Below I've listed a couple of ERROR and a couple of WARNING MESSAGES which now abound in EVENT VIEWER since the installation of SP1. Any comments would be appreciated. Geez, you could GOOGLE yourself silly with this stuff; there was life before VISTA!
ERROR:
Log Name: System
Source: Microsoft-Windows-HttpEvent
Date: 5/11/2008 19:29:43
Event ID: 15016
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: hdbg62-PC
Description:
Unable to initialize the security package Kerberos for server side authentication. The data field contains the error number.
Event Xml:
<Event xmlns="
http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-HttpEvent" Guid="{7b6bc78c-898b-4170-bbf8-1a469ea43fc5}" EventSourceName="HTTP" />
<EventID Qualifiers="49152">15016</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2008-05-12T00:29:43.752Z" />
<EventRecordID>27929</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="48" />
<Channel>System</Channel>
<Computer>hdbg62-PC</Computer>
<Security />
</System>
<EventData>
<Data Name="DeviceObject">\Device\Http\ReqQueue</Data>
<Data Name="SecurityPackage">Kerberos</Data>
<Binary>000004000200300000000000A83A00C00000000000000000000000000000000000000000000000000E030980</Binary>
</EventData>
</Event>
<Execution ProcessID="4" ThreadID="60" />
<Channel>System</Channel>
<Computer>hdbg62-PC</Computer>
<Security />
</System>
<EventData>
<Data Name="DeviceObject">\Device\Http\ReqQueue</Data>
<Data Name="SecurityPackage">Kerberos</Data>
<Binary>000004000200300000000000A83A00C00000000000000000000000000000000000000000000000000E030980</Binary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Dhcp-Client
Date: 5/11/2008 15:29:21
Event ID: 1002
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: hdbg62-PC
Description:
The IP address lease 192.168.1.64 for the Network Card with network address 001D098A33B7 has been denied by the DHCP server 192.168.0.1 (The DHCP Server sent a DHCPNACK message).
Event Xml:
<Event xmlns="
http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Dhcp-Client" Guid="{15A7A4F8-0072-4EAB-ABAD-F98A4D666AED}" EventSourceName="Dhcp" />
<EventID Qualifiers="0">1002</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2008-05-11T20:29:21.000Z" />
<EventRecordID>27671</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>hdbg62-PC</Computer>
<Security />
</System>
<EventData>
<Data>192.168.1.64</Data>
<Data>001D098A33B7</Data>
<Data>192.168.0.1</Data>
</EventData>
</Event>
WARNING:
Log Name: Application
Source: Microsoft-Windows-User Profiles Service
Date: 5/11/2008 17:36:28
Event ID: 1530
Task Category: None
Level: Warning
Keywords: Classic
User: SYSTEM
Computer: hdbg62-PC
Description:
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.
DETAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-201424868-309763313-2130168460-1000:
Process 960 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-201424868-309763313-2130168460-1000
Event Xml:
<Event xmlns="
http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" EventSourceName="profsvc" />
<EventID Qualifiers="32768">1530</EventID>
<Version>0</Version>
<Level>3</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2008-05-11T22:36:28.000Z" />
<EventRecordID>3934</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>Application</Channel>
<Computer>hdbg62-PC</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData Name="EVENT_HIVE_LEAK">
<Data Name="Detail">1 user registry handles leaked from \Registry\User\S-1-5-21-201424868-309763313-2130168460-1000:
Process 960 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-201424868-309763313-2130168460-1000
</Data>
</EventData>
</Event>
Log Name: System
Source: e1express
Date: 5/11/2008 16:02:57
Event ID: 30
Task Category: None
Level: Warning
Keywords: Classic
User: N/A
Computer: hdbg62-PC
Description:
Intel(R) 82562V-2 10/100 Network Connection is set up for auto-negotiation but the link partner is not configured for auto-negotiation. A duplex mismatch may occur.
Event Xml:
<Event xmlns="
http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="e1express" />
<EventID Qualifiers="40964">30</EventID>
<Level>3</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2008-05-11T21:02:57.875Z" />
<EventRecordID>27792</EventRecordID>
<Channel>System</Channel>
<Computer>hdbg62-PC</Computer>
<Security />
</System>
<EventData>
<Data>\Device\NDMP2</Data>
<Data>Intel(R) 82562V-2 10/100 Network Connection</Data>
<Binary>0000040002003400000000001E0004A00000000000000000000000000000000000000000000000001E0004A0</Binary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Dhcp-Client
Date: 5/11/2008 15:30:34
Event ID: 1003
Task Category: None
Level: Warning
Keywords: Classic
User: N/A
Computer: hdbg62-PC
Description:
Your computer was not able to renew its address from the network (from the DHCP Server) for the Network Card with network address 001D098A33B7. The following error occurred:
The semaphore timeout period has expired.. Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.
Event Xml:
<Event xmlns="
http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Dhcp-Client" Guid="{15A7A4F8-0072-4EAB-ABAD-F98A4D666AED}" EventSourceName="Dhcp" />
<EventID Qualifiers="0">1003</EventID>
<Version>0</Version>
<Level>3</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2008-05-11T20:30:34.000Z" />
<EventRecordID>27677</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>hdbg62-PC</Computer>
<Security />
</System>
<EventData>
<Data>001D098A33B7</Data>
<Data>%%121</Data>
</EventData>
</Event>