This is a read-only archive. No new posts or registrations. Privacy Page
Software

Windows Host Process Has Stopped Working

32 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hi,

I'm continually having the following message pop-up:

📎Rundll32.jpg

What is the best way to fix this please. I have already tried system restore but it hasn't worked.


EDIT: I'm going to replace rundll32.exe with the version on my Backup disc
Hi Ztrucker

I did have a look earlier but I couldn't decipher the information.


- System 

  - Provider 

   [ Name]  Application Error 
 
  - EventID 1000 

   [ Qualifiers]  0 
 
   Level 2 
 
   Task 100 
 
   Keywords 0x80000000000000 
 
  - TimeCreated 

   [ SystemTime]  2012-10-27T15:02:13.000Z 
 
   EventRecordID 7436 
 
   Channel Application 
 
   Computer Dan-PC 
 
   Security 
 

- EventData 

   RunDLL32.exe 
   6.0.6000.16386 
   4549b0e1 
   unknown 
   0.0.0.0 
   00000000 
   c0000005 
   00000000 
   f98 
   01cdb4540bd2862f
Download Vino's Event Viewer. No install needed, just double click on it to run.

Check the Application and System boxes.
Check the Error and Warning boxes. If Windows Vista or Windows 7 also click Critical (not XP).
Under Number or date of events select Number of events and type 20 in the box next to 1 to 20 and click Run
Once it finishes it will display a log file in notepad.
Copy and paste its entire contents into your next reply.
Sorry for the late reply, I was sure that I had already posted a response. :smack:
📎VEW.txt
Vino's Event Viewer v01c run on Windows Vista in English
Report run at 30/10/2012 20:00:55

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 30/10/2012 16:54:59
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 30/10/2012 15:34:51
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 30/10/2012 14:18:15
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 30/10/2012 14:01:04
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 30/10/2012 13:38:11
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledSPRetry 4430

Log: 'Application' Date/Time: 30/10/2012 13:38:11
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledEvent 4430

Log: 'Application' Date/Time: 30/10/2012 13:38:11
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: Continuously busy for more than a second

Log: 'Application' Date/Time: 30/10/2012 13:38:10
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledSPRetry 3416

Log: 'Application' Date/Time: 30/10/2012 13:38:10
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledEvent 3416

Log: 'Application' Date/Time: 30/10/2012 13:38:10
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: Continuously busy for more than a second

Log: 'Application' Date/Time: 30/10/2012 13:38:09
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledSPRetry 2356

Log: 'Application' Date/Time: 30/10/2012 13:38:09
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledEvent 2356

Log: 'Application' Date/Time: 30/10/2012 13:38:09
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: Continuously busy for more than a second

Log: 'Application' Date/Time: 30/10/2012 13:38:08
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledSPRetry 1030

Log: 'Application' Date/Time: 30/10/2012 13:38:08
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledEvent 1030

Log: 'Application' Date/Time: 30/10/2012 13:38:08
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: Continuously busy for more than a second

Log: 'Application' Date/Time: 30/10/2012 08:18:48
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 29/10/2012 18:50:04
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 29/10/2012 15:22:45
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 29/10/2012 12:52:17
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 30/10/2012 13:31:42
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 30/10/2012 13:31:42
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 30/10/2012 13:31:42
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 30/10/2012 13:31:42
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 28/10/2012 02:58:15
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 3584 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 3584 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 28/10/2012 02:58:15
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 3584 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 26/10/2012 00:24:05
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 3232 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 26/10/2012 00:24:04
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 3232 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 25/10/2012 18:35:43
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   3 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\MuiCache


Log: 'Application' Date/Time: 25/10/2012 18:35:41
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000\Software\Microsoft\Windows\CurrentVersion\Explorer


Log: 'Application' Date/Time: 25/10/2012 08:54:51
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 2072 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 2072 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 25/10/2012 08:54:50
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 2072 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 24/10/2012 23:12:58
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 3088 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 3088 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 24/10/2012 23:12:56
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 3088 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 23/10/2012 16:05:45
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 1080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 1080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 23/10/2012 16:05:44
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 1080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 23/10/2012 16:05:33
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 23/10/2012 16:05:33
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 23/10/2012 16:05:33
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 20/10/2012 06:01:00
Type: Warning Category: 1
Event: 1008 Source: Microsoft-Windows-Search
The Windows Search Service is attempting to remove the old catalog. 


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 28/10/2012 11:57:59
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 25/10/2012 17:44:53
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 25/10/2012 16:52:51
Type: Error Category: 0
Event: 7011 Source: Service Control Manager
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service.

Log: 'System' Date/Time: 21/10/2012 18:29:14
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 21/10/2012 18:21:42
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 21/10/2012 18:05:14
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.0.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 21/10/2012 18:05:13
Type: Error Category: 0
Event: 6008 Source: EventLog
The previous system shutdown at 18:58:38 on 21/10/2012 was unexpected.

Log: 'System' Date/Time: 21/10/2012 16:30:38
Type: Error Category: 0
Event: 7011 Source: Service Control Manager
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service.

Log: 'System' Date/Time: 18/10/2012 18:50:08
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.0.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.0.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 18/10/2012 18:50:08
Type: Error Category: 0
Event: 6008 Source: EventLog
The previous system shutdown at 19:48:12 on 18/10/2012 was unexpected.

Log: 'System' Date/Time: 13/10/2012 16:20:00
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.0.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.0.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 13/10/2012 01:23:30
Type: Error Category: 0
Event: 7011 Source: Service Control Manager
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the TrkWks service.

Log: 'System' Date/Time: 13/10/2012 01:22:59
Type: Error Category: 0
Event: 7011 Source: Service Control Manager
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the TrkWks service.

Log: 'System' Date/Time: 09/10/2012 18:07:17
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Windows Search service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 09/10/2012 18:07:17
Type: Error Category: 0
Event: 7009 Source: Service Control Manager
A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

Log: 'System' Date/Time: 09/10/2012 18:07:17
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Windows Search service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 09/10/2012 18:07:17
Type: Error Category: 0
Event: 7009 Source: Service Control Manager
A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

Log: 'System' Date/Time: 09/10/2012 18:05:50
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Windows Search service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 09/10/2012 18:05:50
Type: Error Category: 0
Event: 7009 Source: Service Control Manager
A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

Log: 'System' Date/Time: 09/10/2012 18:05:50
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Windows Search service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 30/10/2012 15:45:50
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 30/10/2012 14:02:07
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 30/10/2012 13:38:55
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 29/10/2012 14:56:42
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 29/10/2012 08:55:12
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 29/10/2012 08:08:39
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 28/10/2012 18:54:48
Type: Warning Category: 223
Event: 225 Source: Microsoft-Windows-Kernel-PnP
The application System with process id 4 stopped the removal or ejection for the device USB\VID_0BC2&PID_3000\____________3QK0BL11.

Log: 'System' Date/Time: 28/10/2012 11:57:59
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
The event description cannot be found.

Log: 'System' Date/Time: 28/10/2012 02:58:24
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 27/10/2012 10:34:03
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 27/10/2012 06:49:49
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 27/10/2012 02:07:06
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 26/10/2012 21:32:58
Type: Warning Category: 0
Event: 6037 Source: LsaSrv
The program lsass.exe, with the assigned process ID 732, could not authenticate locally by using the target name host/\\Dan-PC. The target name used is not valid. A target name should refer to one of the local computer names, for example, the DNS host name.	Try a different target name.

Log: 'System' Date/Time: 26/10/2012 15:18:25
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 26/10/2012 05:57:51
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 25/10/2012 21:31:09
Type: Warning Category: 223
Event: 225 Source: Microsoft-Windows-Kernel-PnP
The application \Device\HarddiskVolume2\Windows\explorer.exe with process id 400 stopped the removal or ejection for the device USB\VID_0BB4&PID_0CF5&MI_00\6&c50aa22&0&0000.

Log: 'System' Date/Time: 25/10/2012 21:12:17
Type: Warning Category: 223
Event: 225 Source: Microsoft-Windows-Kernel-PnP
The application \Device\HarddiskVolume2\Windows\explorer.exe with process id 400 stopped the removal or ejection for the device USB\VID_0BB4&PID_0CF5&MI_00\6&c50aa22&0&0000.

Log: 'System' Date/Time: 25/10/2012 18:35:48
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 25/10/2012 17:44:53
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
The event description cannot be found.

Log: 'System' Date/Time: 25/10/2012 17:44:36
Type: Warning Category: 0
Event: 4 Source: b57nd60x
Broadcom NetXtreme Gigabit Ethernet: The network link is down.  Check to make sure the network cable is properly connected.
Although there are a lot of errors in there none seem related to the rundll32 popup you are seeing.

When do you get the popup? If it's often, try booting to Safe Mode with Networking, see if it shows up there. If not then follow these directions:

How does it behave if you boot to Safe Mode with Networking? If better then something is starting at boot that is causing the problem.

Advanced startup options - XP
Advanced startup options - Vista
Advanced startup options - Windows 7

Use msconfig to determine what is causing the problem

These are good tutorials on using msconfig in XP, Vista or Windows 7:
How to use msconfig in Windows XP
How to use msconfig in Windows Vista
How to use msconfig in Windows 7

Click on Start then Run, type msconfig and press Enter.
Click on the Startup tab, record what is currently starting then click the Disable All button.
Reboot and see if it runs better.
If yes then use msconfig to enable several items at a time till you find the culprit.

If no, start msconfig and click on the Services tab.
Check the Hide All Microsoft Services box, record what is currently starting then click the Disable All button.
Again, do a regular boot, see if it runs normal.
If yes then use msconfig to enable services till you find the culprit.

Once you've found the culprit, uninstall it or find out how to eliminate it from your system. Simply disabling it in msconfig is a temporary fix at best.
Enable everything else you disabled.
I thought I had resolved the problem when I replaced my original rundll file with a fresh one, but I've just this minute had the error pop-up whilst opening a mpeg with VLC player
I've posted an updated log from a VEW scan below. Would you mind taking a look again please? I think the error is the first one listed at 23:22:55


Problem signature:
  Problem Event Name:	BEX
  Application Name:	RunDLL32.exe
  Application Version:	6.0.6000.16386
  Application Timestamp:	4549b0e1
  Fault Module Name:	StackHash_3be7
  Fault Module Version:	0.0.0.0
  Fault Module Timestamp:	00000000
  Exception Offset:	00000000
  Exception Code:	c0000005
  Exception Data:	00000008
  OS Version:	6.0.6002.2.2.0.768.2
  Locale ID:	2057
  Additional Information 1:	3be7
  Additional Information 2:	e8f4a7c6d867e4929f4fd347fae9fec1
  Additional Information 3:	1dc8
  Additional Information 4:	04d982a1056f7f92e31467fb98cafd68

Read our privacy statement:
  http://go.microsoft.com/fwlink/?linkid=50163&clcid=0x0409

📎VEW.txt
Vino's Event Viewer v01c run on Windows Vista in English
Report run at 03/11/2012 23:31:55

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 03/11/2012 23:22:55
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application RunDLL32.exe, version 6.0.6000.16386, time stamp 0x4549b0e1, faulting module unknown, version 0.0.0.0, time stamp 0x00000000, exception code 0xc0000005, fault offset 0x00000000, process id 0x240, application start time 0x01cdba1a25bf95e3.

Log: 'Application' Date/Time: 03/11/2012 16:56:25
Type: Error Category: 101
Event: 1002 Source: Application Hang
The program firefox.exe version 16.0.2.4680 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: c98 Start Time: 01cdb9ddaf9f5123 Termination Time: 24

Log: 'Application' Date/Time: 03/11/2012 16:06:00
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 03/11/2012 08:20:33
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 02/11/2012 18:35:06
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 02/11/2012 12:13:21
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 02/11/2012 07:12:06
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 02/11/2012 00:17:47
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 01/11/2012 19:08:18
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 01/11/2012 18:57:29
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 01/11/2012 18:47:14
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 01/11/2012 15:45:53
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 01/11/2012 14:24:48
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 01/11/2012 13:09:39
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Log: 'Application' Date/Time: 01/11/2012 10:29:45
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledSPRetry 4290

Log: 'Application' Date/Time: 01/11/2012 10:29:45
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledEvent 4290

Log: 'Application' Date/Time: 01/11/2012 10:29:45
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: Continuously busy for more than a second

Log: 'Application' Date/Time: 01/11/2012 10:29:44
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledSPRetry 3260

Log: 'Application' Date/Time: 01/11/2012 10:29:44
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: m->NextScheduledEvent 3260

Log: 'Application' Date/Time: 01/11/2012 10:29:44
Type: Error Category: 0
Event: 100 Source: Bonjour Service
Task Scheduling Error: Continuously busy for more than a second

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 01/11/2012 15:11:29
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 1908 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 1908 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 01/11/2012 15:11:28
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 1908 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 30/10/2012 22:31:52
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 872 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 872 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 30/10/2012 22:31:51
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 872 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 30/10/2012 13:31:42
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 30/10/2012 13:31:42
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 30/10/2012 13:31:42
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 30/10/2012 13:31:42
Type: Warning Category: 0
Event: 0 Source: AtBroker
The event description cannot be found.

Log: 'Application' Date/Time: 28/10/2012 02:58:15
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 3584 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 3584 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 28/10/2012 02:58:15
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 3584 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 26/10/2012 00:24:05
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 3232 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 26/10/2012 00:24:04
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 3232 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 25/10/2012 18:35:43
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   3 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\MuiCache


Log: 'Application' Date/Time: 25/10/2012 18:35:41
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000
Process 2080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000\Software\Microsoft\Windows\CurrentVersion\Explorer


Log: 'Application' Date/Time: 25/10/2012 08:54:51
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 2072 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 2072 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 25/10/2012 08:54:50
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 2072 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 24/10/2012 23:12:58
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 3088 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 3088 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 24/10/2012 23:12:56
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 3088 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


Log: 'Application' Date/Time: 23/10/2012 16:05:45
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000_Classes:
Process 1080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES
Process 1080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000_CLASSES


Log: 'Application' Date/Time: 23/10/2012 16:05:44
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.	 DETAIL -   1 user registry handles leaked from \Registry\User\S-1-5-21-2148501771-2967246384-2654231382-1000:
Process 1080 (\Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\egui.exe) has opened key \REGISTRY\USER\S-1-5-21-2148501771-2967246384-2654231382-1000


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 03/11/2012 00:01:58
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 02/11/2012 23:54:05
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 02/11/2012 23:46:27
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 01/11/2012 20:49:51
Type: Error Category: 0
Event: 7030 Source: Service Control Manager
The ESET Service service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.

Log: 'System' Date/Time: 01/11/2012 19:06:35
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 01/11/2012 19:06:34
Type: Error Category: 0
Event: 6008 Source: EventLog
The previous system shutdown at 19:00:45 on 01/11/2012 was unexpected.

Log: 'System' Date/Time: 01/11/2012 18:55:46
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 01/11/2012 18:55:45
Type: Error Category: 0
Event: 6008 Source: EventLog
The previous system shutdown at 18:48:31 on 01/11/2012 was unexpected.

Log: 'System' Date/Time: 01/11/2012 18:45:35
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 01/11/2012 13:07:58
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 01/11/2012 13:07:57
Type: Error Category: 0
Event: 6008 Source: EventLog
The previous system shutdown at 12:42:41 on 01/11/2012 was unexpected.

Log: 'System' Date/Time: 28/10/2012 11:57:59
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 25/10/2012 17:44:53
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 25/10/2012 16:52:51
Type: Error Category: 0
Event: 7011 Source: Service Control Manager
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service.

Log: 'System' Date/Time: 21/10/2012 18:29:14
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 21/10/2012 18:21:42
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.1.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 21/10/2012 18:05:14
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.0.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).

Log: 'System' Date/Time: 21/10/2012 18:05:13
Type: Error Category: 0
Event: 6008 Source: EventLog
The previous system shutdown at 18:58:38 on 21/10/2012 was unexpected.

Log: 'System' Date/Time: 21/10/2012 16:30:38
Type: Error Category: 0
Event: 7011 Source: Service Control Manager
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service.

Log: 'System' Date/Time: 18/10/2012 18:50:08
Type: Error Category: 0
Event: 1002 Source: Microsoft-Windows-Dhcp-Client
The IP address lease 192.168.0.2 for the Network Card with network address 00238B0A095C has been denied by the DHCP server 192.168.0.1 (The DHCP Server sent a DHCPNACK message).

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 03/11/2012 11:04:11
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 03/11/2012 02:34:14
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 03/11/2012 00:01:58
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
The event description cannot be found.

Log: 'System' Date/Time: 03/11/2012 00:01:37
Type: Warning Category: 0
Event: 4 Source: b57nd60x
Broadcom NetXtreme Gigabit Ethernet: The network link is down.  Check to make sure the network cable is properly connected.

Log: 'System' Date/Time: 02/11/2012 23:54:05
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
The event description cannot be found.

Log: 'System' Date/Time: 02/11/2012 23:52:32
Type: Warning Category: 0
Event: 4 Source: b57nd60x
Broadcom NetXtreme Gigabit Ethernet: The network link is down.  Check to make sure the network cable is properly connected.

Log: 'System' Date/Time: 02/11/2012 23:51:32
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
Your computer was not able to renew its address from the network (from the DHCP Server) for the Network Card with network address 00238B0A095C.  The following error occurred:  The operation was canceled by the user.. Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.

Log: 'System' Date/Time: 02/11/2012 23:46:27
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
The event description cannot be found.

Log: 'System' Date/Time: 02/11/2012 23:46:05
Type: Warning Category: 0
Event: 4 Source: b57nd60x
Broadcom NetXtreme Gigabit Ethernet: The network link is down.  Check to make sure the network cable is properly connected.

Log: 'System' Date/Time: 02/11/2012 07:59:49
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 02/11/2012 00:23:11
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 01/11/2012 19:06:35
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
The event description cannot be found.

Log: 'System' Date/Time: 01/11/2012 18:55:46
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
The event description cannot be found.

Log: 'System' Date/Time: 01/11/2012 18:45:35
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
The event description cannot be found.

Log: 'System' Date/Time: 01/11/2012 16:26:33
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 01/11/2012 15:11:32
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped. 

Log: 'System' Date/Time: 01/11/2012 13:07:58
Type: Warning Category: 0
Event: 1003 Source: Microsoft-Windows-Dhcp-Client
The event description cannot be found.

Log: 'System' Date/Time: 31/10/2012 23:10:30
Type: Warning Category: 0
Event: 6037 Source: LsaSrv
The program lsass.exe, with the assigned process ID 736, could not authenticate locally by using the target name host/\\Dan-PC. The target name used is not valid. A target name should refer to one of the local computer names, for example, the DNS host name.	Try a different target name.

Log: 'System' Date/Time: 31/10/2012 20:59:06
Type: Warning Category: 0
Event: 6037 Source: LsaSrv
The program lsass.exe, with the assigned process ID 736, could not authenticate locally by using the target name host/\\Dan-PC. The target name used is not valid. A target name should refer to one of the local computer names, for example, the DNS host name.	Try a different target name.

Log: 'System' Date/Time: 31/10/2012 08:28:30
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI