EventID>
<Version>0</Version>
<Level>3</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2017-11-03T15:27:46.650014200Z" />
<EventRecordID>530</EventRecordID>
<Correlation />
<Execution ProcessID="1104" ThreadID="5020" />
<Channel>Application</Channel>
<Computer>Dusan-PC</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData Name="EVENT_HIVE_LEAK">
<Data Name="Detail">15 user registry handles leaked from \Registry\User\S-1-5-21-3948959264-3135342632-3574142430-1000:
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\My
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\CA
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\trust
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\Root
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Policies\Microsoft\SystemCertificates
Process 1980 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Free 18.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-3948959264-3135342632-3574142430-1000\Software\Microsoft\SystemCertificates\TrustedPeople
</Data>
</EventData>
</Event>
Zna li neko kako se ovo resava?