none
User Profile Service Need Help RRS feed

  • Question

  • Why do i keep getting this Warning O-O

    Log Name:      Application
    Source:        Microsoft-Windows-User Profiles Service
    Date:          4/19/2012 3:52:39 PM
    Event ID:      1530
    Task Category: None
    Level:         Warning
    Keywords:     
    User:          SYSTEM
    Computer:      Robert-PC
    Description:
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. 

     DETAIL -
     5 user registry handles leaked from \Registry\User\S-1-5-21-4192756937-1758830042-41877231-1000:
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000\Software\Policies\Microsoft\SystemCertificates
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000\Software\Microsoft\SystemCertificates\trust
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000\Software\Microsoft\SystemCertificates\Root

    Event Xml:
    <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
      <System>
        <Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
        <EventID>1530</EventID>
        <Version>0</Version>
        <Level>3</Level>
        <Task>0</Task>
        <Opcode>0</Opcode>
        <Keywords>0x8000000000000000</Keywords>
        <TimeCreated SystemTime="2012-04-19T19:52:39.175836400Z" />
        <EventRecordID>4038</EventRecordID>
        <Correlation />
        <Execution ProcessID="968" ThreadID="3584" />
        <Channel>Application</Channel>
        <Computer>Robert-PC</Computer>
        <Security UserID="S-1-5-18" />
      </System>
      <EventData Name="EVENT_HIVE_LEAK">
        <Data Name="Detail">5 user registry handles leaked from \Registry\User\S-1-5-21-4192756937-1758830042-41877231-1000:
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000\Software\Policies\Microsoft\SystemCertificates
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000\Software\Microsoft\SystemCertificates\trust
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
    Process 1636 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-4192756937-1758830042-41877231-1000\Software\Microsoft\SystemCertificates\Root
    </Data>
      </EventData>
    </Event>

    Thursday, April 19, 2012 11:39 PM

Answers