Thanks again for your helpful post. These are the errors and warnings you
requested. Most, if not all, are repeated. Information events are the save
dumps. After I removed the 512mb suspect ram, it has run idle all night and I
have been using it for about the last 3 hours, with no blue screens (yet).
application errors (far back as it goes, to when I was having trouble with
the .net framework 3.0, with many repeats). Thanks again for your assistance.
Event Type: Error
Event Source: MPSampleSubmission
Event Category: None
Event ID: 5000
Date: 2/5/2008
Time: 7:49:32 AM
User: N/A
Computer: DANS
Description:
The description for Event ID ( 5000 ) in Source ( MPSampleSubmission )
cannot be found. The local computer may not have the necessary registry
information or message DLL files to display messages from a remote computer.
You may be able to use the /AUXSOURCE= flag to retrieve this description; see
Help and Support for details. The following information is part of the event:
mptelemetry, 8024402c, endsearch, search, 1.1.1592.0, mpsigdwn.dll,
1.1.1592.0, windows defender, NIL, NIL, NIL.
Data:
0000: 6d 00 70 00 74 00 65 00 m.p.t.e.
0008: 6c 00 65 00 6d 00 65 00 l.e.m.e.
0010: 74 00 72 00 79 00 2c 00 t.r.y.,.
0018: 20 00 38 00 30 00 32 00 .8.0.2.
0020: 34 00 34 00 30 00 32 00 4.4.0.2.
0028: 63 00 2c 00 20 00 65 00 c.,. .e.
0030: 6e 00 64 00 73 00 65 00 n.d.s.e.
0038: 61 00 72 00 63 00 68 00 a.r.c.h.
0040: 2c 00 20 00 73 00 65 00 ,. .s.e.
0048: 61 00 72 00 63 00 68 00 a.r.c.h.
0050: 2c 00 20 00 31 00 2e 00 ,. .1...
0058: 31 00 2e 00 31 00 35 00 1...1.5.
0060: 39 00 32 00 2e 00 30 00 9.2...0.
0068: 2c 00 20 00 6d 00 70 00 ,. .m.p.
0070: 73 00 69 00 67 00 64 00 s.i.g.d.
0078: 77 00 6e 00 2e 00 64 00 w.n...d.
0080: 6c 00 6c 00 2c 00 20 00 l.l.,. .
0088: 31 00 2e 00 31 00 2e 00 1...1...
0090: 31 00 35 00 39 00 32 00 1.5.9.2.
0098: 2e 00 30 00 2c 00 20 00 ..0.,. .
00a0: 77 00 69 00 6e 00 64 00 w.i.n.d.
00a8: 6f 00 77 00 73 00 20 00 o.w.s. .
00b0: 64 00 65 00 66 00 65 00 d.e.f.e.
00b8: 6e 00 64 00 65 00 72 00 n.d.e.r.
00c0: 2c 00 20 00 4e 00 49 00 ,. .N.I.
00c8: 4c 00 2c 00 20 00 4e 00 L.,. .N.
00d0: 49 00 4c 00 20 00 4e 00 I.L. .N.
00d8: 49 00 4c 00 0d 00 0a 00 I.L.....
Event Type: Warning
Event Source: SQLBrowser
Event Category: None
Event ID: 3
Date: 2/4/2008
Time: 11:39:37 PM
User: N/A
Computer: DANS
Description:
The configuration of the AdminConnection\TCP protocol in the SQL instance
MSSMLBIZ is not valid.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: MSSQLServerADHelper
Event Category: None
Event ID: 100
Date: 2/4/2008
Time: 11:39:16 PM
User: N/A
Computer: DANS
Description:
'0' is an invalid number of start up parameters. This service takes two
start up parameters.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: comHost
Event Category: None
Event ID: 65535
Date: 2/4/2008
Time: 11:37:23 PM
User: N/A
Computer: DANS
Description:
The description for Event ID ( 65535 ) in Source ( comHost ) cannot be
found. The local computer may not have the necessary registry information or
message DLL files to display messages from a remote computer. You may be able
to use the /AUXSOURCE= flag to retrieve this description; see Help and
Support for details. The following information is part of the event: Cannot
get Components key from ccSettings Manager.Is it really there? Error code:
0x80000205.
Event Type: Warning
Event Source: Userenv
Event Category: None
Event ID: 1517
Date: 2/4/2008
Time: 11:02:27 PM
User: NT AUTHORITY\SYSTEM
Computer: DANS
Description:
Windows saved user DANS\xxxxxxx registry while an application or service was
still using the registry during log off. The memory used by the user's
registry has not been freed. The registry will be unloaded when it is no
longer in use.
This is often caused by services running as a user account, try configuring
the services to run in either the LocalService or NetworkService account.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: MsiInstaller
Event Category: None
Event ID: 1008
Date: 2/3/2008
Time: 8:11:41 PM
User: DANS\Administrator
Computer: DANS
Description:
The installation of
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IXP000.TMP\rktools.msi is not permitted
due to an error in software restriction policy processing. The object cannot
be trusted.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Application Error
Event Category: None
Event ID: 1000
Date: 2/1/2008
Time: 1:47:29 PM
User: N/A
Computer: DANS
Description:
Faulting application iexplore.exe, version 7.0.6000.16574, faulting module
jscript.dll, version 5.7.0.5730, fault address 0x0001f345.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 41 70 70 6c 69 63 61 74 Applicat
0008: 69 6f 6e 20 46 61 69 6c ion Fail
0010: 75 72 65 20 20 69 65 78 ure iex
0018: 70 6c 6f 72 65 2e 65 78 plore.ex
0020: 65 20 37 2e 30 2e 36 30 e 7.0.60
0028: 30 30 2e 31 36 35 37 34 00.16574
0030: 20 69 6e 20 6a 73 63 72 in jscr
0038: 69 70 74 2e 64 6c 6c 20 ipt.dll
0040: 35 2e 37 2e 30 2e 35 37 5.7.0.57
0048: 33 30 20 61 74 20 6f 66 30 at of
0050: 66 73 65 74 20 30 30 30 fset 000
0058: 31 66 33 34 35 0d 0a 1f345..
Event Type: Warning
Event Source: Userenv
Event Category: None
Event ID: 1524
Date: 1/27/2008
Time: 1:05:42 AM
User: DANS\dboullie
Computer: DANS
Description:
Windows cannot unload your classes registry file - it is still in use by
other applications or services. The file will be unloaded when it is no
longer in use.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: crypt32
Event Category: None
Event ID: 8
Date: 1/17/2008
Time: 11:36:36 PM
User: N/A
Computer: DANS
Description:
Failed auto update retrieval of third-party root list sequence number from:
<
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: The specified server cannot perform the requested operation.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: System.ServiceModel.Install 3.0.0.0
Event Category: None
Event ID: 0
Date: 1/17/2008
Time: 11:05:24 PM
User: N/A
Computer: DANS
Description:
HTTP namespace reservations are not installed.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: ASP.NET 2.0.50727.0
Event Category: Setup
Event ID: 1020
Date: 1/17/2008
Time: 1:24:30 AM
User: N/A
Computer: DANS
Description:
Updates to the IIS metabase were aborted because IIS is either not installed
or is disabled on this machine. To configure ASP.NET to run in IIS, please
install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: ASP.NET 1.1.4322.0
Event Category: (2)
Event ID: 1073
Date: 1/17/2008
Time: 12:56:46 AM
User: N/A
Computer: DANS
Description:
The description for Event ID ( 1073 ) in Source ( ASP.NET 1.1.4322.0 )
cannot be found. The local computer may not have the necessary registry
information or message DLL files to display messages from a remote computer.
You may be able to use the /AUXSOURCE= flag to retrieve this description; see
Help and Support for details. The following information is part of the event:
Updates to the IIS metabase were aborted because IIS is either not installed
or is disabled on this machine. To completely uninstall ASP.NET from IIS,
please re-enable IIS and unregister ASP.NET using aspnet_regiis.exe /u.
..
Event Type: Error
Event Source: MsiInstaller
Event Category: None
Event ID: 1013
Date: 1/15/2008
Time: 9:35:33 PM
User: DANS\fluffy_2
Computer: DANS
Description:
Product: Microsoft .NET Framework 2.0 -- Setup cannot continue because this
version of the .NET Framework is incompatible with a previously installed
one. For more information, see
http://support.microsoft.com/support/kb/articles/q312/5/00.asp
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 7b 37 31 33 31 36 34 36 {7131646
0008: 44 2d 43 44 33 43 2d 34 D-CD3C-4
0010: 30 46 34 2d 39 37 42 39 0F4-97B9
0018: 2d 43 44 39 45 34 45 36 -CD9E4E6
0020: 32 36 32 45 46 7d 262EF}
Event Type: Error
Event Source: VBRuntime
Event Category: None
Event ID: 1
Date: 1/15/2008
Time: 9:25:12 PM
User: N/A
Computer: DANS
Description:
The VB Application identified by the event source logged this Application
MSICUU: Thread ID: 4804 ,Logged:
Failed:
C:\Program Files\Windows Installer Clean Up\msizap.exe TW!
{B508B3F1-A24A-32C0-B310-85786919EF28}
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Automatic LiveUpdate Scheduler
Event Category: Scheduler Events
Event ID: 101
Date: 1/14/2008
Time: 8:31:39 PM
User: NT AUTHORITY\SYSTEM
Computer: DANS
Description:
Information Level: error
Initialization of the COM subsystem failed. Error code: 0x8007041D
System errors (most recent last, far back as it goes, save dump errors incl.
and most, if not all repeat).
Event Type: Information
Event Source: Save Dump
Event Category: None
Event ID: 1001
Date: 2/1/2008
Time: 10:01:44 PM
User: N/A
Computer: DANS
Description:
The computer has rebooted from a bugcheck. The bugcheck was: 0x10000050
(0xfbfffff8, 0x00000000, 0x8054aa32, 0x00000000). A dump was saved in:
C:\WINDOWS\Minidump\Mini020108-01.dmp.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control Manager
Event Category: None
Event ID: 7024
Date: 2/1/2008
Time: 10:03:00 PM
User: N/A
Computer: DANS
Description:
The SQL Server Active Directory Helper service terminated with
service-specific error 3221225572 (0xC0000064).
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control Manager
Event Category: None
Event ID: 7023
Date: 2/1/2008
Time: 10:03:00 PM
User: N/A
Computer: DANS
Description:
The Windows Driver Foundation - User-mode Driver Framework service
terminated with the following error:
A device attached to the system is not functioning.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control Manager
Event Category: None
Event ID: 7001
Date: 2/1/2008
Time: 10:06:42 PM
User: N/A
Computer: DANS
Description:
The Remote Access Connection Manager service depends on the Telephony
service which failed to start because of the following error:
The service cannot be started, either because it is disabled or because it
has no enabled devices associated with it.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Service Control Manager
Event Category: None
Event ID: 7026
Date: 2/2/2008
Time: 11:23:30 AM
User: N/A
Computer: DANS
Description:
The following boot-start or system-start driver(s) failed to load:
AmdK7
eeCtrl
Fips
SRTSPX
SYMTDI
Event Type: Warning
Event Source: MRxSmb
Event Category: None
Event ID: 3019
Date: 2/2/2008
Time: 11:30:25 AM
User: N/A
Computer: DANS
Description:
The redirector failed to determine the connection type.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 04 00 4e 00 ......N.
0008: 00 00 00 00 cb 0b 00 80 ....Ë..?
0010: 00 00 00 00 84 01 00 c0 ....?..À
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
Event Type: Error
Event Source: MRxSmb
Event Category: None
Event ID: 8003
Date: 2/2/2008
Time: 11:40:16 AM
User: N/A
Computer: DANS
Description:
The master browser has received a server announcement from the computer
SUZANNE-4C5E369 that believes that it is the master browser for the domain on
transport NetBT_Tcpip_{9639A039-560. The master browser is stopping or an
election is being forced.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 03 00 4e 00 ......N.
0008: 00 00 00 00 43 1f 00 c0 ....C..À
0010: 00 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
SYMTDI
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: DCOM
Event Category: None
Event ID: 10005
Date: 2/1/2008
Time: 11:10:36 PM
User: NT AUTHORITY\SYSTEM
Computer: DANS
Description:
DCOM got error "This service cannot be started in Safe Mode " attempting to
start the service EventSystem with arguments "" in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Removable Storage Service
Event Category: None
Event ID: 111
Date: 2/2/2008
Time: 2:36:38 PM
User: N/A
Computer: DANS
Description:
RSM could not load media in drive Drive 0 of library Disk drive.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 01 00 00 00 ....
Event Type: Error
Event Source: NetBT
Event Category: None
Event ID: 4321
Date: 2/2/2008
Time: 4:43:41 PM
User: N/A
Computer: DANS
Description:
The name "MSHOME :1d" could not be registered on the Interface with
IP address xxx.xxx.xxx.xxx. The machine with the IP address xxx.xxx.xxx.xxx
did not allow the name to be claimed by this machine.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 04 00 56 00 ......V.
0008: 00 00 00 00 e1 10 00 c0 ....á..À
0010: 01 01 00 00 01 00 00 c0 .......À
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
Event Type: Error
Event Source: sr
Event Category: None
Event ID: 1
Date: 2/3/2008
Time: 12:39:25 AM
User: N/A
Computer: DANS
Description:
The System Restore filter encountered the unexpected error '0xC0000243'
while processing the file 'EraserUtilRebootDrv.sys' on the volume
'HarddiskVolume1'. It has stopped monitoring the volume.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 06 00 00 00 04 00 4e 00 ......N.
0008: 00 00 00 00 01 00 00 c0 .......À
0010: 00 00 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
Event Type: Error
Event Source: PlugPlayManager
Event Category: None
Event ID: 11
Date: 2/3/2008
Time: 9:37:21 AM
User: N/A
Computer: DANS
Description:
The device Root\LEGACY_ERASERUTILREBOOTDRV\0000 disappeared from the system
without first being prepared for removal.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 ....
Event Type: Information
Event Source: Save Dump
Event Category: None
Event ID: 1001
Date: 2/3/2008
Time: 11:03:57 AM
User: N/A
Computer: DANS
Description:
The computer has rebooted from a bugcheck. The bugcheck was: 0x10000050
(0xfbfffff8, 0x00000000, 0x8054b7c3, 0x00000000). A dump was saved in:
C:\WINDOWS\Minidump\Mini020308-01.dmp.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: WinDefend
Event Category: None
Event ID: 2004
Date: 2/4/2008
Time: 8:17:03 AM
User: N/A
Computer: DANS
Description:
Windows Defender has encountered an error trying to load signatures and will
attempt reverting back to a known-good set of signatures.
Signatures Attempted: Current
Error Code: 0x8050800c
Error description: An unexpected problem occurred. Install any available
updates, and then try to start the program again. For information on
installing updates, see Help and Support.
Signatures loading: Backup
Loading signature version: 1.24.6025.0
Loading engine version: 1.1.3109.0
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: Cdrom
Event Category: None
Event ID: 7
Date: 2/4/2008
Time: 7:08:53 PM
User: N/A
Computer: DANS
Description:
The device, \Device\CdRom0, has a bad block.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00 ..h...¸.
0008: 00 00 00 00 07 00 04 c0 .......À
0010: 00 01 00 00 00 00 00 00 ........
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 00 00 00 00 00 00 00 ........
0028: 2a 3b 01 00 00 00 00 00 *;......
0030: ff ff ff ff 02 00 00 00 ÿÿÿÿ....
0038: 40 00 00 c4 02 00 00 00 @..Ä....
0040: 00 20 0a 12 48 02 00 00 . ..H...
0048: 00 00 00 00 0a 00 00 00 ........
0050: 00 20 af 81 c8 d9 db 81 . ¯ÂÈÙÛÂ
0058: 00 00 00 00 b8 ae 91 82 ....¸®??
0060: 02 00 00 00 00 00 00 00 ........
0068: 28 00 00 00 00 00 00 00 (.......
0070: 01 00 00 00 00 00 00 00 ........
0078: 70 00 03 00 00 00 00 0a p.......
0080: 00 00 00 00 02 00 00 00 ........
0088: 00 00 00 00 00 00 00 00 ........
Event Type: Warning
Event Source: Cdrom
Event Category: None
Event ID: 51
Date: 2/4/2008
Time: 7:13:27 PM
User: N/A
Computer: DANS
Description:
An error was detected on device \Device\CdRom0 during a paging operation.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 03 00 68 00 01 00 b8 00 ..h...¸.
0008: 00 00 00 00 33 00 04 80 ....3..?
0010: 2d 01 00 00 10 00 00 c0 -......À
0018: 00 00 00 00 00 00 00 00 ........
0020: 00 88 4b 01 00 00 00 00 .?K.....
0028: 66 32 00 00 00 00 00 00 f2......
0030: ff ff ff ff 01 00 00 00 ÿÿÿÿ....
0038: 40 00 00 c4 02 00 00 00 @..Ä....
0040: 00 20 0a 12 48 02 00 40 . ..H..@
0048: 00 00 00 00 0a 00 00 00 ........
0050: 00 00 00 00 50 cb dc 81 ....PËÜÂ
0058: 00 00 00 00 b8 8e 98 82 ....¸???
0060: 02 00 00 00 71 29 00 00 ....q)..
0068: 28 00 00 00 29 71 00 00 (...)q..
0070: 10 00 00 00 00 00 00 00 ........
0078: 70 00 05 00 00 00 00 0a p.......
0080: 00 00 00 00 64 00 00 00 ....d...
0088: 00 00 00 00 00 00 00 00 ........
Event Type: Information
Event Source: Save Dump
Event Category: None
Event ID: 1001
Date: 2/4/2008
Time: 7:25:02 PM
User: N/A
Computer: DANS
Description:
The computer has rebooted from a bugcheck. The bugcheck was: 0x000000c1
(0x837f0db8, 0x837f0d37, 0x00ad0244, 0x00000023). A dump was saved in:
C:\WINDOWS\Minidump\Mini020408-02.dmp.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.