J
jkymustang
In Event Viewer UPHClean is informing me of the following:
Event Type: Information
Event Source: UPHClean
Event Category: None
Event ID: 1501
Date: 8/23/2008
Time: 12:46:24 AM
User: xxxxxxxxxxxxxxxxxx
Computer: xxx-xxxxxxxxxxxx
Description:
The following handles opened in user profile hive xxxx-xxxxxxxxxx\xxxx
(S-1-5-21-1409082233-2147052839-839522115-1003) are preventing the profile
from unloading:
MsMpEng.exe (1688)
HKCU (0x56c)
HKCU\Software\Classes (0x5dc)
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
The next message follows: Event Type: Warning
Event Source: Userenv
Event Category: None
Event ID: 1517
Date: 8/23/2008
Time: 12:46:38 AM
User: NT AUTHORITY\SYSTEM
Computer: xxxx-xxxxxxxxxxx
Description:
Windows saved user xxxx-xxxxxxxxxx\xxxx registry while an application or
service was still using the registry during log off. The memory used by the
user's registry has not been freed. The registry will be unloaded when it is
no longer in use.
This is often caused by services running as a user account, try configuring
the services to run in either the LocalService or NetworkService account.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
I've searched Help and Support for an understanding as how to configure
MsMpEng.exe in the Local Service or Network Service, whichever is applicable
in the instance.
Please post a solution. Thanks.
Event Type: Information
Event Source: UPHClean
Event Category: None
Event ID: 1501
Date: 8/23/2008
Time: 12:46:24 AM
User: xxxxxxxxxxxxxxxxxx
Computer: xxx-xxxxxxxxxxxx
Description:
The following handles opened in user profile hive xxxx-xxxxxxxxxx\xxxx
(S-1-5-21-1409082233-2147052839-839522115-1003) are preventing the profile
from unloading:
MsMpEng.exe (1688)
HKCU (0x56c)
HKCU\Software\Classes (0x5dc)
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
The next message follows: Event Type: Warning
Event Source: Userenv
Event Category: None
Event ID: 1517
Date: 8/23/2008
Time: 12:46:38 AM
User: NT AUTHORITY\SYSTEM
Computer: xxxx-xxxxxxxxxxx
Description:
Windows saved user xxxx-xxxxxxxxxx\xxxx registry while an application or
service was still using the registry during log off. The memory used by the
user's registry has not been freed. The registry will be unloaded when it is
no longer in use.
This is often caused by services running as a user account, try configuring
the services to run in either the LocalService or NetworkService account.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
I've searched Help and Support for an understanding as how to configure
MsMpEng.exe in the Local Service or Network Service, whichever is applicable
in the instance.
Please post a solution. Thanks.