2 
		
								
				
				
			
		2harts4ever
Good morning,
This is my second attempt at posting this question. Apparently my first try
didn't succeed.
A few days ago while researching another problem I "turned off" Windows
Defenders' Real time protection and then about an hour later "turned it back
on".
Since then when I check the Event Viewer I am finding two new entries that
Defender is flagging but never notifies me through the actual Defender
program.
The first entry is:
Event Type: Warning
Event Source: WinDefend
Event Category: None
Event ID: 3004
Date: 9/13/2008
Time: 9:13:26 AM
User: N/A
Computer: xxxxxxxxxxxxxxx
Description:
Windows Defender Real-Time Protection agent has detected changes. Microsoft
recommends you analyze the software that made these changes for potential
risks. You can use information about how these programs operate to choose
whether to allow them to run or remove them from your computer. Allow
changes only if you trust the program or the software publisher. Windows
Defender can't undo changes that you allow.
For more information please see the following:
http://go.microsoft.com/fwlink/?linkid=74409
Scan ID: {DAA3B7B1-6F58-4DA8-AF22-A5971B29FF22}
User: xxxxxxxxxxxxxxx\Compaq_Owner
Name: Unknown
ID:
Severity: Not Yet Classified
Category: Not Yet Classified
Path Found: driver:uphcleanhlp
Alert Type: Unclassified software
Detection Type:
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
The second entry is identical except it reads: 'service:uphcleanhlp' instead
of 'driver:uphcleanhlp'.
This is my 'User Profile Hive Cleanup' service.
How can I get Defender to stop flagging it in Event Viewer each bootup and
why doesn't Defender alert me through its own program?
Thanks and regards,
2harts4ever
				
			This is my second attempt at posting this question. Apparently my first try
didn't succeed.
A few days ago while researching another problem I "turned off" Windows
Defenders' Real time protection and then about an hour later "turned it back
on".
Since then when I check the Event Viewer I am finding two new entries that
Defender is flagging but never notifies me through the actual Defender
program.
The first entry is:
Event Type: Warning
Event Source: WinDefend
Event Category: None
Event ID: 3004
Date: 9/13/2008
Time: 9:13:26 AM
User: N/A
Computer: xxxxxxxxxxxxxxx
Description:
Windows Defender Real-Time Protection agent has detected changes. Microsoft
recommends you analyze the software that made these changes for potential
risks. You can use information about how these programs operate to choose
whether to allow them to run or remove them from your computer. Allow
changes only if you trust the program or the software publisher. Windows
Defender can't undo changes that you allow.
For more information please see the following:
http://go.microsoft.com/fwlink/?linkid=74409
Scan ID: {DAA3B7B1-6F58-4DA8-AF22-A5971B29FF22}
User: xxxxxxxxxxxxxxx\Compaq_Owner
Name: Unknown
ID:
Severity: Not Yet Classified
Category: Not Yet Classified
Path Found: driver:uphcleanhlp
Alert Type: Unclassified software
Detection Type:
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
The second entry is identical except it reads: 'service:uphcleanhlp' instead
of 'driver:uphcleanhlp'.
This is my 'User Profile Hive Cleanup' service.
How can I get Defender to stop flagging it in Event Viewer each bootup and
why doesn't Defender alert me through its own program?
Thanks and regards,
2harts4ever
