Frank
Mon May 19 15:24:18 PDT 2008
Thanks. I have copied all the recent yellow
& red messages in the Computer Management
System Events" and these are shown below.
Also, there were 96 unsigned files shown by
the "sigverif.exe" but I do not know how to
copy these here.
Red/Yellow messages follow. Please advise.
******************************
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:49:54 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the TrkWks service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:50:24 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:51:24 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the TrkWks service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:51:54 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:52:25 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:52:55 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the TrkWks service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:53:25 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:53:55 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:54:25 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:54:55 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:55:25 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:55:55 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the
ShellHWDetection service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:56:25 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:56:56 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the TrkWks service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control
Manager
Event Category: None
Event ID: 7011
Date: 4/05/2008
Time: 10:57:26 AM
User: N/A
Computer: GENCHEM
Description:
Timeout (30000 milliseconds) waiting for a
transaction response from the dmserver
service.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: SideBySide
Event Category: None
Event ID: 61
Date: 5/05/2008
Time: 11:06:00 AM
User: N/A
Computer: GENCHEM
Description:
Syntax error in manifest or policy file
"C:\Program Files\Apple Software
Update\Plugins\EXEInstallPlugin.dll.Manifest"
on line 2. The required attribute version is
missing from element assemblyIdentity.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: SideBySide
Event Category: None
Event ID: 58
Date: 5/05/2008
Time: 11:06:00 AM
User: N/A
Computer: GENCHEM
Description:
Syntax error in manifest or policy file
"C:\Program Files\Apple Software
Update\Plugins\EXEInstallPlugin.dll.Manifest"
on line 2.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: SideBySide
Event Category: None
Event ID: 59
Date: 5/05/2008
Time: 11:06:00 AM
User: N/A
Computer: GENCHEM
Description:
Generate Activation Context failed for
C:\Program Files\Apple Software
Update\Plugins\EXEInstallPlugin.dll.Manifest.
Reference error message: The operation
completed successfully.
.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: SideBySide
Event Category: None
Event ID: 61
Date: 5/05/2008
Time: 11:06:00 AM
User: N/A
Computer: GENCHEM
Description:
Syntax error in manifest or policy file
"C:\Program Files\Apple Software
Update\Plugins\MSIInstallPlugin.dll.Manifest"
on line 2. The required attribute version is
missing from element assemblyIdentity.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: SideBySide
Event Category: None
Event ID: 58
Date: 5/05/2008
Time: 11:06:00 AM
User: N/A
Computer: GENCHEM
Description:
Syntax error in manifest or policy file
"C:\Program Files\Apple Software
Update\Plugins\MSIInstallPlugin.dll.Manifest"
on line 2.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: SideBySide
Event Category: None
Event ID: 59
Date: 5/05/2008
Time: 11:06:00 AM
User: N/A
Computer: GENCHEM
Description:
Generate Activation Context failed for
C:\Program Files\Apple Software
Update\Plugins\MSIInstallPlugin.dll.Manifest.
Reference error message: The operation
completed successfully.
.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
WARNING:
Event Type: Warning
Event Source: W32Time
Event Category: None
Event ID: 36
Date: 6/05/2008
Time: 7:06:38 AM
User: N/A
Computer: GENCHEM
Description:
The time service has not been able to
synchronize the system time for 49152 seconds
because none of the time providers has been
able to provide a usable time stamp. The
system clock is unsynchronized.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
WARNING:
Event Type: Warning
Event Source: WinDefend
Event Category: None
Event ID: 3004
Date: 6/05/2008
Time: 12:55:45 PM
User: N/A
Computer: GENCHEM
Description:
Windows Defender Real-Time Protection agent
has detected changes. Microsoft recommends
you analyze the software that made these
changes for potential risks. You can use
information about how these programs operate
to choose whether to allow them to run or
remove them from your computer. Allow
changes only if you trust the program or the
software publisher. Windows Defender can't
undo changes that you allow.
For more information please see the
following:
http://go.microsoft.com/fwlink/?linkid=74409
Scan ID:
{7A9751EE-3731-47E6-BDE5-B4ADFFBA4338}
User: GENCHEM\Frank
Name: Unknown
ID:
Severity: Not Yet Classified
Category: Not Yet Classified
Path Found:
regkey:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
Eraser
2006;runonce:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
Eraser 2006;file:C:\Program Files\East-Tec
Eraser 2006\etsecureerase.exe
Alert Type: Unclassified
software
Detection Type:
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: sr
Event Category: None
Event ID: 1
Date: 6/05/2008
Time: 1:14:40 PM
User: N/A
Computer: GENCHEM
Description:
The System Restore filter encountered the
unexpected error '0xC0000368' while
processing the file
'2.0.0.0__b03f5f7f11d50a3a' on the volume
'Hardd .. lume4'. It has stopped monitoring
the volume.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 06 00 00 00 04 00 4e 00 ......N.
0008: 00 00 00 00 01 00 00 c0 .......À
0010: 00 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
Event Type: Warning
Event Source: WinDefend
Event Category: None
Event ID: 3004
Date: 6/05/2008
Time: 1:16:27 PM
User: N/A
Computer: GENCHEM
Description:
Windows Defender Real-Time Protection agent
has detected changes. Microsoft recommends
you analyze the software that made these
changes for potential risks. You can use
information about how these programs operate
to choose whether to allow them to run or
remove them from your computer. Allow
changes only if you trust the program or the
software publisher. Windows Defender can't
undo changes that you allow.
For more information please see the
following:
http://go.microsoft.com/fwlink/?linkid=74409
Scan ID:
{54D08057-4437-49BE-9DB2-ED01FF428B98}
User: GENCHEM\Frank
Name: Unknown
ID:
Severity: Not Yet Classified
Category: Not Yet Classified
Path Found:
regkey:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
Eraser
2006;runonce:HKCU@S-1-5-21-343818398-1645522239-839522115-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\East-Tec
Eraser 2006;file:C:\Program Files\East-Tec
Eraser 2006\etsecureerase.exe
Alert Type: Unclassified
software
Detection Type:
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: sr
Event Category: None
Event ID: 1
Date: 6/05/2008
Time: 9:03:34 PM
User: N/A
Computer: GENCHEM
Description:
The System Restore filter encountered the
unexpected error '0xC000007F' while
processing the file '4' on the volume
'HarddiskVolume5'. It has stopped monitoring
the volume.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0e 00 00 00 04 00 4e 00 ......N.
0008: 00 00 00 00 01 00 00 c0 .......À
0010: 00 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
Event Type: Error
Event Source: Dhcp
Event Category: None
Event ID: 1002
Date: 7/05/2008
Time: 3:26:12 AM
User: N/A
Computer: GENCHEM
Description:
The IP address lease 192.168.1.6 for the
Network Card with network address
0013D36359C6 has been denied by the DHCP
server 0.0.0.0 (The DHCP Server sent a
DHCPNACK message).
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: ipnathlp
Event Category: None
Event ID: 32003
Date: 7/05/2008
Time: 3:26:12 AM
User: N/A
Computer: GENCHEM
Description:
The Network Address Translator (NAT) was
unable to request an operation of the
kernel-mode translation module. This may
indicate misconfiguration, insufficient
resources, or an internal error. The data is
the error code.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 1f 00 00 00 ....
Event Type: Error
Event Source: sr
Event Category: None
Event ID: 1
Date: 7/05/2008
Time: 9:09:06 AM
User: N/A
Computer: GENCHEM
Description:
The System Restore filter encountered the
unexpected error '0xC000007F' while
processing the file '3' on the volume
'HarddiskVolume6'. It has stopped monitoring
the volume.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 0e 00 00 00 04 00 4e 00 ......N.
0008: 00 00 00 00 01 00 00 c0 .......À
0010: 00 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
Event Type: Error
Event Source: Dhcp
Event Category: None
Event ID: 1002
Date: 18/05/2008
Time: 10:29:50 AM
User: N/A
Computer: GENCHEM
Description:
The IP address lease 0.0.0.0 for the Network
Card with network address 0013D36359C6 has
been denied by the DHCP server 0.0.0.0 (The
DHCP Server sent a DHCPNACK message).
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: Tcpip
Event Category: None
Event ID: 4226
Date: 18/05/2008
Time: 2:11:46 PM
User: N/A
Computer: GENCHEM
Description:
TCP/IP has reached the security limit imposed
on the number of concurrent TCP connect
attempts.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00 ......T.
0008: 00 00 00 00 82 10 00 80 ....?..?
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
Event Type: Warning
Event Source: Tcpip
Event Category: None
Event ID: 4226
Date: 18/05/2008
Time: 2:26:12 PM
User: N/A
Computer: GENCHEM
Description:
TCP/IP has reached the security limit imposed
on the number of concurrent TCP connect
attempts.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00 ......T.
0008: 00 00 00 00 82 10 00 80 ....?..?
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
Event Type: Warning
Event Source: WinDefend
Event Category: None
Event ID: 3004
Date: 18/05/2008
Time: 2:54:30 PM
User: N/A
Computer: GENCHEM
Description:
Windows Defender Real-Time Protection agent
has detected changes. Microsoft recommends
you analyze the software that made these
changes for potential risks. You can use
information about how these programs operate
to choose whether to allow them to run or
remove them from your computer. Allow
changes only if you trust the program or the
software publisher. Windows Defender can't
undo changes that you allow.
For more information please see the
following:
http://go.microsoft.com/fwlink/?linkid=74409
Scan ID:
{A9295428-A6AF-4EA3-98B1-4D8CF0397211}
User: GENCHEM\Frank
Name: Unknown
ID:
Severity: Not Yet Classified
Category: Not Yet Classified
Path Found:
service:PROCEXP111
Alert Type: Unclassified
software
Detection Type:
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: WinDefend
Event Category: None
Event ID: 3004
Date: 18/05/2008
Time: 2:54:30 PM
User: N/A
Computer: GENCHEM
Description:
Windows Defender Real-Time Protection agent
has detected changes. Microsoft recommends
you analyze the software that made these
changes for potential risks. You can use
information about how these programs operate
to choose whether to allow them to run or
remove them from your computer. Allow
changes only if you trust the program or the
software publisher. Windows Defender can't
undo changes that you allow.
For more information please see the
following:
http://go.microsoft.com/fwlink/?linkid=74409
Scan ID:
{22DFE458-5C99-4F96-A14A-E89B5D5F3B95}
User: GENCHEM\Frank
Name: Unknown
ID:
Severity: Not Yet Classified
Category: Not Yet Classified
Path Found: driver:PROCEXP111
Alert Type: Unclassified
software
Detection Type:
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: Tcpip
Event Category: None
Event ID: 4226
Date: 18/05/2008
Time: 2:54:40 PM
User: N/A
Computer: GENCHEM
Description:
TCP/IP has reached the security limit imposed
on the number of concurrent TCP connect
attempts.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00 ......T.
0008: 00 00 00 00 82 10 00 80 ....?..?
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
Event Type: Warning
Event Source: Dhcp
Event Category: None
Event ID: 1007
Date: 19/05/2008
Time: 7:46:53 AM
User: N/A
Computer: GENCHEM
Description:
Your computer has automatically configured
the IP address for the Network Card with
network address 0013D36359C6. The IP address
being used is 169.254.143.158.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 ....
Event Type: Warning
Event Source: Tcpip
Event Category: None
Event ID: 4226
Date: 19/05/2008
Time: 7:19:38 PM
User: N/A
Computer: GENCHEM
Description:
TCP/IP has reached the security limit imposed
on the number of concurrent TCP connect
attempts.
For more information, see Help and Support
Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 01 00 54 00 ......T.
0008: 00 00 00 00 82 10 00 80 ....?..?
0010: 01 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
"Gerry" <gerry@nospam.com> wrote in message
news:u9aZa5YuIHA.5244@TK2MSFTNGP02.phx.gbl...
> Frank
>
> Background information on Stop Error
> message
>
http://msdn2.microsoft.com/en-us/library/ms793437.aspx
>
> 0x00000050: PAGE_FAULT_IN_NONPAGED_AREA
> (Click to consult the online MSDN article.)
> Requested data was not in memory. An
> invalid system memory address was
> referenced. Defective memory (including
> main memory, L2 RAM cache, video
> RAM) or incompatible software (including
> remote control and antivirus
> software) might cause this Stop message, as
> may other hardware problems
> (e.g., incorrect SCSI termination or a
> flawed PCI card).
> Source:
http://aumha.org/a/stop.htm
>
> Remove the dust bunnies and test the RAM
> memory
>
http://www.elephantboycomputers.com/page2.html#Hardware_Tshoot
>
> Check the hard drive for bad sectors by
> running chkdsk /f /r
>
> Check the System log of Event Viewer for
> Error Reports.
>
> Please post copies of all Error and Warning
> Reports appearing in the
> System log in Event Viewer for the last
> boot. No Information Reports or
> Duplicates please. Indicate which also
> appear in a previous boot.
>
> You can access Event Viewer by selecting
> Start, Control Panel,
> Administrative Tools, and Event Viewer.
>
> A tip for posting copies of Error Reports!
> Run Event Viewer and double
> click on the error you want to copy. In the
> window, which appears is a
> button resembling two pages. Click the
> button and close Event
> Viewer.Now start your message (email) and
> do a paste into the body of
> the message. Make sure this is the first
> paste after exiting from
> Event Viewer.
>
> Are there any yellow question marks in
> Device Manager? Right click on
> the My Computer icon on your Desktop and
> select Properties,
> Hardware,Device Manager. If yes what is the
> Device Error code?
>
> Try Start, Run, type "sigverif.exe" without
> quotes and hit OK. What
> drivers are listed as unsigned? Disregard
> those which are not checked.
>
> --
>
>
>
> Hope this helps.
>
> Gerry
> ~~~~
> FCA
> Stourport, England
> Enquire, plan and execute
> ~~~~~~~~~~~~~~~~~~~
>
>
> Frank Martin wrote:
>> The screen went blue with the following
>> written on it:
>>
>> STOP: (0.00000050 (0xBAD0B148)
>> 0X00000000,
>>
>> 0X805B9EC9
>>
>> 0X00000003)
>>
>> I restarted the computer and all seems
>> well
>> so far. What could cause this problem?
>
>