31.1.12

Invalid Activation Security Descriptor DCOM

Event 10020, dcom:
The machine wide Default Launch and Activation Security Descriptor is invalid. It contains Access Control Entries with permissions that are invalid. The requested action was therefore not performed. This security permission can be corrected using the component services administrative tool.
source: dcom
event id: 10020
file name: xpsp2res.dll
file version: 5.1.2600.2180
proof:
DCOM event 10020 invalid access entries

28.1.12

QuickTime failed to initialize mozilla firefox

When i try to clear all the browsing  history including cookies, cache, active logins, site preferences i got an error,
QuickTime Unavailable
Quicktime failed to initialize. Error #0
Please make sure quicktime is properly installed on this computer.

Following the above error it was also stated that, script unresponsive.

As captured image proof :
quicktime unavailable error 0 mozilla firefox

Backup error code 0x80780048 Windows 7

Check your backup disk space
The disk where your backups are being saved doesn't have enough free space
Error code: 0X80780048

Event 4104, Windows Backup:
The backup was not successful. The error is: There is not enough free space on the backup storage location to backup the data. (0x80780048)
product name: microsoft windows operating system
product version: 6.1.7600.16385
log name: application
source: windows backup
event id: 4104

PROOF:
windows backup error code 0x80780048 windows 7 event 4104



26.1.12

Avira AntiVirus Exception Event 4118

Event 4118, Avira AntiVir:
EXCEPTION calling function 'scan' for the file C:\WINDOWS\system32\msxml3.dll [ACCESS_VIOLATION Exception!! EIP=0X182935E] Please inform avira and submit the appropriate file.
source: avira antivir
event id: 4118
category: warning

proof:
avira antivirus event access_violation exception

Group policy notify access check failed

Event 7320, GroupPolicy:
Error: Group policy notify access check failed. Error code 0x5.
log name: Microsoft-Windows-GroupPolicy/Operational
OpCode: info
event source: GroupPolicy
Event id: 7320

proof:
event id 7320 group policy notify access check failed error

Event 4373, Windows Installer 3.1

 windows
Not enough storage is available to process this command
log name: application
source: windows installer 3.1
event id: 4373
keywords: classic


image proof:
windows installer 3.1 event 4373



Classic Spooler Event 350 PrintService

Event 350, PrintService:
Document failed to print and was deleted because of corruption in the spooled file. The associated driver is: . Try printing the document again.
log name: microsoft-windows-printservice/admin
source: printservice
event id: 350
OpCode: spooler operation failed
task category: printing a document
keywords: classic spooler event, document print job
user: system
printing a document classic spooler event 350 windows 7 printservice

25.1.12

Error 0x80072efe WindowsUpdateClient

Windows Update failed to check for updates with error 0x80072efe
log name: microsoft-windows-windowsupdateclient/operational
source: WindowsUpdateClient
event id: 25
OpCode: check for updates
task category: windows update agent
keywords: failure, check for updates
proof:
event id 25 windowsupdateclient windows 7


24.1.12

Event 2001, Windows Defender

Event 2001, Windows Defender:
Windows Defender has encountered an error trying to update signatures.
Error code: 0x8050a003
Error Description: This package does not contain up-to-date definition files for this program. For more information, see help and support.
New Signature Version:
Previous Signature Version:
Update Source: user
Signature type:
update type:
Current Engine Version:
Previous Engine Version: 1.1.7702.0
log name: microsoft-windows-windows defender/operational
source: windows defender
event id: 2001
OpCode: info

proof:
windows defender event 2001

Event 108, ialmrnt5 driver

Event 108, ialm:
The driver ialmrnt5 for the display device \Device\Video3 got stuck in an infinite loop. This usually indicates a problem with the device itself or with the device driver programming the hardware incorrectly. Please check with your hardware device vendor for any driver updates.
log name: system
source: ialm
event id: 108
keywords: classic

proof:
ialm display device driver event 108 windows 7

Event 135, Diagnosis-DPS Windows 7

Event 135, Diagnosis-DPS:
The diagnostic policy service could not create a diagnostic module host instance for diagnostic module {9c5a40da-b965-4fc3-8781-88dd50a6299d} (%SystemRoot%\system32\perftrack.dll). The error code was 2147943469. The scenario {fd5aa730-b53f-4b39-84e5-cb4303621d74}, instance {c30a21f8-359e-4305-b46f-d713a1c439db}, original activity ID {00000000-0000-0000-0000-000000000000} will be discarded.
log name: microsoft-windows-diagnosis-DPS/operational
event id: 135
source: Diagnosis-DPS
OpCode: The Diagnostic Policy Servic
task category: Scenario Lifecycle
keywords: Scenario Lifecycle Events

Still image proof:
diagnosis-DPS event windows 7

Event 4099, Display windows 7

Event 4099, display:
Display driver stopped responding. Save your work and reboot the system to restore full display functionality. The next time you reboot the machine, a dialog will be displayed giving you a chance to upload data about this failure to Microsoft.
log name: system
source: display
event id: 4099
keywords: classic

proof:
display driver event 4099 windows 7
Recommended solution:
Refer the following microsoft help page for this error.
http://technet.microsoft.com/en-us/library/dd349375%28v=ws.10%29.aspx.

BugCheck Event windows 7 (WER SystemErrorReporting)

Event1001, BugCheck :
The computer has rebooted from a bugcheck. The bugcheck was: 0x000000ea (0x842e9648, 0x855dc748, 0x851ce010, 0x00000001). A dump was saved in: C:\Windows\Minidump\021611-24312-01.dmp. Report Id: 021611-24312-01.
log name: system
event source: microsoft-windows-WER-SystemErrorReporting
event id: 1001
OpCode: info
keywords: classic
product name: microsoft windows operating system

Still image proof:
From the source bugcheck, i found an another event stated as, The bugcheck was: 0x0000001a (0x00041287, 0x0000b75e, 0x00000000, 0x00000000). A dump was saved in C:\Windows\MEMORY.DMP.

Event 1005, BugCheck:
Unable to produce a minidump file from the null dump file.

23.1.12

crypt32 event failed auto update retrieval of third-party root list sequence number

Event description:
Failed auto update retrieval of third-party root list sequence number from: http:/www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt with error: This operation returned because the timeout period expired.
file name: crypt32.dll
source: crypt32
event id: 8

Proof:
crypt32.dll file noted with error on windows xp event viewer

18.1.12

Database Corruption event 448 (ESENT)

Event Description:
wuauclt (1832) Data inconsistency detected in table tbUbdates of database C:\WINDOWS\SoftwareDistribution\DataStore\DataStore.edb (0,802)
source: ESENT
event id: 448
task category: database corruption
file name: ESENT.dll
file version: 5.1.2600.2780

still image proof:
data corruption event category from windows xp event viewer

14.1.12

Event id 9003 microsoft sql server

Event Description:
The log scan number (213:472:1) passed to log scan in database 'master' is not valid. This error may indicate data corruption or that the log file (.Idf) does not match the data file (.mdf). If this error occurred during replication, re-create the publication. Otherwise, restore from backup if the problem results in a failure during startup.
file name: sqlevn70.rll
file version: 2005.90.1399.0
event id: 9003
source: MSSQL$SQLEXPRESS
product name: microsoft sql server
product version: 9.0.1399.0
category: (2)

Event Data:

0000: 0000232b 00000014 00000015 00450054
0010: 00500053 004f0052 00300031 005c0030
0020: 00510053 0045004c 00500058 00450052
0030: 00530053 00000000 0000

Event 3417, Microsoft SQL Server

Event Description:
Cannot recover the master database. SQL Server is unable to run. Restore master from a full backup, repair it, or rebuild it. For more information about how to rebuild the master database, see SQL Server books online.
File Name: sqlevn70.rll
File Version: 2005.90.1399.0
Product Name: Microsoft SQL Server
Product Version: 9.0.1399.0
Event Source: MSSQL$SQLEXPRESS
Category: (2)
Event ID: 3417

still image proof:
microsoft sql server event 3417
Error Data:

0000: 00000d59 0000000a 00000015 00450054
0010: 00500053 004f0052 00300031 005c0030
0020: 00510053 0045004c 00500058 00450052
0030: 00530053 00000000 0000

event source i8042prt

Event 22, i8042prt:
Could not set the mouse sample rate
event id: 22
source: i8042prt
file name: i8042prt.sys
file version: 5.1.2600.2180
Event data:

0000: 00080000 00620001 00000000 c0050016
0010: 00000532 00000000 00000000 00000000
0020: 00000000 00000000 00000000 00000000

Event 23, i8042prt:
Could not set the mouse resolution.
Data:

0000: 00080000 00620001 00000000 c0050017
0010: 00000532 00000000 00000000 00000000
0020: 00000000 00000000 00000000 00000000

Event  34, i8042prt:
An error occurred while trying to determine the number of mouse buttons.
data:

0000: 00080000 00620001 00000000 c0050022
0010: 00000532 00000000 00000000 00000000
0020: 00000000 00000000 00000000 00000000

Event 40, i8042prt:
An error occurred while trying to acquire the device ID of the mouse.
data:

0000: 00080000 00620001 00000000 c0050028
0010: 00000532 00000000 00000000 00000000
0020: 00000000 00000000 00000000 00000000

still image proof:
event source i8042prt windows xp




CNET TechTracker Event

Event id 2, CNET TechTracker:
Event Description:
The description for event id (2) in source (CNET TechTracker) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE=flag to retrieve this description; See help and support for details.
The following information is part of the event:
result: Scan Failed- general scan failure.
unable to complete request due to error: The server was busy and could not check for updates.
A connection with the server could not be established.
event source: CNET TechTracker
event id: 2
platform: windows xp
proof:
cnet tech tracker event windows xp



Circular Kernel Context Logger

Event 2, Kernel-EventTracing :
Session "Circular Kernel Context Logger" failed to start with the following error: 0xC0000035
log name: microsoft-windows-kernel-eventtracing/Admin
event id: 2
source: Kernel-EventTracing
OpCode: start
Task Category: Session
Keywords: session
image proof:
event id 2 kernel eventtracing windows 7
Recommended :
kernel event tracing oobe

Event Source CodeIntegrity windows 7

Event 3002, CodeIntegrity :
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\AK\icsak.dll because the set of per-page image hashes could not be found on the system.
Log Name: Microsoft-Windows-CodeIntegrity/Operational
Source: CodeIntegrity
Event Id: 3002
OpCode: (6684672)
Task Category: (1)
Product Name: Microsoft Windows Operating System
Product Version: 6.1.7600.16385
Locale ID: 1033
Still image proof:
event 3002 from the source code integrity windows 7


SescLU Event windows xp

Event 13, SescLU:
Event Description:
LiveUpdate returned a non-critical error. Available content updates may have failed to install.
source: sesclu
event id: 13
type: error
image proof:
error from the source SescLU with event id 13 windows xp

Symantec AntiVirus

Event 51, Symantec AntiVirus :
Event Description:
Security Risk Found! Trojan.Gen.2 in File:c:\..\temp\DWH166.tmp by: Startup scan. Action: Quarantine succeeded. Action Description: The file was quarantined successfully.
event id: 51
source: symantec antivirus
proof:
 Symantec Antivirus encountered an error while stsrtup scan takes place windows xp event id 51
Event 46, Symantec AntiVirus:
Security Risk Found!Risk: w32.Ramnit.B in file H:\RECYCLER\s-8-3-80-0012510206-7334785811-404032855-4538\lcXZZWu0.cpl by Auto protect scan. Action: cleaned by deletion.
(Note: .cpl format files are the control panel files.)
Other security risks identified are,
W32.Harakit
W32.Pilleuz!gen30 in file apologize.exe
BloodHound.exploit.343
W32.Imaut!gen1 ..

9.1.12

Event 0, PostgreSQL Windows 7

Timed out waiting for server startup.
log name : application
source : PostgreSQL
event id : 0
product name : PostgreSQL
product version : 9.1.2
locale ID : 1033

Realtek RTL8029 Ethernet Adapter

Event id 5005, rtl8029:
Event Description:
Realtek RTL8029(AS) PCI Ethernet Adapter : Has encountered an internal error and has failed.
source: rtl8029
event id: 5005
file name: netevent.dll
Data:

0000: 00040000 005c0002 00000000 c000138d
0010: 00000000 00000000 00000000 00000000
0020: 00000000 00000000 00000004
Proof:
error from the source rtl8029 realtek pci ethernet adapter event id 5005
Event id 5003, rtl8029:
Realtek RTL8029(AS) PCI Ethernet Adapter : Could not find an adapter.
Data:

0000: 00000000 00580002 00000000 c000138b
0010: 00000000 00000000 00000000 00000000
0020: 00000000 00000000

pdf crashed Adobe reader AcroRd32.exe

When i opened the pdf file to read suddenly it crashed and displays the following error signature.
Adobe Reader
Error signature:
szAppName : AcroRd32.exe
szAppVer : 10.1.1.33
szModName : hungapp

Error report contents includes the following files:
Temp\WERe911.dir00\AcroRd32.exe.mdmp
Temp\WERe911.dir00\appcompat.txt

Still image proof:
adobe reader crashed while reading the pdf

6.1.12

Event 9002 search service windows 7

Event 9002, Search:
The Windows Search Service cannot load the property store information.
Context: Windows Application, SystemIndex Catalog.
Details:
The content index server cannot find a description of the content index in its database. Search will automatically attempt to recreate the content index description. If this problem persists, stop and restart the search service and, if necessary, delete and recreate the content index. (HRESULT : 0x80041181)(0x80041181).
Log Name: application
source: search
Event ID: 9002
OpCode: info
Task Category: Search service
keywords: classic

Details might be sometimes The content index database is corrupt. (HRESULT : 0xc0041800) (0xc0041800)

4.1.12

Event id 5008 NVIDIA

Event Description:
NVIDIA nForce 10/100/1000 Mbps Ethernet : Has encountered an invalid network address.
source: NVENETFD
event id: 5008
Data:
0000: 000c0000 00660002 00000000 c0001390
0010: 00000000 00000000 00000000 00000000
0020: 00000000 00000000 8badadd2 00000000
0030: c0a80106
Error proof:
nvidia nForce ethernet has encountered an invalid network address with event id 5008

2.1.12

crypt32 event id 5 windows xp

Event Description:
Failed Auto update retrieval of third-party root certificate from: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/5FB7EE0633E259DBADOC4C9AE6D38F1A61C7DC25.crt with error: This operation returned because the timeout period expired.
source: crypt32
event id: 5
file name: crypt32.dll
file version: 5.131.2600.2180

Photo proof:
crypt32 event logged on windows xp with event id 5

1.1.12

Adobe Reader Event from msiinstaller

MsiInstaller, Event id  11316:
Event Description:
Product: Adobe Reader 7.0. Error 1316. A network error occurred while attempting to read from the file Adobe7\data1.cab
Data:
0000: 3743417b 38414236 41372d36 312d3744
0010: 2d333330 34344237 3037412d 30303030
0020: 30303030 7d30
still image proof:
msiinstaller event logged for the product adobe reader 7.0 windows xp
Event id 11305:
Product: Adobe Reader 7.0. Error 1305. Error reading from file c:\program files\adobe\acrobat 7.0\Reader\plug_ins\PPKLite.api. Verify that the file exists and that you can access it.
Data:
0000: 3743417b 38414236 41372d36 312d3744
0010: 2d333330 34344237 3037412d 30303030
0020: 30303030 7d30

Event id: 11311:
Product: mAdobe Reader 7.0. Error 1311. Source file not found(cabinet).
Data:
0000: 3743417b 38414236 41372d36 312d3744
0010: 2d333330 34344237 3037412d 30303030
0020: 30303030 7d30

sharing printer KONICA MINOLTA 164 failed

Event Description:
Sharing printer failed + 1722, Printer KONICA MINOLTA 164 share name KONICAMI.
Source: print.
event id: 19.
Product name: windows xp.

Recommended posts:
sharing printer failed 1722

Event IDs

event id 1000 ( 11 ) event id 1 ( 10 ) event id 1002 ( 7 ) event id 0 ( 6 ) event id 1001 ( 6 ) event id 2 ( 6 ) event id 5 ( 5 ) event id 5000 ( 5 ) event id 100 ( 4 ) event id 1008 ( 4 ) event id 16 ( 4 ) event id 20 ( 4 ) event id 3 ( 4 ) event id 1026 ( 3 ) event id 12 ( 3 ) event id 2001 ( 3 ) event id 4 ( 3 ) event id 7001 ( 3 ) event id 10000 ( 2 ) event id 10005 ( 2 ) event id 1003 ( 2 ) event id 1017 ( 2 ) event id 11 ( 2 ) event id 1101 ( 2 ) event id 12013 ( 2 ) event id 13 ( 2 ) event id 14 ( 2 ) event id 15 ( 2 ) event id 17 ( 2 ) event id 19 ( 2 ) event id 201 ( 2 ) event id 23 ( 2 ) event id 257 ( 2 ) event id 3001 ( 2 ) event id 3002 ( 2 ) event id 3029 ( 2 ) event id 33 ( 2 ) event id 34 ( 2 ) event id 4096 ( 2 ) event id 46 ( 2 ) event id 5008 ( 2 ) event id 54 ( 2 ) event id 59 ( 2 ) event id 6 ( 2 ) event id 6161 ( 2 ) event id 8 ( 2 ) event id 8200 ( 2 ) event id 5000 ( 1 ) event id -1 ( 1 ) event id 10 ( 1 ) event id 10010 ( 1 ) event id 10016 ( 1 ) event id 10020 ( 1 ) event id 1004 ( 1 ) event id 1005 ( 1 ) event id 1006 ( 1 ) event id 10110 ( 1 ) event id 10111 ( 1 ) event id 1012 ( 1 ) event id 1013 ( 1 ) event id 1015 ( 1 ) event id 102 ( 1 ) event id 1024 ( 1 ) event id 104 ( 1 ) event id 1041 ( 1 ) event id 1057 ( 1 ) event id 106 ( 1 ) event id 1068 ( 1 ) event id 108 ( 1 ) event id 1082 ( 1 ) event id 1090 ( 1 ) event id 11006 ( 1 ) event id 1103 ( 1 ) event id 111 ( 1 ) event id 1111 ( 1 ) event id 11305 ( 1 ) event id 11311 ( 1 ) event id 11316 ( 1 ) event id 11330 ( 1 ) event id 11335 ( 1 ) event id 11406 ( 1 ) event id 11500 ( 1 ) event id 11704 ( 1 ) event id 11706 ( 1 ) event id 11935 ( 1 ) event id 12289 ( 1 ) event id 12291 ( 1 ) event id 12293 ( 1 ) event id 12297 ( 1 ) event id 12305 ( 1 ) event id 135 ( 1 ) event id 137 ( 1 ) event id 14103 ( 1 ) event id 142 ( 1 ) event id 14332 ( 1 ) event id 14370 ( 1 ) event id 148 ( 1 ) event id 1502 ( 1 ) event id 1508 ( 1 ) event id 1511 ( 1 ) event id 1515 ( 1 ) event id 15151 ( 1 ) event id 15300 ( 1 ) event id 15301 ( 1 ) event id 167 ( 1 ) event id 17204 ( 1 ) event id 17207 ( 1 ) event id 1797 ( 1 ) event id 1802 ( 1 ) event id 2000 ( 1 ) event id 2007 ( 1 ) event id 2013 ( 1 ) event id 2015 ( 1 ) event id 2020 ( 1 ) event id 20276 ( 1 ) event id 205 ( 1 ) event id 22 ( 1 ) event id 25 ( 1 ) event id 2505 ( 1 ) event id 259 ( 1 ) event id 269 ( 1 ) event id 27 ( 1 ) event id 28 ( 1 ) event id 3000 ( 1 ) event id 3006 ( 1 ) event id 3028 ( 1 ) event id 3058 ( 1 ) event id 3079 ( 1 ) event id 32 ( 1 ) event id 32003 ( 1 ) event id 3299 ( 1 ) event id 3417 ( 1 ) event id 350 ( 1 ) event id 351 ( 1 ) event id 36 ( 1 ) event id 36881 ( 1 ) event id 36882 ( 1 ) event id 36887 ( 1 ) event id 36888 ( 1 ) event id 372 ( 1 ) event id 40 ( 1 ) event id 400 ( 1 ) event id 4005 ( 1 ) event id 4099 ( 1 ) event id 41 ( 1 ) event id 4104 ( 1 ) event id 4107 ( 1 ) event id 4118 ( 1 ) event id 4198 ( 1 ) event id 4199 ( 1 ) event id 4205 ( 1 ) event id 43 ( 1 ) event id 4307 ( 1 ) event id 4321 ( 1 ) event id 4373 ( 1 ) event id 4376 ( 1 ) event id 439 ( 1 ) event id 448 ( 1 ) event id 45 ( 1 ) event id 4609 ( 1 ) event id 4618 ( 1 ) event id 4621 ( 1 ) event id 485 ( 1 ) event id 49 ( 1 ) event id 490 ( 1 ) event id 50 ( 1 ) event id 5003 ( 1 ) event id 50034 ( 1 ) event id 5004 ( 1 ) event id 5005 ( 1 ) event id 50068 ( 1 ) event id 505 ( 1 ) event id 5051 ( 1 ) event id 5053 ( 1 ) event id 51 ( 1 ) event id 513 ( 1 ) event id 5300 ( 1 ) event id 55 ( 1 ) event id 56 ( 1 ) event id 6004 ( 1 ) event id 60055 ( 1 ) event id 63 ( 1 ) event id 7 ( 1 ) event id 7000 ( 1 ) event id 7009 ( 1 ) event id 7010 ( 1 ) event id 7011 ( 1 ) event id 7022 ( 1 ) event id 7023 ( 1 ) event id 7024 ( 1 ) event id 7026 ( 1 ) event id 7030 ( 1 ) event id 7034 ( 1 ) event id 7038 ( 1 ) event id 7040 ( 1 ) event id 7042 ( 1 ) event id 72 ( 1 ) event id 7320 ( 1 ) event id 777 ( 1 ) event id 8000 ( 1 ) event id 8003 ( 1 ) event id 8032 ( 1 ) event id 808 ( 1 ) event id 8193 ( 1 ) event id 8194 ( 1 ) event id 8208 ( 1 ) event id 86 ( 1 ) event id 877 ( 1 ) event id 9 ( 1 ) event id 9002 ( 1 ) event id 9003 ( 1 )