The screen went blue with the following
written on it:

STOP: (0.00000050 (0xBAD0B148)
0X00000000,

0X805B9EC9

0X00000003)

I restarted the computer and all seems well
so far. What could cause this problem?

Re: Error message appeared suddenly. by Shenan

Shenan
Sat May 17 22:14:08 PDT 2008

Frank Martin wrote:
> The screen went blue with the following
> written on it:
>
> STOP: (0.00000050 (0xBAD0B148)
> 0X00000000,
>
> 0X805B9EC9
>
> 0X00000003)
>
> I restarted the computer and all seems well
> so far. What could cause this problem?

Try updating your video card driver from your video card manufacturer web
page...

--
Shenan Stanley
MS-MVP
--
How To Ask Questions The Smart Way
http://www.catb.org/~esr/faqs/smart-questions.html



Re: Error message appeared suddenly. by philo

philo
Sun May 18 09:07:54 PDT 2008


"Frank Martin" <fm@general.com.au> wrote in message
news:O$Bg6TKuIHA.2208@TK2MSFTNGP04.phx.gbl...
> The screen went blue with the following
> written on it:
>
> STOP: (0.00000050 (0xBAD0B148)
> 0X00000000,
>
> 0X805B9EC9
>
> 0X00000003)
>
> I restarted the computer and all seems well
> so far. What could cause this problem?
>
>
>
>
>
>

Have a look in control panel...administrative tools

event viewer



Re: Error message appeared suddenly. by Gerry

Gerry
Mon May 19 01:57:05 PDT 2008

Frank

Background information on Stop Error message
http://msdn2.microsoft.com/en-us/library/ms793437.aspx

0x00000050: PAGE_FAULT_IN_NONPAGED_AREA
(Click to consult the online MSDN article.)
Requested data was not in memory. An invalid system memory address was
referenced. Defective memory (including main memory, L2 RAM cache, video
RAM) or incompatible software (including remote control and antivirus
software) might cause this Stop message, as may other hardware problems
(e.g., incorrect SCSI termination or a flawed PCI card).
Source: http://aumha.org/a/stop.htm

Remove the dust bunnies and test the RAM memory
http://www.elephantboycomputers.com/page2.html#Hardware_Tshoot

Check the hard drive for bad sectors by running chkdsk /f /r

Check the System log of Event Viewer for Error Reports.

Please post copies of all Error and Warning Reports appearing in the
System log in Event Viewer for the last boot. No Information Reports or
Duplicates please. Indicate which also appear in a previous boot.

You can access Event Viewer by selecting Start, Control Panel,
Administrative Tools, and Event Viewer.

A tip for posting copies of Error Reports! Run Event Viewer and double
click on the error you want to copy. In the window, which appears is a
button resembling two pages. Click the button and close Event
Viewer.Now start your message (email) and do a paste into the body of
the message. Make sure this is the first paste after exiting from
Event Viewer.

Are there any yellow question marks in Device Manager? Right click on
the My Computer icon on your Desktop and select Properties,
Hardware,Device Manager. If yes what is the Device Error code?

Try Start, Run, type "sigverif.exe" without quotes and hit OK. What
drivers are listed as unsigned? Disregard those which are not checked.

--



Hope this helps.

Gerry
~~~~
FCA
Stourport, England
Enquire, plan and execute
~~~~~~~~~~~~~~~~~~~


Frank Martin wrote:
> The screen went blue with the following
> written on it:
>
> STOP: (0.00000050 (0xBAD0B148)
> 0X00000000,
>
> 0X805B9EC9
>
> 0X00000003)
>
> I restarted the computer and all seems well
> so far. What could cause this problem?



Re: Error message appeared suddenly. by Frank

Frank
Mon May 19 15:24:18 PDT 2008

Thanks. I have copied all the recent yellow
& red messages in the Computer Management
System Events" and these are shown below.
Also, there were 96 unsigned files shown by
the "sigverif.exe" but I do not know how to
copy these here.

Red/Yellow messages follow. Please advise.

******************************
Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:49:54 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the TrkWks service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:50:24 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:51:24 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the TrkWks service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:51:54 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:52:25 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:52:55 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the TrkWks service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:53:25 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.



Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:53:55 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:54:25 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.



Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:54:55 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:55:25 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:55:55 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:56:25 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:56:56 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the TrkWks service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: Service Control
Manager

Event Category: None

Event ID: 7011

Date: 4/05/2008

Time: 10:57:26 AM

User: N/A

Computer: GENCHEM

Description:

Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: SideBySide

Event Category: None

Event ID: 61

Date: 5/05/2008

Time: 11:06:00 AM

User: N/A

Computer: GENCHEM

Description:

Syntax error in manifest or policy file
"C:\Program Files\Apple Software
Update\Plugins\EXEInstallPlugin.dll.Manifest"
on line 2. The required attribute version is
missing from element assemblyIdentity.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: SideBySide

Event Category: None

Event ID: 58

Date: 5/05/2008

Time: 11:06:00 AM

User: N/A

Computer: GENCHEM

Description:

Syntax error in manifest or policy file
"C:\Program Files\Apple Software
Update\Plugins\EXEInstallPlugin.dll.Manifest"
on line 2.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: SideBySide

Event Category: None

Event ID: 59

Date: 5/05/2008

Time: 11:06:00 AM

User: N/A

Computer: GENCHEM

Description:

Generate Activation Context failed for
C:\Program Files\Apple Software
Update\Plugins\EXEInstallPlugin.dll.Manifest.
Reference error message: The operation
completed successfully.

.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: SideBySide

Event Category: None

Event ID: 61

Date: 5/05/2008

Time: 11:06:00 AM

User: N/A

Computer: GENCHEM

Description:

Syntax error in manifest or policy file
"C:\Program Files\Apple Software
Update\Plugins\MSIInstallPlugin.dll.Manifest"
on line 2. The required attribute version is
missing from element assemblyIdentity.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: SideBySide

Event Category: None

Event ID: 58

Date: 5/05/2008

Time: 11:06:00 AM

User: N/A

Computer: GENCHEM

Description:

Syntax error in manifest or policy file
"C:\Program Files\Apple Software
Update\Plugins\MSIInstallPlugin.dll.Manifest"
on line 2.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: SideBySide

Event Category: None

Event ID: 59

Date: 5/05/2008

Time: 11:06:00 AM

User: N/A

Computer: GENCHEM

Description:

Generate Activation Context failed for
C:\Program Files\Apple Software
Update\Plugins\MSIInstallPlugin.dll.Manifest.
Reference error message: The operation
completed successfully.

.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.



WARNING:

Event Type: Warning

Event Source: W32Time

Event Category: None

Event ID: 36

Date: 6/05/2008

Time: 7:06:38 AM

User: N/A

Computer: GENCHEM

Description:

The time service has not been able to
synchronize the system time for 49152 seconds
because none of the time providers has been
able to provide a usable time stamp. The
system clock is unsynchronized.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.



WARNING:

Event Type: Warning

Event Source: WinDefend

Event Category: None

Event ID: 3004

Date: 6/05/2008

Time: 12:55:45 PM

User: N/A

Computer: GENCHEM

Description:

Windows Defender Real-Time Protection agent
has detected changes. Microsoft recommends
you analyze the software that made these
changes for potential risks. You can use
information about how these programs operate
to choose whether to allow them to run or
remove them from your computer. Allow
changes only if you trust the program or the
software publisher. Windows Defender can't
undo changes that you allow.

For more information please see the
following:

http://go.microsoft.com/fwlink/?linkid=74409

Scan ID:
{7A9751EE-3731-47E6-BDE5-B4ADFFBA4338}

User: GENCHEM\Frank

Name: Unknown

ID:

Severity: Not Yet Classified

Category: Not Yet Classified

Path Found:
regkey:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
Eraser
2006;runonce:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
Eraser 2006;file:C:\Program Files\East-Tec
Eraser 2006\etsecureerase.exe

Alert Type: Unclassified
software

Detection Type:



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: sr

Event Category: None

Event ID: 1

Date: 6/05/2008

Time: 1:14:40 PM

User: N/A

Computer: GENCHEM

Description:

The System Restore filter encountered the
unexpected error '0xC0000368' while
processing the file
'2.0.0.0__b03f5f7f11d50a3a' on the volume
'Hardd .. lume4'. It has stopped monitoring
the volume.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.

Data:

0000: 06 00 00 00 04 00 4e 00 ......N.

0008: 00 00 00 00 01 00 00 c0 .......À

0010: 00 00 00 00 00 00 00 00 ........

0018: 00 00 00 00 00 00 00 00 ........

0020: 00 00 00 00 00 00 00 00 ........





Event Type: Warning

Event Source: WinDefend

Event Category: None

Event ID: 3004

Date: 6/05/2008

Time: 1:16:27 PM

User: N/A

Computer: GENCHEM

Description:

Windows Defender Real-Time Protection agent
has detected changes. Microsoft recommends
you analyze the software that made these
changes for potential risks. You can use
information about how these programs operate
to choose whether to allow them to run or
remove them from your computer. Allow
changes only if you trust the program or the
software publisher. Windows Defender can't
undo changes that you allow.

For more information please see the
following:

http://go.microsoft.com/fwlink/?linkid=74409

Scan ID:
{54D08057-4437-49BE-9DB2-ED01FF428B98}

User: GENCHEM\Frank

Name: Unknown

ID:

Severity: Not Yet Classified

Category: Not Yet Classified

Path Found:
regkey:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
Eraser
2006;runonce:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
Eraser 2006;file:C:\Program Files\East-Tec
Eraser 2006\etsecureerase.exe

Alert Type: Unclassified
software

Detection Type:



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: sr

Event Category: None

Event ID: 1

Date: 6/05/2008

Time: 9:03:34 PM

User: N/A

Computer: GENCHEM

Description:

The System Restore filter encountered the
unexpected error '0xC000007F' while
processing the file '4' on the volume
'HarddiskVolume5'. It has stopped monitoring
the volume.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.

Data:

0000: 0e 00 00 00 04 00 4e 00 ......N.

0008: 00 00 00 00 01 00 00 c0 .......À

0010: 00 00 00 00 00 00 00 00 ........

0018: 00 00 00 00 00 00 00 00 ........

0020: 00 00 00 00 00 00 00 00 ........





Event Type: Error

Event Source: Dhcp

Event Category: None

Event ID: 1002

Date: 7/05/2008

Time: 3:26:12 AM

User: N/A

Computer: GENCHEM

Description:

The IP address lease 192.168.1.6 for the
Network Card with network address
0013D36359C6 has been denied by the DHCP
server 0.0.0.0 (The DHCP Server sent a
DHCPNACK message).



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Error

Event Source: ipnathlp

Event Category: None

Event ID: 32003

Date: 7/05/2008

Time: 3:26:12 AM

User: N/A

Computer: GENCHEM

Description:

The Network Address Translator (NAT) was
unable to request an operation of the
kernel-mode translation module. This may
indicate misconfiguration, insufficient
resources, or an internal error. The data is
the error code.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.

Data:

0000: 1f 00 00 00 ....





Event Type: Error

Event Source: sr

Event Category: None

Event ID: 1

Date: 7/05/2008

Time: 9:09:06 AM

User: N/A

Computer: GENCHEM

Description:

The System Restore filter encountered the
unexpected error '0xC000007F' while
processing the file '3' on the volume
'HarddiskVolume6'. It has stopped monitoring
the volume.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.

Data:

0000: 0e 00 00 00 04 00 4e 00 ......N.

0008: 00 00 00 00 01 00 00 c0 .......À

0010: 00 00 00 00 00 00 00 00 ........

0018: 00 00 00 00 00 00 00 00 ........

0020: 00 00 00 00 00 00 00 00 ........





Event Type: Error

Event Source: Dhcp

Event Category: None

Event ID: 1002

Date: 18/05/2008

Time: 10:29:50 AM

User: N/A

Computer: GENCHEM

Description:

The IP address lease 0.0.0.0 for the Network
Card with network address 0013D36359C6 has
been denied by the DHCP server 0.0.0.0 (The
DHCP Server sent a DHCPNACK message).



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Warning

Event Source: Tcpip

Event Category: None

Event ID: 4226

Date: 18/05/2008

Time: 2:11:46 PM

User: N/A

Computer: GENCHEM

Description:

TCP/IP has reached the security limit imposed
on the number of concurrent TCP connect
attempts.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.

Data:

0000: 00 00 00 00 01 00 54 00 ......T.

0008: 00 00 00 00 82 10 00 80 ....?..?

0010: 01 00 00 00 00 00 00 00 ........

0018: 00 00 00 00 00 00 00 00 ........

0020: 00 00 00 00 00 00 00 00 ........





Event Type: Warning

Event Source: Tcpip

Event Category: None

Event ID: 4226

Date: 18/05/2008

Time: 2:26:12 PM

User: N/A

Computer: GENCHEM

Description:

TCP/IP has reached the security limit imposed
on the number of concurrent TCP connect
attempts.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.

Data:

0000: 00 00 00 00 01 00 54 00 ......T.

0008: 00 00 00 00 82 10 00 80 ....?..?

0010: 01 00 00 00 00 00 00 00 ........

0018: 00 00 00 00 00 00 00 00 ........

0020: 00 00 00 00 00 00 00 00 ........





Event Type: Warning

Event Source: WinDefend

Event Category: None

Event ID: 3004

Date: 18/05/2008

Time: 2:54:30 PM

User: N/A

Computer: GENCHEM

Description:

Windows Defender Real-Time Protection agent
has detected changes. Microsoft recommends
you analyze the software that made these
changes for potential risks. You can use
information about how these programs operate
to choose whether to allow them to run or
remove them from your computer. Allow
changes only if you trust the program or the
software publisher. Windows Defender can't
undo changes that you allow.

For more information please see the
following:

http://go.microsoft.com/fwlink/?linkid=74409

Scan ID:
{A9295428-A6AF-4EA3-98B1-4D8CF0397211}

User: GENCHEM\Frank

Name: Unknown

ID:

Severity: Not Yet Classified

Category: Not Yet Classified

Path Found:
service:PROCEXP111

Alert Type: Unclassified
software

Detection Type:



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.







Event Type: Warning

Event Source: WinDefend

Event Category: None

Event ID: 3004

Date: 18/05/2008

Time: 2:54:30 PM

User: N/A

Computer: GENCHEM

Description:

Windows Defender Real-Time Protection agent
has detected changes. Microsoft recommends
you analyze the software that made these
changes for potential risks. You can use
information about how these programs operate
to choose whether to allow them to run or
remove them from your computer. Allow
changes only if you trust the program or the
software publisher. Windows Defender can't
undo changes that you allow.

For more information please see the
following:

http://go.microsoft.com/fwlink/?linkid=74409

Scan ID:
{22DFE458-5C99-4F96-A14A-E89B5D5F3B95}

User: GENCHEM\Frank

Name: Unknown

ID:

Severity: Not Yet Classified

Category: Not Yet Classified

Path Found: driver:PROCEXP111

Alert Type: Unclassified
software

Detection Type:



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.





Event Type: Warning

Event Source: Tcpip

Event Category: None

Event ID: 4226

Date: 18/05/2008

Time: 2:54:40 PM

User: N/A

Computer: GENCHEM

Description:

TCP/IP has reached the security limit imposed
on the number of concurrent TCP connect
attempts.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.

Data:

0000: 00 00 00 00 01 00 54 00 ......T.

0008: 00 00 00 00 82 10 00 80 ....?..?

0010: 01 00 00 00 00 00 00 00 ........

0018: 00 00 00 00 00 00 00 00 ........

0020: 00 00 00 00 00 00 00 00 ........





Event Type: Warning

Event Source: Dhcp

Event Category: None

Event ID: 1007

Date: 19/05/2008

Time: 7:46:53 AM

User: N/A

Computer: GENCHEM

Description:

Your computer has automatically configured
the IP address for the Network Card with
network address 0013D36359C6. The IP address
being used is 169.254.143.158.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.

Data:

0000: 00 00 00 00 ....





Event Type: Warning

Event Source: Tcpip

Event Category: None

Event ID: 4226

Date: 19/05/2008

Time: 7:19:38 PM

User: N/A

Computer: GENCHEM

Description:

TCP/IP has reached the security limit imposed
on the number of concurrent TCP connect
attempts.



For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.

Data:

0000: 00 00 00 00 01 00 54 00 ......T.

0008: 00 00 00 00 82 10 00 80 ....?..?

0010: 01 00 00 00 00 00 00 00 ........

0018: 00 00 00 00 00 00 00 00 ........

0020: 00 00 00 00 00 00 00 00 ........















"Gerry" <gerry@nospam.com> wrote in message
news:u9aZa5YuIHA.5244@TK2MSFTNGP02.phx.gbl...
> Frank
>
> Background information on Stop Error
> message
> http://msdn2.microsoft.com/en-us/library/ms793437.aspx
>
> 0x00000050: PAGE_FAULT_IN_NONPAGED_AREA
> (Click to consult the online MSDN article.)
> Requested data was not in memory. An
> invalid system memory address was
> referenced. Defective memory (including
> main memory, L2 RAM cache, video
> RAM) or incompatible software (including
> remote control and antivirus
> software) might cause this Stop message, as
> may other hardware problems
> (e.g., incorrect SCSI termination or a
> flawed PCI card).
> Source: http://aumha.org/a/stop.htm
>
> Remove the dust bunnies and test the RAM
> memory
> http://www.elephantboycomputers.com/page2.html#Hardware_Tshoot
>
> Check the hard drive for bad sectors by
> running chkdsk /f /r
>
> Check the System log of Event Viewer for
> Error Reports.
>
> Please post copies of all Error and Warning
> Reports appearing in the
> System log in Event Viewer for the last
> boot. No Information Reports or
> Duplicates please. Indicate which also
> appear in a previous boot.
>
> You can access Event Viewer by selecting
> Start, Control Panel,
> Administrative Tools, and Event Viewer.
>
> A tip for posting copies of Error Reports!
> Run Event Viewer and double
> click on the error you want to copy. In the
> window, which appears is a
> button resembling two pages. Click the
> button and close Event
> Viewer.Now start your message (email) and
> do a paste into the body of
> the message. Make sure this is the first
> paste after exiting from
> Event Viewer.
>
> Are there any yellow question marks in
> Device Manager? Right click on
> the My Computer icon on your Desktop and
> select Properties,
> Hardware,Device Manager. If yes what is the
> Device Error code?
>
> Try Start, Run, type "sigverif.exe" without
> quotes and hit OK. What
> drivers are listed as unsigned? Disregard
> those which are not checked.
>
> --
>
>
>
> Hope this helps.
>
> Gerry
> ~~~~
> FCA
> Stourport, England
> Enquire, plan and execute
> ~~~~~~~~~~~~~~~~~~~
>
>
> Frank Martin wrote:
>> The screen went blue with the following
>> written on it:
>>
>> STOP: (0.00000050 (0xBAD0B148)
>> 0X00000000,
>>
>> 0X805B9EC9
>>
>> 0X00000003)
>>
>> I restarted the computer and all seems
>> well
>> so far. What could cause this problem?
>
>



Re: Error message appeared suddenly. by Gerry

Gerry
Mon May 19 16:41:34 PDT 2008

Frank

I cannot see the Stop Error message recorded in the Error reports you
posted. On whay date did it occur?

Unless the Error repeats there is little point investigating further.
Single errors occur from time to time.


--



Hope this helps.

Gerry
~~~~
FCA
Stourport, England
Enquire, plan and execute
~~~~~~~~~~~~~~~~~~~

Frank Martin wrote:
> Thanks. I have copied all the recent yellow
> & red messages in the Computer Management
> System Events" and these are shown below.
> Also, there were 96 unsigned files shown by
> the "sigverif.exe" but I do not know how to
> copy these here.
>
> Red/Yellow messages follow. Please advise.
>
> ******************************
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:49:54 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the TrkWks service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:50:24 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the dmserver
> service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:51:24 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the TrkWks service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:51:54 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the dmserver
> service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:52:25 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the dmserver
> service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:52:55 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the TrkWks service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:53:25 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the
> ShellHWDetection service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:53:55 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the
> ShellHWDetection service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:54:25 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the
> ShellHWDetection service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:54:55 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the dmserver
> service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:55:25 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the
> ShellHWDetection service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:55:55 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the
> ShellHWDetection service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:56:25 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the dmserver
> service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:56:56 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the TrkWks service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: Service Control
> Manager
>
> Event Category: None
>
> Event ID: 7011
>
> Date: 4/05/2008
>
> Time: 10:57:26 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Timeout (30000 milliseconds) waiting for a
> transaction response from the dmserver
> service.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: SideBySide
>
> Event Category: None
>
> Event ID: 61
>
> Date: 5/05/2008
>
> Time: 11:06:00 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Syntax error in manifest or policy file
> "C:\Program Files\Apple Software
> Update\Plugins\EXEInstallPlugin.dll.Manifest"
> on line 2. The required attribute version is
> missing from element assemblyIdentity.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: SideBySide
>
> Event Category: None
>
> Event ID: 58
>
> Date: 5/05/2008
>
> Time: 11:06:00 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Syntax error in manifest or policy file
> "C:\Program Files\Apple Software
> Update\Plugins\EXEInstallPlugin.dll.Manifest"
> on line 2.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: SideBySide
>
> Event Category: None
>
> Event ID: 59
>
> Date: 5/05/2008
>
> Time: 11:06:00 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Generate Activation Context failed for
> C:\Program Files\Apple Software
> Update\Plugins\EXEInstallPlugin.dll.Manifest.
> Reference error message: The operation
> completed successfully.
>
> .
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: SideBySide
>
> Event Category: None
>
> Event ID: 61
>
> Date: 5/05/2008
>
> Time: 11:06:00 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Syntax error in manifest or policy file
> "C:\Program Files\Apple Software
> Update\Plugins\MSIInstallPlugin.dll.Manifest"
> on line 2. The required attribute version is
> missing from element assemblyIdentity.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: SideBySide
>
> Event Category: None
>
> Event ID: 58
>
> Date: 5/05/2008
>
> Time: 11:06:00 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Syntax error in manifest or policy file
> "C:\Program Files\Apple Software
> Update\Plugins\MSIInstallPlugin.dll.Manifest"
> on line 2.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: SideBySide
>
> Event Category: None
>
> Event ID: 59
>
> Date: 5/05/2008
>
> Time: 11:06:00 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Generate Activation Context failed for
> C:\Program Files\Apple Software
> Update\Plugins\MSIInstallPlugin.dll.Manifest.
> Reference error message: The operation
> completed successfully.
>
> .
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
> WARNING:
>
> Event Type: Warning
>
> Event Source: W32Time
>
> Event Category: None
>
> Event ID: 36
>
> Date: 6/05/2008
>
> Time: 7:06:38 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> The time service has not been able to
> synchronize the system time for 49152 seconds
> because none of the time providers has been
> able to provide a usable time stamp. The
> system clock is unsynchronized.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
> WARNING:
>
> Event Type: Warning
>
> Event Source: WinDefend
>
> Event Category: None
>
> Event ID: 3004
>
> Date: 6/05/2008
>
> Time: 12:55:45 PM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Windows Defender Real-Time Protection agent
> has detected changes. Microsoft recommends
> you analyze the software that made these
> changes for potential risks. You can use
> information about how these programs operate
> to choose whether to allow them to run or
> remove them from your computer. Allow
> changes only if you trust the program or the
> software publisher. Windows Defender can't
> undo changes that you allow.
>
> For more information please see the
> following:
>
> http://go.microsoft.com/fwlink/?linkid=74409
>
> Scan ID:
> {7A9751EE-3731-47E6-BDE5-B4ADFFBA4338}
>
> User: GENCHEM\Frank
>
> Name: Unknown
>
> ID:
>
> Severity: Not Yet Classified
>
> Category: Not Yet Classified
>
> Path Found:
> regkey:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
> Eraser
> 2006;runonce:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
> Eraser 2006;file:C:\Program Files\East-Tec
> Eraser 2006\etsecureerase.exe
>
> Alert Type: Unclassified
> software
>
> Detection Type:
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: sr
>
> Event Category: None
>
> Event ID: 1
>
> Date: 6/05/2008
>
> Time: 1:14:40 PM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> The System Restore filter encountered the
> unexpected error '0xC0000368' while
> processing the file
> '2.0.0.0__b03f5f7f11d50a3a' on the volume
> 'Hardd .. lume4'. It has stopped monitoring
> the volume.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
> Data:
>
> 0000: 06 00 00 00 04 00 4e 00 ......N.
>
> 0008: 00 00 00 00 01 00 00 c0 .......À
>
> 0010: 00 00 00 00 00 00 00 00 ........
>
> 0018: 00 00 00 00 00 00 00 00 ........
>
> 0020: 00 00 00 00 00 00 00 00 ........
>
>
>
>
>
> Event Type: Warning
>
> Event Source: WinDefend
>
> Event Category: None
>
> Event ID: 3004
>
> Date: 6/05/2008
>
> Time: 1:16:27 PM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Windows Defender Real-Time Protection agent
> has detected changes. Microsoft recommends
> you analyze the software that made these
> changes for potential risks. You can use
> information about how these programs operate
> to choose whether to allow them to run or
> remove them from your computer. Allow
> changes only if you trust the program or the
> software publisher. Windows Defender can't
> undo changes that you allow.
>
> For more information please see the
> following:
>
> http://go.microsoft.com/fwlink/?linkid=74409
>
> Scan ID:
> {54D08057-4437-49BE-9DB2-ED01FF428B98}
>
> User: GENCHEM\Frank
>
> Name: Unknown
>
> ID:
>
> Severity: Not Yet Classified
>
> Category: Not Yet Classified
>
> Path Found:
> regkey:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
> Eraser
> 2006;runonce:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
> Eraser 2006;file:C:\Program Files\East-Tec
> Eraser 2006\etsecureerase.exe
>
> Alert Type: Unclassified
> software
>
> Detection Type:
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: sr
>
> Event Category: None
>
> Event ID: 1
>
> Date: 6/05/2008
>
> Time: 9:03:34 PM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> The System Restore filter encountered the
> unexpected error '0xC000007F' while
> processing the file '4' on the volume
> 'HarddiskVolume5'. It has stopped monitoring
> the volume.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
> Data:
>
> 0000: 0e 00 00 00 04 00 4e 00 ......N.
>
> 0008: 00 00 00 00 01 00 00 c0 .......À
>
> 0010: 00 00 00 00 00 00 00 00 ........
>
> 0018: 00 00 00 00 00 00 00 00 ........
>
> 0020: 00 00 00 00 00 00 00 00 ........
>
>
>
>
>
> Event Type: Error
>
> Event Source: Dhcp
>
> Event Category: None
>
> Event ID: 1002
>
> Date: 7/05/2008
>
> Time: 3:26:12 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> The IP address lease 192.168.1.6 for the
> Network Card with network address
> 0013D36359C6 has been denied by the DHCP
> server 0.0.0.0 (The DHCP Server sent a
> DHCPNACK message).
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Error
>
> Event Source: ipnathlp
>
> Event Category: None
>
> Event ID: 32003
>
> Date: 7/05/2008
>
> Time: 3:26:12 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> The Network Address Translator (NAT) was
> unable to request an operation of the
> kernel-mode translation module. This may
> indicate misconfiguration, insufficient
> resources, or an internal error. The data is
> the error code.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
> Data:
>
> 0000: 1f 00 00 00 ....
>
>
>
>
>
> Event Type: Error
>
> Event Source: sr
>
> Event Category: None
>
> Event ID: 1
>
> Date: 7/05/2008
>
> Time: 9:09:06 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> The System Restore filter encountered the
> unexpected error '0xC000007F' while
> processing the file '3' on the volume
> 'HarddiskVolume6'. It has stopped monitoring
> the volume.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
> Data:
>
> 0000: 0e 00 00 00 04 00 4e 00 ......N.
>
> 0008: 00 00 00 00 01 00 00 c0 .......À
>
> 0010: 00 00 00 00 00 00 00 00 ........
>
> 0018: 00 00 00 00 00 00 00 00 ........
>
> 0020: 00 00 00 00 00 00 00 00 ........
>
>
>
>
>
> Event Type: Error
>
> Event Source: Dhcp
>
> Event Category: None
>
> Event ID: 1002
>
> Date: 18/05/2008
>
> Time: 10:29:50 AM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> The IP address lease 0.0.0.0 for the Network
> Card with network address 0013D36359C6 has
> been denied by the DHCP server 0.0.0.0 (The
> DHCP Server sent a DHCPNACK message).
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
> Event Type: Warning
>
> Event Source: Tcpip
>
> Event Category: None
>
> Event ID: 4226
>
> Date: 18/05/2008
>
> Time: 2:11:46 PM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> TCP/IP has reached the security limit imposed
> on the number of concurrent TCP connect
> attempts.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
> Data:
>
> 0000: 00 00 00 00 01 00 54 00 ......T.
>
> 0008: 00 00 00 00 82 10 00 80 ....?..?
>
> 0010: 01 00 00 00 00 00 00 00 ........
>
> 0018: 00 00 00 00 00 00 00 00 ........
>
> 0020: 00 00 00 00 00 00 00 00 ........
>
>
>
>
>
> Event Type: Warning
>
> Event Source: Tcpip
>
> Event Category: None
>
> Event ID: 4226
>
> Date: 18/05/2008
>
> Time: 2:26:12 PM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> TCP/IP has reached the security limit imposed
> on the number of concurrent TCP connect
> attempts.
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
> Data:
>
> 0000: 00 00 00 00 01 00 54 00 ......T.
>
> 0008: 00 00 00 00 82 10 00 80 ....?..?
>
> 0010: 01 00 00 00 00 00 00 00 ........
>
> 0018: 00 00 00 00 00 00 00 00 ........
>
> 0020: 00 00 00 00 00 00 00 00 ........
>
>
>
>
>
> Event Type: Warning
>
> Event Source: WinDefend
>
> Event Category: None
>
> Event ID: 3004
>
> Date: 18/05/2008
>
> Time: 2:54:30 PM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Windows Defender Real-Time Protection agent
> has detected changes. Microsoft recommends
> you analyze the software that made these
> changes for potential risks. You can use
> information about how these programs operate
> to choose whether to allow them to run or
> remove them from your computer. Allow
> changes only if you trust the program or the
> software publisher. Windows Defender can't
> undo changes that you allow.
>
> For more information please see the
> following:
>
> http://go.microsoft.com/fwlink/?linkid=74409
>
> Scan ID:
> {A9295428-A6AF-4EA3-98B1-4D8CF0397211}
>
> User: GENCHEM\Frank
>
> Name: Unknown
>
> ID:
>
> Severity: Not Yet Classified
>
> Category: Not Yet Classified
>
> Path Found:
> service:PROCEXP111
>
> Alert Type: Unclassified
> software
>
> Detection Type:
>
>
>
> For more information, see Help and Support
> Center at
> http://go.microsoft.com/fwlink/events.asp.
>
>
>
>
>
>
>
> Event Type: Warning
>
> Event Source: WinDefend
>
> Event Category: None
>
> Event ID: 3004
>
> Date: 18/05/2008
>
> Time: 2:54:30 PM
>
> User: N/A
>
> Computer: GENCHEM
>
> Description:
>
> Windows Defender Real-Time Protection agent
> has d