Event Clients Windows 7 logs

Hi all

Please note that I'm not a guy from script before asking this question.

I have a domain with client computers about 100.  The security for these systems logs becomes a real pain to manage manually.  I want to write a script that could wipe out all the papers and then save them in our SIN.  Someone at - it a script that they currently use to perform this operation or may know a better way to manage security logs save and clear for all these customers?

Thanks for your time

Brandon Hoskins

Please note that I'm not a guy from script before asking this question.

You could try a Google query like this:

Script to archive a Windows security log

To get help with scripts, you can try this page. The respondents will not write scripts on demand, but they will definitely help you with your existing script.

Tags: Windows

Similar Questions

  • Event ID: 3058; Event source: Windows Search Service; File name: tquery.dll.mui

    Hi all

    Event - Application log viewer. Error

    Windows operating system; Version: 7.0.6001.16503; Event ID: 3058; Event source: Windows Search Service; File name: tquery.dll.mui

    Cannot initialize the Gatherer object

    Context; Windows Application creates catalog

    Details

    The registry value cannot be read because the configuration is invalid. Re-create the indexing configuration by removing the content index (0x8004d03)

    How to make repairs as suggested in the above details?

    Hello

    I suggest you uninstall and reinstall the Windows desktop search, and check.
     
    Here is the link to install it:
     
     
    Also check out this link:
     
     
  • My windows XP logs on a temporary account

    My windows XP logs on a temporary account and any software I install is not registered. Any time I login, it seems that I restored the system.

    Hi Ebenezer,

    You can read the following article.

    Error message "Windows cannot load your profile because it may be corrupted" when you try to log on Windows XP

  • Dialog box Windows Defender log in

    Dialog box Windows Defender log in: initialization failed: 0 x 80070006. The handle is invisible.

    What is this and how can I change? (I run ESET on Vista)

    Hi OC_Steve,

    ·         You get the error as soon as you connect to the computer?

    There could be a possibility that ESET may be blocking Windows Defender to start. Check to see if the following is useful.

    Method 1:

    Step 1: Temporarily disable the antivirus program and check the issue.

    Note: Please make sure that you enable the antivirus software after the test to keep your computer protected.

    Step 2: If he is able to start Windows Defender, then you worry. You can activate ESET return.

    Method 2: If not, follow the below mentioned article.

    Error message when you run Windows Defender

  • Error Code 0xC004F074 activation of KMS Clients Windows 7

    I get the error message above activation trying to activate Windows 7 Clients on my network.  My activation server is a Windows 2008 SP2 Standard host and I used a Windows 2008 Standard key to activate the KMS server.  I have at least 5 clients KMS in Windows 2008 that enabled very well out of it.  Vista systems return the error of insufficient activation account (which I hope enough not enough systems still have), but clients Windows 7 returns the error code above (that I wasn't expecting)

    It's the key to the Windows 2008 KMS server?  I need to change this to a key of Windows 7 (or Windows 2008 R2) before Windows 7 can start to activate off of it?

    Please see: an update is available that installs the Service of key management (KMS) 1.2 for Windows Server 2003 Service Pack 2 (SP2) and later versions of Windows Server 2003 Carey Frisch

  • Event Viewer Windows 7 'Administrative events' can not clear the log? Why and is there a solution?

    Window 7 has many error logs in the "Event Viewer", but all seem to have the ability to "Clear log" except the Administration? Why? I looked at some of the entries, and they you are referencing my "security cameras" this automatic restart after a power/Brown power. Yet I have not found a way to "clear a log this ' under 'Administrative events?' Is there a way to clean this newspaper? It's more than 1100 events, and none are major.

    Thank you

    Hank

    Hank

    Delete all log files, including the journal of the administrator combined, by running this command as an administrator file save it to the desktop and right click to run it. The link is here http://www.sevenforums.com/tutorials/25480-event-viewer-one-click-clear.html?ltr=E

  • The Windows show Event ID 264 WARNING logs

    Hello

    Our report of customer that there is a single newspaper waring in the windows logs. Please check the message below.

    The OS is windows 8.

    ------------------------------------------------------------

    Log name: System
    Source: Win32k
    Date: 13/06/2013 18:18:02
    Event ID: 264
    Task category: no
    Level: WARNING
    Keywords: Classic
    User: n/a
    Computer: test
    Description:
    A multi touch reported coordinated incompatible device.

    ------------------------------------------------------------

    But

    (1) the multi touch device passed the WHCK. And,

    (2) we have also double check it the hid descriptor device. Device to control the Microsoft tool descriptor "digitizer report DescriptorChecker.

    I know that there are many cell phones have the same problem. But nobody has the solution for this.

    MSFT has solution for this or any other test tool that can help to find the cause root? Since the log is created by system and our device alreay check our all the functions declared in the hid descriptor. We do not know why the waring appear.

    Once MSFT response the issue of 264 event id with the following returns information.

    MSFT: it can refer to the firmware. For example, firmware claims it can withstand 2 contacts, but in fact it shows 5 contacts.

    But we do not find the bad part of our hidden device report descriptor, and device alreay spend WHCK.  Given that many other phones have the same problem, I think is not easy root cause guess by checking our own firmware. Hope MSFT can check this issue and to provide more information.

    The description of event id 264:
    A multi touch reported coordinated incompatible device.

    We need a more "specific" reason the warning log.

    Best regards

    Caro flax

    Hi Caro Lin,

    1. are you connected to the domain?
    2. What is the brand and model of the computer?

    If you are connected to the domain, then I suggest you to post in the forums of Windows IT pro.

    http://social.technet.Microsoft.com/forums/en-us/category/w8itpro

  • Windows update/failure, see Windows Update Log - Error Messages more

    Have Windows Vista Home Premium, Service Pack 2

    Current version: 9.0.8112.16421IC.

    Update Version: 9.0.14 (KB2809289)

    Dell Studio 1537

    Here is my Log of update Windows and through this newspaper there was error messages, fatal Manager: UH: 0 x 80070490: evaluate the conditions of application.

    Agent WARNING: Cannot assess the rule installed;    What makes all this mean?

    https://update.Microsoft.com/v6/ClientWebService/client.asmx
    2013-06-03 19:10:27:735 1088 1138 Agent update {C291A8B1-7657-47ED-B7C5-D4F4A9CD1E28}.203 is cut out because of the possible replacement
    2013-06-03 19:10:27:735 1088 1138 Agent * updated added {037A60AA-425B-497C-9FF0-EF85547911E5}.203 in search result
    2013-06-03 19:10:27:736 1088 1138 Agent * updated added {E42C8EC0-93D9-469E-9FDD-5D05113215E1}.201 in search result
    2013-06-03 19:10:27:736 1088 1138 Agent * found 2 updates and 76 categories of research. evaluated Appl. rules of 2500 out of 3987 deployed entities
    2013-06-03 19:10:27:854 1088 1138 Agent *.
    2013-06-03 19:10:27:854 1088 1138 Agent * END * Agent: finding updates [CallerId = AutomaticUpdates]
    2013-06-03 19:10:27:855 1088 1138 Agent *.
    2013-06-03 19:10:27:909 1088 1860 AU > # RETURN # to THE: research updates [CallId = {8337A3FB-623C-4E3A-8A4B-2E5CE4379B88}]
    2013-06-03 19:10:27:909 1088 1860 at # 2 updates detected
    2013-06-03 19:10:27:910 1088 1860 AU #.
    2013-06-03 19:10:27:910 1088 1860 # end # in THE: research updates [CallId = {8337A3FB-623C-4E3A-8A4B-2E5CE4379B88}]
    2013-06-03 19:10:27:910 1088 1860 AU #.
    2013-06-03 19:10:27:910 1088 1860 AU #.
    2013-06-03 19:10:27:910 1088 1860 to THE # START # to THE: updating of information updated featured
    2013-06-03 19:10:27:910 1088 1860 AU #.
    2013-06-03 19:10:27:910 1088 No. featured 1860 updates available.
    2013-06-03 19:10:27:911 1088 1860 AU #.
    2013-06-03 19:10:27:911 1088 1860 # end # in THE: updating of information updated featured
    2013-06-03 19:10:27:911 1088 1860 AU #.
    2013-06-03 19:10:27:911 1088 1860 to THE timeout parameter next detection for 2013-06-04 19:50:54
    2013-06-03 19:10:32:854 1088 1138 report REPORT EVENT: {25AF1EA5-BB15-428F-8215-05509380A0F7} 2013-06-03 19:10:27:854 - 0500 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates success synchronization Windows Update Client software detected 2 updates successfully.
    2013-06-03 19:10:32:855 1088 1138 CWERReporter finish event management report. (00000000)
    2013-06-03 21:22:43:722 1088 2fb8 report CWERReporter finish event management. (00000000)
    handle event 2013-06-03 21:34:17:635 1088 9f0 to THE receipt
    setting of to THE to THE 9f0 2013-06-03 21:34:17:635 1088 pending client directive to 'download approval '.
    2013-06-03 21:34:32:649 1088 9f0 to THE WARNING: AU found no session appropriate to launch the client in
    2013-06-03 21:34:42:665 1088 9f0 Shutdwn user refused the update stopped
    2013-06-03 21:34:42:665 1088 9f0 to THE to THE initiates stopping service
    2013-06-03 21:34:42:665 1088 9f0 to THE # to THE: initialization of automatic updates.
    2013-06-03 21:34:43:460 1088 9f0 report CWERReporter finish event management. (00000000)
    2013-06-03 21:34:43:757 1088 9f0 Service *.
    2013-06-03 21:34:43:757 1088 9f0 Service * END * Service: out of Service [exit code = 0 x 240001]
    2013-06-03 21:34:43:757 1088 9f0 Service *.
    2013-06-03 21:46:57:753 1096 84 c Misc = logging initialized (build: 7.6.7600.256, tz:-0500) =.
    2013-06-03 21:46:57:768 1096 84 c Misc = process: C:\Windows\system32\svchost.exe
    2013-06-03 21:46:57:768 1096 84 c Misc = Module: c:\windows\system32\wuaueng.dll
    2013-06-03 21:46:57:753 1096 84 c Service *.
    2013-06-03 21:46:57:768 1096 84 c Service * START * Service: Service startup
    2013-06-03 21:46:57:768 1096 84 c Service *.
    2013-06-03 21:46:57:846 1096 84 c Agent * WU client version 7.6.7600.256
    2013-06-03 21:46:57:846 1096 84 c Agent * Base Directory: C:\Windows\SoftwareDistribution
    2013-06-03 21:46:57:846 1096 84 c Agent * access type: no proxy
    2013-06-03 21:46:57:846 1096 84 c Agent * network state: disconnected
    2013-06-03 21:46:58:533 1096 aa8 report CWERReporter::Init succeeded
    2013-06-03 21:46:58:533 1096 aa8 Agent * Agent: initialization of Windows Update Agent *.
    2013-06-03 21:46:58:533 1096 aa8 Agent * Agent: initialization of the global parameters cache *.
    2013-06-03 21:46:58:533 1096 aa8 Agent * WSUS server:
    2013-06-03 21:46:58:533 1096 aa8 Agent * state WSUS server:
    2013-06-03 21:46:58:533 1096 aa8 Agent * target group: (Unassigned Computers)
    2013-06-03 21:46:58:533 1096 aa8 Agent * Windows Update access disabled: No.
    2013-06-03 21:46:58:533 1096 aa8 DnldMgr Download manager restoring 0 downloads
    2013-06-03 21:46:58:533 1096 aa8 to THE # to THE: initialization of automatic updates.
    2013-06-03 21:46:58:533 1096 aa8 to # approval type: download prior notification (user preference)
    2013-06-03 21:46:58:533 1096 aa8 to # poster of notifications of recommended software (user preference)
    2013-06-03 21:46:59:110 1096 84 c report * report: initialization of static data to report *.
    2013-06-03 21:46:59:110 1096 84 c report * OS Version = 6.0.6002.2.0.66304
    2013-06-03 21:46:59:110 1096 84 c report * OS Product Type = 0 x 00000003
    2013-06-03 21:46:59:250 1096 84 c report * computer brand = Dell Inc.
    2013-06-03 21:46:59:250 1096 84 c report * computer model = Studio 1537
    2013-06-03 21:46:59:250 1096 84 c report * Bios revision = A08
    ' 2013-06-03 21:46:59:250 1096 84 c report * name of Bios = Ver 1.00 BIOS A08 PARTTBL.
    2013-06-03 21:46:59:250 1096 84 c report * the Bios Release Date = 2009-02-10 T 00: 00:00
    2013-06-03 21:46:59:250 1096 84 c report * locale 1033 = ID
    2013-06-03 21:46:59:438 1096 aa8 to THE initialization feature updates
    updates to 2013-06-03 21:46:59:438 1096 aa8 to THE Found set 0 caching feature
    2013-06-03 21:46:59:438 1096 aa8 setting of to THE pending client directive to 'download approval '.
    2013-06-03 21:46:59:531 1096 aa8 only to THE delayed finish to initialize
    2013-06-03 21:46:59:906 1096 aa8 putting featured update notifications.  fIncludeDismissed = true
    2013-06-03 21:46:59:906 1096 aa8 No. feature updates available.
    2013-06-03 21:47:04:492 1096 d58 report CWERReporter finish event management. (00000000)
    2013-06-03 21:47:14:460 1096 84 c rolled back to THE client for directive 'download approval', session id = 0x1
    handle event 2013-06-03 21:49:13:063 1096 84 c to THE receipt
    2013-06-03 21:49:13:063 1096 84 c to THE setting pending client directive to 'download approval '.
    2013-06-03 21:49:28:077 1096 84 ch to THE WARNING: AU found no session appropriate to launch the client in
    2013-06-03 21:49:34:052 1096 84 c Shutdwn user refused the update stopped
    2013-06-03 21:49:34:052 1096 84 c to THE to THE initiates stopping service
    2013-06-03 21:49:34:052 1096 84 c to THE # to THE: initialization of automatic updates.
    2013-06-03 21:49:35:440 1096 84 c report CWERReporter finish event management. (00000000)
    2013-06-03 21:49:35:752 1096 84 c Service *.
    2013-06-03 21:49:35:752 1096 84 c Service * END * Service: out of Service [exit code = 0 x 240001]
    2013-06-03 21:49:35:752 1096 84 c Service *.
    2013-06-04 12:14:38:343 1084 fd0 Misc = logging initialized (build: 7.6.7600.256, tz:-0500) =.
    2013-06-04 12:14:38:405 1084 fd0 Misc = process: C:\Windows\system32\svchost.exe
    2013-06-04 12:14:38:530 1084 fd0 Misc = Module: c:\windows\system32\wuaueng.dll
    2013-06-04 12:14:38:343 1084 fd0 Service *.
    2013-06-04 12:14:38:686 1084 fd0 Service * START * Service: Service startup
    2013-06-04 12:14:38:764 1084 fd0 Service *.
    2013-06-04 12:14:38:842 1084 fd0 Agent * WU client version 7.6.7600.256
    2013-06-04 12:14:38:920 1084 fd0 Agent * Base Directory: C:\Windows\SoftwareDistribution
    2013-06-04 12:14:39:014 1084 fd0 Agent * access type: no proxy
    2013-06-04 12:14:39:092 1084 fd0 Agent * network state: disconnected
    2013-06-04 12:15:25:564 1084 fd0 report CWERReporter::Init succeeded
    2013-06-04 12:15:25:564 1084 fd0 Agent * Agent: initialization of Windows Update Agent *.

    2013-06-04 12:15:25:564 1084 fd0 Agent * Agent: initialization of the global parameters cache *.
    2013-06-04 12:15:25:564 1084 fd0 Agent * WSUS server:
    2013-06-04 12:15:25:564 1084 fd0 Agent * state WSUS server:
    2013-06-04 12:15:25:564 1084 fd0 Agent * target group: (Unassigned Computers)
    2013-06-04 12:15:25:564 1084 fd0 Agent * Windows Update access disabled: No.
    2013-06-04 12:15:25:595 1084 fd0 DnldMgr Download manager restoring 0 downloads

    2013-06-04 12:15:25:595 1084 fd0 in THE # to THE: initialization of automatic updates.
    2013-06-04 12:15:25:595 1084 fd0 to # approval type: download prior notification (user preference)
    2013-06-04 12:15:25:595 1084 to fd0 # poster notifications of recommended software (user preference)
    2013-06-04 12:15:25:829 1084 fd0 in THE featured updated initialization
    updates to 2013-06-04 12:15:25:829 1084 fd0 in THE Found set 0 caching feature
    setting of to THE to THE fd0 2013-06-04 12:15:25:829 1084 pending client directive to 'download approval '.
    2013-06-04 12:15:25:860 1084 fd0 only to THE delayed finish to initialize
    2013-06-04 12:15:26:157 1084 fd0 report * report: initialization of static data to report *.
    2013-06-04 12:15:26:157 1084 fd0 report * OS Version = 6.0.6002.2.0.66304
    2013-06-04 12:15:26:157 1084 fd0 report * OS Product Type = 0 x 00000003
    2013-06-04 12:15:26:204 1084 fd0 report * computer brand = Dell Inc.
    2013-06-04 12:15:26:204 1084 fd0 report * computer model = Studio 1537
    2013-06-04 12:15:26:204 1084 fd0 report * Bios revision = A08
    ' 2013-06-04 12:15:26:204 1084 fd0 report * name of Bios = Ver 1.00 BIOS A08 PARTTBL.
    2013-06-04 12:15:26:204 1084 fd0 report * the Bios Release Date = 2009-02-10 T 00: 00:00
    2013-06-04 12:15:26:204 1084 fd0 report * locale 1033 = ID
    2013-06-04 12:15:31:211 1084 c7c CWERReporter finish event management report. (00000000)
    2013-06-04 12:15:40:836 1084 fd0 in THE WARNING: AU found no session appropriate to launch the client in
    2013-06-04 12:17:20:404 1084 launched fd0 again to THE client for directive 'Download approval', session id = 0x1
    2013-06-04 12:18:14:364 1084 c7c CWERReporter finish event management report. (00000000)
    2013-06-04 12:18:21:806 1084 c7c CWERReporter finish event management report. (00000000)
    2013-06-04 12:18:45:112 1084 c7c CWERReporter finish event management report. (00000000)
    2013-06-04 12:18:50:166 1084 c7c CWERReporter finish event management report. (00000000)
    2013-06-04 13:05:40:452 1084 498 notifications of updated to THE featured layout.  fIncludeDismissed = true
    2013-06-04 13:05:40:452 1084 498 to THE star no. updates available.
    2013-06-04 13:34:53:304 888 1084 notifications of updated to THE featured layout.  fIncludeDismissed = true
    2013-06-04 13:34:53:304 1084 888 to THE star no. updates available.
    2013-06-04 14:50:54:004 1084 fd0 in THE #.
    2013-06-04 14:50:54:004 1084 fd0 in THE # START # to THE: research updates
    2013-06-04 14:50:54:004 1084 fd0 in THE #.
    2013-06-04 14:50:54:051 1084 fd0 in THE<## submitted="" ##="" au:="" search="" for="" updates="" [callid="">
    2013-06-04 14:50:54:051 1084 17 c 4 Agent *.
    2013-06-04 14:50:54:051 1084 17 c 4 Agent * START * Agent: finding updates [CallerId = AutomaticUpdates]
    2013-06-04 14:50:54:051 1084 17 c 4 Agent *.
    2013-06-04 14:50:54:051 1084 17 c 4 Agent * Online = Yes; Ignore download priority = No
    2013-06-04 14:50:54:051 1084 17 c 4 Agent * criteria = "IsInstalled = 0 and DeploymentAction = 'Installation' or IsPresent = 1 and DeploymentAction = 'Uninstall' or IsInstalled = 1 and 'Installation' and = 1 RebootRequired = DeploymentAction or IsInstalled = 0 and DeploymentAction = 'Uninstall' and RebootRequired = 1".
    2013-06-04 14:50:54:051 1084 17 c 4 Agent * ServiceID = {7971F918-A847-4430-9279-4A52D1EFE18D} third service
    "" 2013-06-04 14:50:54:051 1084 17 c 4 Age ' WUClient-SelfUpdate-ActiveX ~ 31bf3856ad364e35 ~ x 86 ~ ~ 7.6.7600.256 '.
    2013-06-04 14:51:16:874 1084 17 c 4 configuration configuration package "ActiveX-SelfUpdate-WUClient ~ 31bf3856ad364e35 ~ x 86 ~ ~ 7.6.7600.256 ' is already installed.
    14:51:16:874 1084 2013-06-04 17 c 4 assessment of the installer of the applicability of the installation package ' WUClient-SelfUpdate-aux-TopLevel ~ 31bf3856ad364e35 ~ x 86 ~ ~ 7.6.7600.256.
    2013-06-04 14:51:16:905 1084 17 c 4 configuration package ' WUClient-SelfUpdate-aux-TopLevel ~ 31bf3856ad364e35 ~ x 86 ~ ~ 7.6.7600.256 ' is already installed.
    14:51:16:905 1084 2013-06-04 17 c 4 assessment of the installer of the applicability of the installation package ' WUClient-SelfUpdate-Core-TopLevel ~ 31bf3856ad364e35 ~ x 86 ~ ~ 7.6.7600.256 '.
    2013-06-04 14:51:16:936 1084 17 c 4 configuration package ' WUClient-SelfUpdate-Core-TopLevel ~ 31bf3856ad364e35 ~ x 86 ~ ~ 7.6.7600.256 ' is already installed.

    ______________________________________________________________________________________________________________________________________________________________

    System update scan tool corrects errors of Windows Update in Windows 8, Windows 7, Windows Vista, Windows Server 2008 R2 and Windows Server 2008
    http://support.Microsoft.com/kb/947821

    ERROR_NOT_FOUND 0 X 80070490
    Windows could not search for new updates.

    You receive an error code "0 x 80070490" when you use Microsoft Update or Windows Update Web sites to install updates
    http://support.Microsoft.com/kb/958044

    Method 2 If the tool ON does not resolve the problem or the fixit does not help.

    If the * UPGRADE option is not available because Service Pack/s are installed and that your operating system is newer than the system you are trying to reinstall, so service pack/s must be removed in this case.

    Uninstall the Service Pack/s: How to uninstall Windows Vista service packs as a troubleshooting step
    http://support.Microsoft.com/kb/948537

    See also:

    How to overcome error 0 x 80070490 when installing updates in Windows Vista/Server 2008
    http://blogs.msdn.com/andrekl/archive/2008/09/29/how-to-overcome-error-0x80070490-when-installing-updates-in-Windows-Vista-Server-2008.aspx

  • PPTP VPN between clients Windows and Cisco 2921 router

    Hi all!

    I have a problem with PPTP VPN between Windows clients and router Cisco 2921 with permission of RADIUS (IAS). When I try to connect to Cisco 2921 of Windows 7 by using MS-CHAP v2 I get the message 778: it was not possible to verify the identity of the server. Can I use PAP - power is OK. On Windows XP, the same situation.

    Cisco config:

    version 15.0

    horodateurs service debug datetime msec

    Log service timestamps datetime msec

    encryption password service

    !

    hostname gw.izmv

    !

    boot-start-marker

    boot-end-marker

    !

    logging buffered 51200 warnings

    !

    AAA new-model

    !

    AAA authentication ppp default local radius group of

    !

    AAA - the id of the joint session

    !

    clock timezone + 002 2

    !

    No ipv6 cef

    IP source-route

    IP cef

    !

    !

    Authenticated MultiLink bundle-name Panel

    !

    Async-bootp Server dns 192.168.192.XX

    VPDN enable

    !

    VPDN-Group 1

    ! PPTP by default VPDN group

    accept-dialin

    Pptp Protocol

    virtual-model 1

    echo tunnel PPTP 10

    tunnel L2TP non-session timeout 15

    PMTU IP

    adjusting IP mtu

    !

    redundancy

    !

    interface Loopback0

    IP 192.168.207.1 255.255.255.0

    !

    !

    interface GigabitEthernet0/0

    Description $ETH-LAN$$ETH-SW-LAUNCH$$INTF-INFO-GE $ 0/0

    IP 192.168.192.XXX 255.255.255.0

    IP 192.168.192.XX 255.255.255.0 secondary

    IP nat inside

    IP virtual-reassembly

    automatic duplex

    automatic speed

    !

    !

    interface GigabitEthernet0/1

    no ip address

    Shutdown

    automatic duplex

    automatic speed

    !

    !

    interface GigabitEthernet0/2

    Description - Inet-

    no ip address

    NAT outside IP

    IP virtual-reassembly

    automatic duplex

    automatic speed

    PPPoE enable global group

    PPPoE-client dial-pool-number 1

    No cdp enable

    !

    !

    interface virtual-Template1

    IP unnumbered Loopback0

    IP mtu 1492

    IP virtual-reassembly

    AutoDetect encapsulation ppp

    by default PPP peer ip address pool

    PPP mppe auto encryption required

    PPP authentication ms-chap-v2

    !

    !

    interface Dialer1

    the negotiated IP address

    NAT outside IP

    IP virtual-reassembly

    encapsulation ppp

    Dialer pool 1

    Dialer-Group 1

    PPP authentication pap callin

    PPP pap sent-username DSLUSERNAME password DSLPASSWORD

    No cdp enable

    !

    !

    IP local pool PPP 192.168.207.200 192.168.207.250

    IP forward-Protocol ND

    !

    !

    overload of IP nat inside source list NAT_ACL interface Dialer1

    IP nat inside source static tcp 192.168.192.XX 25 expandable 25 82.XXX.XXX.XXX

    IP nat inside source static tcp 192.168.192.XX 1352 82.XXX.XXX.XXX 1352 extensible

    IP route 0.0.0.0 0.0.0.0 Dialer1

    !

    NAT_ACL extended IP access list

    deny ip 192.168.192.0 0.0.0.255 192.168.YYY.0 0.0.0.255

    deny ip 192.168.192.0 0.0.0.255 192.168.YYY.0 0.0.0.255

    deny ip 192.168.192.0 0.0.0.255 192.168.YYY.0 0.0.0.255

    deny ip 192.168.192.0 0.0.0.255 192.168.YYY.0 0.0.0.255

    permit tcp 192.168.192.0 0.0.0.255 any eq www

    permit tcp 192.168.192.0 0.0.0.255 any eq 443

    permit tcp 192.168.192.0 0.0.0.255 any eq 1352

    permit tcp host 192.168.192.XX no matter what eq smtp

    permit tcp 192.168.192.0 0.0.0.255 any eq 22

    permit tcp host 192.168.192.XX no matter what eq field

    permit tcp host 192.168.192.XX no matter what eq field

    permit tcp host 192.168.192.XX no matter what eq field

    allowed UDP host 192.168.192.XX matter what eq field

    allowed UDP host 192.168.192.XX matter what eq field

    allowed UDP host 192.168.192.XX matter what eq field

    !

    host 192.168.192.XX auth-port 1645 1646 RADIUS server acct-port

    Server RADIUS IASKEY key

    !

    control plan

    !

    !

    !

    Line con 0

    line to 0

    line vty 0 4

    line vty 5 15

    !

    Scheduler allocate 20000 1000

    end

    Debugging is followed:

    14:47:51.755 on 21 oct: PPP: Alloc context [294C7BC4]

    14:47:51.755 on 21 oct: ppp98 PPP: Phase is

    14:47:51.755 on 21 oct: ppp98 PPP: using AAA Id Unique = 8 b

    14:47:51.755 on 21 oct: ppp98 PPP: permission NOT required

    14:47:51.755 on 21 oct: ppp98 PPP: via vpn, set the direction of the call

    14:47:51.755 on 21 oct: ppp98 PPP: treatment of connection as a callin

    14:47:51.755 on 21 oct: ppp98 PPP: Session Session handle [62] id [98]

    14:47:51.755 on 21 oct: ppp98 TPIF: State of the event [OPEN] [initial check]

    14:47:51.755 on 21 oct: ppp98 PPP LCP: switch to passive mode, State [stopped]

    14:47:53.759 on 21 oct: ppp98 PPP LCP: exit passive mode, State [departure]

    14:47:53.759 on 21 oct: LCP ppp98: O CONFREQ [departure] id 1 len 19

    14:47:53.759 on 21 oct: ppp98 TPIF: MRU 1464 (0x010405B8)

    14:47:53.759 on 21 oct: ppp98 TPIF: AuthProto MS-CHAP-V2 (0x0305C22381)

    14:47:53.759 on 21 oct: ppp98 TPIF: MagicNumber 0xF018D237 (0x0506F018D237)

    14:47:53.759 on 21 oct: ppp98 TPIF: event [UP] State [departure at REQsent]

    14:47:54.351 on 21 oct: ppp98 TPIF: I CONFREQ [REQsent] id 0 len 18

    14:47:54.351 on 21 oct: ppp98 TPIF: MRU 1400 (0 x 01040578)

    14:47:54.351 on 21 oct: ppp98 TPIF: MagicNumber 0x2F7C5F7E (0x05062F7C5F7E)

    14:47:54.351 on 21 oct: ppp98 TPIF: PFC (0 x 0702)

    14:47:54.351 on 21 oct: ppp98 TPIF: RAC (0 x 0802)

    14:47:54.351 on 21 oct: LCP ppp98: O CONFNAK [REQsent] id 0 len 8

    14:47:54.351 on 21 oct: ppp98 TPIF: MRU 1464 (0x010405B8)

    14:47:54.351 on 21 oct: ppp98 TPIF: State of the event [receive ConfReq-] [REQsent to REQsent]

    14:47:54.751 on 21 oct: ppp98 TPIF: I CONFACK [REQsent] id 1 len 19

    14:47:54.751 on 21 oct: ppp98 TPIF: MRU 1464 (0x010405B8)

    14:47:54.751 on 21 oct: ppp98 TPIF: AuthProto MS-CHAP-V2 (0x0305C22381)

    14:47:54.751 on 21 oct: ppp98 TPIF: MagicNumber 0xF018D237 (0x0506F018D237)

    14:47:54.751 on 21 oct: ppp98 TPIF: State of the event [receive ConfAck] [REQsent to ACKrcvd]

    14:47:54.915 on 21 oct: ppp98 TPIF: I CONFREQ [ACKrcvd] id 1 len 18

    14:47:54.915 on 21 oct: ppp98 TPIF: MRU 1400 (0 x 01040578)

    14:47:54.915 on 21 oct: ppp98 TPIF: MagicNumber 0x2F7C5F7E (0x05062F7C5F7E)

    14:47:54.915 on 21 oct: ppp98 TPIF: PFC (0 x 0702)

    14:47:54.915 on 21 oct: ppp98 TPIF: RAC (0 x 0802)

    14:47:54.915 on 21 oct: LCP ppp98: O CONFNAK [ACKrcvd] id 1 len 8

    14:47:54.915 on 21 oct: ppp98 TPIF: MRU 1464 (0x010405B8)

    14:47:54.915 on 21 oct: ppp98 TPIF: State of the event [receive ConfReq-] [ACKrcvd to ACKrcvd]

    14:47:55.275 on 21 oct: ppp98 TPIF: I CONFREQ [ACKrcvd] id 2 len 18

    14:47:55.275 on 21 oct: ppp98 TPIF: MRU 1464 (0x010405B8)

    14:47:55.275 on 21 oct: ppp98 TPIF: MagicNumber 0x2F7C5F7E (0x05062F7C5F7E)

    14:47:55.275 on 21 oct: ppp98 TPIF: PFC (0 x 0702)

    14:47:55.275 on 21 oct: ppp98 TPIF: RAC (0 x 0802)

    14:47:55.275 on 21 oct: LCP ppp98: O CONFACK [ACKrcvd] id 2 len 18

    14:47:55.275 on 21 oct: ppp98 TPIF: MRU 1464 (0x010405B8)

    14:47:55.275 on 21 oct: ppp98 TPIF: MagicNumber 0x2F7C5F7E (0x05062F7C5F7E)

    14:47:55.275 on 21 oct: ppp98 TPIF: PFC (0 x 0702)

    14:47:55.275 on 21 oct: ppp98 TPIF: RAC (0 x 0802)

    14:47:55.275 on 21 oct: ppp98 TPIF: State of the event [receive ConfReq +] [ACKrcvd to open]

    14:47:55.295 on 21 oct: ppp98 PPP: Phase is AUTHENTICATING,

    14:47:55.295 on 21 oct: ppp98 MS-CHAP-V2: O CHALLENGE id 1 len 28 of 'gw.izmv '.

    14:47:55.295 on 21 oct: ppp98 TPIF: State is open

    14:47:55.583 on 21 oct: ppp98 MS-CHAP-V2: I ANSWER id 1 len 71 of "domain\username".

    14:47:55.583 on 21 oct: ppp98 PPP: Phase TRANSFER, tempting with impatience

    14:47:55.583 on 21 oct: ppp98 PPP: Phase is AUTHENTICATING, unauthenticated user

    14:47:55.587 on 21 oct: ppp98 PPP: request sent MSCHAP_V2 LOGIN

    14:47:55.591 on 21 oct: ppp98 PPP: received LOGIN response PASS

    14:47:55.591 on 21 oct: ppp98 PPP AUTHOR: author data NOT available

    14:47:55.591 on 21 oct: ppp98 PPP: Phase TRANSFER, tempting with impatience

    14:47:55.595 on 21 oct: Vi3 PPP: Phase is AUTHENTICATING, authenticated user

    14:47:55.595 on 21 oct: Vi3: given msg No. MS_CHAP_V2

    14:47:55.595 on 21 oct: Vi3 MS-CHAP-V2: SUCCESS O id 1 len 46 msg is "tG @ #QDD @(@B@ (@[email protected]/ ** / @I @:[email protected]/ ** / @@@ EJFDE)).

    14:47:55.595 on 21 oct: Vi3 PPP: Phase is in PLACE

    14:47:55.595 on 21 oct: Vi3 CPIW: protocol configured, start state cf. [original]

    14:47:55.595 on 21 oct: Vi3 CPIW: State of the event [OPEN] [Initial report on startup]

    14:47:55.595 on 21 oct: Vi3 CPIW: O CONFREQ [departure] id 1 len 10

    14:47:55.595 on 21 oct: Vi3 CPIW: address of 192.168.207.1 (0x0306C0A8CF01)

    14:47:55.595 on 21 oct: Vi3 CPIW: event [UP] State [begins to REQsent]

    14:47:55.595 on 21 oct: Vi3 CCP: protocol configured, start state cf. [original]

    14:47:55.595 on 21 oct: Vi3 CCP: State of the event [OPEN] [Initial report on startup]

    14:47:55.595 on 21 oct: Vi3 CCP: O CONFREQ [departure] id 1 len 10

    14:47:55.595 on 21 oct: Vi3 CCP: MS - PPC supported bits 0 x 01000060 (0 x 120601000060)

    14:47:55.595 on 21 oct: Vi3 CCP: event [UP] State [begins to REQsent]

    14:47:55.599 on 21 oct: % LINK-3-UPDOWN: Interface virtual-access.3, changed State to

    14:47:55.603 on 21 oct: % LINEPROTO-5-UPDOWN: Line protocol on Interface virtual-access.3, changed State to

    14:47:56.027 on 21 oct: Vi3 LCP: I have TERMREQ [open] id 3 len 16

    14:47:56.027 on 21 oct: Vi3 LCP: (0x2F7C5F7E003CCD740000030A)

    14:47:56.027 on 21 oct: Vi3 CPIW: event [BOTTOM] State [REQsent on startup]

    14:47:56.027 on 21 oct: Vi3 CPIW: State of event [CLOSE] [begins with initial]

    14:47:56.027 on 21 oct: Vi3 CCP: event [BOTTOM] State [REQsent on startup]

    14:47:56.027 on 21 oct: Vi3 PPP DISC: MPPE required not negotiated

    14:47:56.027 on 21 oct: Vi3 PPP: sending Acct event [low] id [8B]

    14:47:56.027 on 21 oct: Vi3 CCP: State of event [CLOSE] [start with initial]

    14:47:56.027 on 21 oct: Vi3 LCP: O TERMACK [open] id 3 len 4

    14:47:56.027 on 21 oct: Vi3 LCP: event [receive TermReq] State [Open to stop]

    14:47:56.027 on 21 oct: Vi3 PPP: Phase ENDS

    14:47:56.027 on 21 oct: Vi3 LCP: event [CLOSE] [off status of closing]

    14:47:56.675 on 21 oct: Vi3 PPP: block vaccess to be released [0x10]

    14:47:56.675 on 21 oct: Vi3 LCP: event [CLOSE] State [closing closing]

    14:47:56.679 on 21 oct: Vi3 LCP: event [BOTTOM] State [closing on Initial]

    14:47:56.679 on 21 oct: Vi3 PPP: compensation AAA Id Unique = 8 b

    14:47:56.679 on 21 oct: Vi3 PPP: unlocked by [0x10] always locked by 0 x [0]

    14:47:56.679 on 21 oct: Vi3 PPP: free previously blocked vaccess

    14:47:56.679 on 21 oct: Vi3 PPP: Phase is BROKEN

    14:47:56.679 on 21 oct: % LINK-3-UPDOWN: Interface virtual-access.3, changed State to down

    14:47:56.683 on 21 oct: % LINEPROTO-5-UPDOWN: Line protocol on Interface virtual-access.3, state change downstairs

    I'll be very grateful for any useful suggestions

    We had the same problem using MS-CHAP-V2 and 3945 router using IOS 15.2. When you add the same combination of username/password locally it worked fine but it wasn't no of course of the solution. We have solved this problem by adding the following line in the config file:

    AAA authorization network default authenticated if

    This is because Windows 2000 clients require the use of a statement of authorization aaa in the router config. Maybe it was default (and therefore not shown) previous iOS releases.

    Success!

    Wil Schenkeveld

  • Client Windows Update not found with error 0x80072efe.

    After trying a few update solutions, still cannot update my Windows Vista Home premium.

    ----------------------------------------------------------------------------

    To THE: search updates [CallId = {99E90203-6E7E-48FF-B9F0-434086CD2147}]
    2010-06-11 09:00:12:727 1956 113 c to THE #.
    2010-06-11 09:00:12:729 1956 113 c to THE setting next detection timeout at 2010-06-11 12:00:12
    2010-06-11 09:00:12:729 1956 113 c time of installation to THE adjustment to THE planned at 2010-06-12 01:00
    2010-06-11 09:00:17:726 1956 d88 report REPORT EVENT: 09:00:12:725 2010-06-11 + 0200 1 148 101 {B0A8E80E-6F0D-4000-8775-D52B6B945499} {00000000-0000-0000-0000-000000000000} 0 80072efe AutomaticUpdates outage software to sync Windows Update Client did not detect with error 0x80072efe.
    2010-06-11 09:00:17:743 1956 d88 report CWERReporter::HandleEvents - WER report upload completed with status 0 x 8
    2010-06-11 09:00:17:743 1956 d88 WER sent report: 7.4.7600.226 0x80072efe 00000000-0000-0000-0000-000000000000 Scan 101 unmanaged
    2010-06-11 09:00:17:743 1956 d88 report CWERReporter finish event management. (00000000)

    I was able to update windows or windows defender and my sytem restore was kapput too :(

    solved the problem with Kaspersky tdss killer... found here: download and scan can heal everything what he finds.

    http://downloads.PHPNuke.org/en/download-item-view-m-g-n-m-z/Kaspersky%2BTDSSKILLER.htm

    Good luck!!

  • The event - the print spooler log error could not load a plug-in module

    Using a HP Officejet 6500 a Plus e-All-in-One - E710n p6 - 2036c HP with Windows 7 sp1 64 bit operating system desktop.  I get the following error:

    Log name: Microsoft-Windows-PrintService/Admin

    Source: Microsoft-Windows-PrintService

    Date: 27/09/2012-17:24:41

    Event ID: 808

    Task category: initialization

    Level: error

    Key words: print spooler

    User: PC-1\mpw

    Computer: PC - 1

    Description:

    The print spooler could not load a plug-in module C:\Windows\system32\spool\DRIVERS\x64\3\UNIDRVUI. DLL, error 0xc1 code. See the user context information for event data.

    The event XML:

    http://schemas.Microsoft.com/win/2004/08/events/event">

    808

    0

    2

    36

    12

    0 x 8000000000020000

    43

    Microsoft-Windows-PrintService/Admin

    PC-1

    http://schemas.Microsoft.com/win/2004/08/events"xmlns ="http://manifests.microsoft.com/win/2005/08/windows/printing/spooler/core/events">."

    C:\Windows\system32\spool\DRIVERS\x64\3\UNIDRVUI. DLL

    0xC1

    112

    I have no problem with printing from the desktop wired or wireless laptop. But every time I print something this error appears in the Print Service event log.

    I found that the event ID 315 with error 2114 is a synchronization problem.  When I turn on the printer to the computer before, I get this error in the event log.  If I start first to the computer, and then turn on the printer, the error disappears.

  • Windows 7 64-bit mouse pauses/freezes/stutters often accompanied by an event sound Windows

    Symptoms:

    Erratic mouse behavior. Mouse hanging, the gel for a full second or more, accompanied by a Windows event sound, generally. Sometimes, there is just a slight pause and no noise Windows event. Sometimes the mouse acceleration changes after freezing. Sometimes, more rarely, my mouse will be dropped by the operating system... the laser light on the underside turns off and I have to unplug the mouse and plug it in again so he can be recognized.

    What happens almost all the time. I want to use Windows mainly to play a game, World War II online: Battleground Europe. It is a shooting mmo first-person. This problem is annoying enough on the desktop. Unsuable for FPS games. I plan to have to file using Windows 7 64 bit for now.

    I have this problem as soon as Windows 7 64-bit.

    The problem with Windows 7 64 bit after trying many many solutions/solutions offered on the Internet.

    I did not need to determine what event could be linked to it in the event Log Viewer, or if it is even an event that is be connected here.

    NOTE: My mouse (G3) Logitech MX518 Gaming tips works fine, without any problems whatsoever, under Windows XP Professional SP3 32-bit with all latest updates or on Ubuntu 10.4 (Lucid Lynx) 64-bit. I never had no problem with this mouse at any time under these operating systems. These operating systems will run an intensive game if I want to, throughout the day.

    -----------------------------------------------------------------

    Steps in my last attempt to solve the problem.

    I was looking not all parameters of the BIOS at once at the beginning. For example, I have disabled "Intel Speedstep" to see if that would solve the question. Then restarted in BIOS and disabled the C1E function when I discovered that disabling Speedstep alone does not resolve the issue. ECT, ect...

    I have not installed Norton Internet Security 2010 for awhile while I tried various solutions of Workaround available and listed below in case this is the question. No difference, so NIS 2010 is now installed.

    Remember, that this behavior occurs that when Windows 7 64 bit is installed properly.

    (1) clean install of Windows 7 64-bit, for the third time now

    (2) installed the Runtime Visual C++ 2008 64 bit v9.0.30729.4148 than kb973552/KB969706 downloaded from--> http://www.microsoft.com/downloads/details.aspx?displaylang=en&FamilyID=2051a0c1-c9b5-4b0a-a8f5-770a549fd78c

    (a) just in case Rebooted and then install the same version of the Visual C++ 2008 for 32-bit environment Runtime in Windows 7 64 bit

    (3) installed Windows 7 64 - bit drivers

    (a) Marvell Yukon 88E8056 Gigabit Ethernet on-board NIC Driver v11.24.5.3 (15/02/2010)

    (b) various software of Creative Labs creative Labs X - Fi Titanium 64-bit driver v2.17.0007 and all updates for them.

    (c) Software Driver of Intel Chipset v9.1.1.1025 (22/12/2009). Seems to just install an update from the hard disk of 64-bit driver.

    (d) ATI Catalyst 10.3 Driver

    (4) installed Windows updates

    NOTE: I have not installed the latest four updates for now, three of them are security updates have a publication Date: 09/02/2010. I decided to not install these due to a mistake of "Circular kernel context logger" that I already saw in the viewer of the event log, recorded by "Microsoft-Windows-Kernel-EventTracing" event ID: 2 now, I'm not having this issue.

    NOTE: I also installed a driver in option, the ACPI ATK110 driver, which installs the following file--> C:\Windows\System32\drivers\ASACPI.sys - he has listed as the version of the file 1043.2.15.37 and dated 29/03/2005. In a previous installation of Windows 7 64 bit, I downloaded an update of the present of Asus contained in a file/AMDCoolnQuiet_Utility_V21801_XPVistaWin7.zip utility and installed. I started the utility and he gave me the message that my system was not supported by "Asus Cool ' n Quiet. It's ASACPI.sys file was dated some time in 2009, rather than in 2005. Since my last Windows 7 install, I have currently a bit the 2005 version proposed by Windows Update installed. I don't know if this file is to load or used by Windows 7 64 bit. But I wonder...

    Is this a problem?

    (5) installed software v6.00.68 Logitech Setpoint (Version 4.90.80 driver) for Windows 7 64-bit

    NOTE: I have not installed this in previous installations of 64-bit Windows 7 and had hoped that this would cure the problem. No change, the problem still persists.

    (6) went into the BIOS and reset to the default settings

    (7) BIOS: Set A.I. OC (overlcock) to "Manual" and left to deafult values so that the CPU isn't overclocked automatically or manually sort

    (8) BIOS: Establish timimgs settings memory, memory voltage and the voltage Northbridge, according to my memory (memory Mushkin) manufacturer's recommendations

    NOTE: Again, I didn't have never had any problem at all in Windows XP Pro 32 bit SP3 or Ubuntu 10.4 64 bit with these settings. These operating systems will run an intensive game if I want to, throughout the day.

    (9) BIOS: The value of Intel Speedstep "Disabled".

    (10) BIOS: C1E (Enhanced Halt State) value to "disabled".

    (11) BIOS: Set the Mode of the ACPI Power / Suspend 'S3' only '

    (12) BIOS: Set ACPI 2.0 Support to 'Active '.

    NOTE: On, off, on any settings/functions above not has not solved the problem. I have I have not tried all the single 'combination', but in any case, make no change with the mouse.

    (13) in Windows 7, I selected the Option to 'High Performance' and the value "USB selective suspend setting" to "Disabled" with updated BIOS options as shown in steps 9 to 12 above

    NOTE: With BIOS defined that way there is no setting "Processor Power Management" in the Options of food, other than the 'political cooling system' (active/passive).

    I left this game to 'Active '.

    Is this a problem?

    (14) tried monitoring DPC latency with the download link for the "DPC latency Checker" utility No visible ears in the utility during the mouse freezes / breaks

    -----------------------------------------------------------------

    System Specs:

    (1) Intel Core2Duo E8600 (3.33 GHz, 6 MB L2, Stepping E0, CPU Cache not OC had) on Asus P5Q Deluxe (Intel P45 Chipset + ICH10R Southbridge) with BIOS 2301
    (2) Zlaman CNPS9700 LED 110 mm thermal heatsink / CPU fan
    (3) Thermaltake W0116RU 750W modular POWER supply
    (4) Mushkin 4 GB (2 x 2 GB) DDR2 1066 (PC2-8500) RAM in Dual-Channel mode (value 5-5-15-2T timings and various other such defined memory recommended by Thierry timings.) Voltage of the memory the value 2.02v and Northbridge as recommended by Mushkin value 1.32v in the BIOS. I have never had any problem in Windows XP 32 - bit or Ubuntu 10.4 64-bit)
    (5) driver software Intel Chipset v9.1.1.1025 (22/12/2009)
    6) HIS (ATI) HD 512 MB 4850 with IceQ4 cooler with Catalyst 10.3 driver
    (7) creative SB X - Fi Titanium with driver v2.17.0007
    (8) Marvell Yukon 88E8056 Gigabit Ethernet NIC onboard with driver v11.24.5.3 (15/02/2010)
    (9) Unicomp Tactile Feedback(non-mushy, clickity-clack) USB wired keyboard
    (10) Logitech (G3) Gaming MX518 Wired Optical mouse with the Logitech Setpoint software (Version 4.90.80 driver) v6.00.68 for Windows 7 64-bit
    11) MultiSync Samsung 214 t 21 "screen LCD Digital (1600 x 1200 native res)
    (12) Microsoft Sidewinder Forcefeedback 2 USB Joystick
    (13) western Digital 500 GB GB w/16 MB Cache SRTL disk HARD 7200 RPM Sata 3.0 GB / s
    (14) v9.28.1886 DirectX Redistributable (February 2010)
    (15) cooler Master Cosmos 1000 Full-Tower Case
    (16) Norton Internet Security 2010 (firewall and anti-virus)
    (17) Internet Connection Comcast 1.5 MB/s cable
    (18) Windows 7 64 bit ultimate
    19) Ubuntu 10.4 (Lucid Lynx) 64-bit

    Hello again,

    Can I have found the solution that worked for me. It is probably too early to tell, I'll need more time to be sure. But in case he solved the problem for me, I'll post what seems to have worked as suggested on a post, I came across from another forum. Consider a guy who tried many suggestions, maybe that's the answer. Heck, I had tried a few other things that I have said in my original post. But in any case, so far, my system and mouse seem to work very well on the desktop for the last hour and a half. I have not tried yet game.

    (1) uninstall the Windows Update KB977074 (January 2010 stability and reliability update for Windows 7 and Windows Server 2008 R2).

    (2) reboot and leave your system for a couple / few minutes after the restart.

    (3) just in case... Restart again, and then reinstall the KB977074.

    (4) restart to complete the installation.

    January 2010 stability and reliability update for Windows 7 and Windows Server 2008 R2 info and the download link-->

    http://support.Microsoft.com/kb/977074

    Best regards and good luck,

    OneTinSoldier

  • Event Viewer: Windows color system service failed to start due to the following error: the service did not demand launch or control in a timely.

    Whenever I start my Windows 7/64 on a motherboard Asus X 99 installation - WS pairs of the following event log entry are added in the journal of the repetitive events (12 times on every boot):

    ----------------------------

    -

    -

    7009

    0

    2

    0

    0

    0 x 8080000000000000

    38039

    System

    *******

    -

    30000

    Windows color system

    ----------------------------

    -

    -

    7000

    0

    2

    0

    0

    0 x 8080000000000000

    38040

    System

    *******

    -

    Windows color system

    % 1053

    ----------------------------

    What may be the cause of these event log entries?

    Hello

    Please keep us updated on the issue.

    To better understand Windows Color System, I'll refer to the article below.

    Windows color system

    I hope the information is useful. Feel free to write us if you have questions related to Windows, we will be happy to answer.

  • I meet an event Microsoft-Windows-Kernel-Power 41 randomly

    every once and a while I meet this event, and it begins to multiply like playing games. Computer is brand New.here is the log of errors that I got:

    Log name: System

    Source: Microsoft-Windows-Kernel-Power

    Date: 03/08/2012 23:08:47

    Event ID: 41

    Task category: (63)

    Level: critical

    Key words: (2).

    User: SYSTEM

    Computer: Frogger-PC

    Description:

    The system has rebooted without judgment properly first. This error can be caused if the system unresponsive, crashed or unexpected power loss.

    The event XML:

    41

    2

    1

    63

    0

    0 x 8000000000000002

    9687

    System

    Frogger-PC

    26

    0 x 5003

    0xfffff70001080000

    0x18e6a

    0x18e601f031cd4

    fake

    0

    any help would be greatly appreciated.

    It has been altered RAM I ran a Memtest86 + and 1 DIMM are back with 199 errors after 1 Pass

  • Remote IPSec VPN - client Windows 7 and ASA 5505

    Hello

    I'm having trouble with configuring IPSec VPN with Cisco ASA 5505 and Windows 7 client native VPN remotely. My client PC Gets the VPN IP pool address and can access a remote network behind ASA, but then I lose my internet connection. I read that this should be a problem with the split tunneling, but I did as it says here and no luck.

    Windows VPN Client settings, if I uncheck "use default gateway on remote network" I have an internet connection (given that the customer is using a local gateway), but then I can't ping remote network.

    In the log, I see the warnings of this type:

    TCP connection of disassembly 256 for outside:192.168.150.1/49562 to outside:213.199.181.90/80 duration 0: 00:00 0 stream bytes is a loopback (cisco)

    I have attached my configuration file (without configuring split tunneling, I tried). If you need additional newspapers, I'll send them right away.

    Thank you for your help.

    Petar Koraca

    That's what you would have needed on versions 8.3 and earlier versions:

    permit same-security-traffic intra-interface

    Global 1 interface (outside)

    NAT (outside) 1 192.168.150.0 255.255.255.0

    However I see that you are running 8.4 so I think that all you need is this (I never did on 8.4 so it may not be accurate)

    permit same-security-traffic intra-interface

    network of the NETWORK_OBJ_192.168.150.0_24 object

    dynamic NAT interface (outdoors, outdoor)

    Give it a shot and let me know how it goes.

Maybe you are looking for