Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Update > Windows Update Fails - Log attached

Reply
Thread Tools Display Modes

Windows Update Fails - Log attached

 
 
Wardy
Guest
Posts: n/a

 
      11-05-2006
Hi,
I have just fixed a friends laptop clearing viruses, spyware and alike and
all seems ok now except i can get it to process Windows Updates.

The analysis and download work fine but the install fails quickly. Having
looked at the website I've deduced the place to look is the windowsupdate log
but can't interpret the messages :-(

Here is the log chopper down, can anyone help please?

************************************************** **********
2006-11-05 15:39:13 392 1f0 Misc =========== Logging initialized (build:
5.8.0.2469, tz: -0000) ===========
=========== Logging initialized (build: 5.8.0.2469, tz: -0000) ===========
2006-11-05 15:39:23 392 1f0 Misc = Process: C:\Program Files\Internet
Explorer\iexplore.exe
2006-11-05 15:39:23 392 1f0 Misc = Module: C:\WINDOWS\system32\wuapi.dll
2006-11-05 15:39:23 392 1f0 COMAPI -------------
2006-11-05 15:39:23 392 1f0 COMAPI -- START -- COMAPI: Search [ClientId =
WindowsUpdate]
2006-11-05 15:39:23 392 1f0 COMAPI ---------
2006-11-05 15:39:23 392 1f0 COMAPI - Online = Yes; Ignore download
priority = No
2006-11-05 15:39:23 392 1f0 COMAPI - Criteria = "IsInstalled=0 and
IsHidden=1"
2006-11-05 15:39:23 392 1f0 COMAPI - ServiceID =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 15:39:23 392 1f0 COMAPI <<-- SUBMITTED -- COMAPI: Search
[ClientId = WindowsUpdate]
2006-11-05 15:39:23 964 3b4 Agent *************
2006-11-05 15:39:23 964 3b4 Agent ** START ** Agent: Finding updates
[CallerId = WindowsUpdate]
2006-11-05 15:39:23 964 3b4 Agent *********
2006-11-05 15:39:34 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:39:34 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:39:47 964 3b4 PT +++++++++++ PT: Synchronizing server
updates +++++++++++
2006-11-05 15:39:47 964 3b4 PT + ServiceId =
{9482F4B4-E343-43B6-B170-9A65BC822C77}, Server URL =
https://update.microsoft.com/v6/Clie...ce/client.asmx
2006-11-05 15:39:47 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:07 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
******Keeps repeating - chopped out to reduce text below 30000 - hope it
wasn't important
2006-11-05 15:41:07 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:08 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:08 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:08 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:22 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:22 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:23 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:31 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:31 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:32 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:32 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:42 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:50 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:51 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:41:51 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:01 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:14 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:15 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:15 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:15 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:30 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:30 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:30 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:44 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:45 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:45 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:42:45 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:43:04 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:43:05 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:43:05 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:43:22 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:43:39 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:43:51 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:13 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:14 964 3b4 PT +++++++++++ PT: Synchronizing extended
update info +++++++++++
2006-11-05 15:44:14 964 3b4 PT + ServiceId =
{9482F4B4-E343-43B6-B170-9A65BC822C77}, Server URL =
https://update.microsoft.com/v6/Clie...ce/client.asmx
2006-11-05 15:44:14 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:15 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:16 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:16 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:17 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:30 3956 758 Misc =========== Logging initialized (build:
5.8.0.2469, tz: -0000) ===========
2006-11-05 15:44:30 3956 758 Misc = Process: C:\WINDOWS\system32\wuauclt.exe
2006-11-05 15:44:30 3956 758 Misc = Module: C:\WINDOWS\system32\wuaueng.dll
2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...fe91e62311.cab
for file jqlwW9P2cpPLyw0aYuo3/pHmIxE= when file has not been previously added
to the datastore
2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...942fbb0ae2.cab
for file 4QZYFOUAs4oaZdXIUZb7lC+7CuI= when file has not been previously added
to the datastore
2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...d4f475a4f7.cab
for file l0CQzwgGSsSSDbAWPsp01PR1pPc= when file has not been previously added
to the datastore
2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...92599f1122.cab
for file ZiGanWJxGkocWzg+e+DdklmfESI= when file has not been previously added
to the datastore
2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...1dffbc11ce.cab
for file lUDWOji7NTnJHf9DOULxHf+8Ec4= when file has not been previously added
to the datastore
2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...18f11b446a.cab
for file i6d/TAv7mEtms5I8A1MhGPEbRGo= when file has not been previously added
to the datastore
2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...b153838a75.cab
for file ORu/EN0PQ4zeo+tsehF3sVODinU= when file has not been previously added
to the datastore
2006-11-05 15:44:31 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...f8bd1752b4.cab
for file zdEv/RNy9hrDwj+ryP5W+L0XUrQ= when file has not been previously added
to the datastore
2006-11-05 15:44:31 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...c926c8de2a.cab
for file RIRg3gANNQ4ZvZgmDN8GySbI3io= when file has not been previously added
to the datastore
2006-11-05 15:44:31 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...54399b6ebc.cab
for file Z29+W8NRG5EMlDHVcXojVDmbbrw= when file has not been previously added
to the datastore
2006-11-05 15:44:32 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...5558130683.cab
for file TPIzZn9zv+ZmD+Hei9+AVVgTBoM= when file has not been previously added
to the datastore
2006-11-05 15:44:32 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...b37f0050b0.cab
for file 0LK60fvYlmr3VPe67VPEs38AULA= when file has not been previously added
to the datastore
2006-11-05 15:44:32 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...fc7c42959f.cab
for file 1EhK4FnAxGv3WGU1EOsS/HxClZ8= when file has not been previously added
to the datastore
2006-11-05 15:44:32 3956 758 DtaStor WARNING: Attempted to add URL
http://www.download.windowsupdate.co...4b6b7970fb.cab
for file 14tDCBv0NKCt+wkPrhCFS2t5cPs= when file has not been previously added
to the datastore
2006-11-05 15:44:39 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:39 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:39 964 3b4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:44:43 964 3b4 Agent * Found 0 updates and 12 categories in
search
2006-11-05 15:44:43 964 3b4 Report *********** Report: Initializing static
reporting data ***********
2006-11-05 15:44:43 964 3b4 Report * OS Version = 5.1.2600.2.0.66304
2006-11-05 15:44:47 964 3b4 Report * Computer Brand = Hewlett-Packard

2006-11-05 15:44:47 964 3b4 Report * Computer Model = Pavilion ze8500
(DJ347A)
2006-11-05 15:44:48 964 3b4 Report * Bios Revision = KF_KH.F.19
2006-11-05 15:44:48 964 3b4 Report * Bios Name = PhoenixBIOS 4.0 Release
6.0
2006-11-05 15:44:48 964 3b4 Report * Bios Release Date =
2003-12-05T00:00:00
2006-11-05 15:44:48 964 3b4 Report * Locale ID = 2057
2006-11-05 15:44:48 964 3b4 Agent *********
2006-11-05 15:44:48 964 3b4 Agent ** END ** Agent: Finding updates
[CallerId = WindowsUpdate]
2006-11-05 15:44:48 964 3b4 Agent *************
2006-11-05 15:44:48 392 a30 COMAPI >>-- RESUMED -- COMAPI: Search
[ClientId = WindowsUpdate]
2006-11-05 15:44:49 392 a30 COMAPI - Updates found = 0
2006-11-05 15:44:49 392 a30 COMAPI ---------
2006-11-05 15:44:49 392 a30 COMAPI -- END -- COMAPI: Search [ClientId =
WindowsUpdate]
2006-11-05 15:44:49 392 a30 COMAPI -------------
2006-11-05 15:44:49 392 1f0 COMAPI -------------
2006-11-05 15:44:49 392 1f0 COMAPI -- START -- COMAPI: Search [ClientId =
WindowsUpdate]
2006-11-05 15:44:49 392 1f0 COMAPI ---------
2006-11-05 15:44:49 392 1f0 COMAPI - Online = No; Ignore download
priority = No
2006-11-05 15:44:49 392 1f0 COMAPI - Criteria = "IsInstalled = 0 and
IsHidden = 0"
2006-11-05 15:44:49 392 1f0 COMAPI - ServiceID =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 15:44:49 392 1f0 COMAPI <<-- SUBMITTED -- COMAPI: Search
[ClientId = WindowsUpdate]
2006-11-05 15:44:49 964 3b4 Agent *************
2006-11-05 15:44:49 964 3b4 Agent ** START ** Agent: Finding updates
[CallerId = WindowsUpdate]
2006-11-05 15:44:49 964 3b4 Agent *********
2006-11-05 15:45:40 964 3b4 Driver DeviceStatus: 0x180000a,
DeviceProblemNumber: 00000000
2006-11-05 15:45:40 964 3b4 Agent * Added update
{C57C82A0-BFE5-49C1-B4D4-57DA31994859}.50 to search result
2006-11-05 15:45:40 964 3b4 Agent * Added update
{5A0255AB-8EB9-49DF-8878-C137F278397E}.100 to search result
2006-11-05 15:45:40 964 3b4 Agent * Added update
{6384F8AC-4973-4ED9-BC7F-4644507FB001}.100 to search result
2006-11-05 15:45:40 964 3b4 Agent * Added update
{46A0B6F7-B283-45F8-9CCB-C8E3B4EC332C}.100 to search result
2006-11-05 15:45:40 964 3b4 Agent * Added update
{9D493962-0BB7-4541-AD81-F96263B4B201}.102 to search result
2006-11-05 15:45:42 964 3b4 Driver DeviceStatus: 0x180200a,
DeviceProblemNumber: 00000000
2006-11-05 15:45:42 964 3b4 Agent * Added update
{4A420C00-383D-4E00-8B8F-9EF31366653B}.100 to search result
2006-11-05 15:45:42 964 3b4 Agent * Added update
{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103 to search result
2006-11-05 15:45:42 964 3b4 Agent * Added update
{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102 to search result
2006-11-05 15:45:42 964 3b4 Agent * Added update
{8F771EC5-FCD3-4A6B-ADA6-7D6F0927F080}.102 to search result
2006-11-05 15:45:42 964 3b4 Agent * Added update
{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100 to search result
2006-11-05 15:45:42 964 3b4 Agent * Found 10 updates and 12 categories in
search
2006-11-05 15:45:42 964 3b4 Agent *********
2006-11-05 15:45:42 964 3b4 Agent ** END ** Agent: Finding updates
[CallerId = WindowsUpdate]
2006-11-05 15:45:42 964 3b4 Agent *************
2006-11-05 15:45:42 392 a30 COMAPI >>-- RESUMED -- COMAPI: Search
[ClientId = WindowsUpdate]
2006-11-05 15:45:42 964 3b4 Report REPORT EVENT:
{7EC0E543-9543-40E3-A2D3-0C29FE2AF046} 2006-11-05
15:44:43-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 WindowsUpdate Success Software Synchronization Agent has finished detecting items.
2006-11-05 15:45:43 392 a30 COMAPI - Updates found = 10
2006-11-05 15:45:43 392 a30 COMAPI ---------
2006-11-05 15:45:43 392 a30 COMAPI -- END -- COMAPI: Search [ClientId =
WindowsUpdate]
2006-11-05 15:45:43 392 a30 COMAPI -------------
2006-11-05 15:46:32 392 1f0 COMAPI -------------
2006-11-05 15:46:32 392 1f0 COMAPI -- START -- COMAPI: Download [ClientId
= WindowsUpdate]
2006-11-05 15:46:32 392 1f0 COMAPI ---------
2006-11-05 15:46:32 392 1f0 COMAPI - Forced: No; Download priority: 3
2006-11-05 15:46:32 392 1f0 COMAPI - Updates in request: 3
2006-11-05 15:46:32 392 1f0 COMAPI - ServiceID =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 15:46:32 392 1f0 COMAPI <<-- SUBMITTED -- COMAPI: Download
[ClientId = WindowsUpdate]
2006-11-05 15:46:32 964 3e4 DnldMgr *************
2006-11-05 15:46:32 964 3e4 DnldMgr ** START ** DnldMgr: Downloading
updates [CallerId = WindowsUpdate]
2006-11-05 15:46:32 964 3e4 DnldMgr *********
2006-11-05 15:46:32 964 3e4 DnldMgr * Priority = 3, ServiceId =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 15:46:32 964 3e4 DnldMgr * Updates to download = 3
2006-11-05 15:46:32 964 3e4 Agent * Title = Windows Genuine Advantage
Notification Upgrade (KB905474)
2006-11-05 15:46:32 964 3e4 Agent * UpdateId =
{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
2006-11-05 15:46:32 964 3e4 Agent * Bundles 1 updates:
2006-11-05 15:46:32 964 3e4 Agent *
{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
2006-11-05 15:46:32 964 3e4 Agent * Title = Windows Malicious Software
Removal Tool - October 2006 (KB890830)
2006-11-05 15:46:32 964 3e4 Agent * UpdateId =
{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
2006-11-05 15:46:32 964 3e4 Agent * Bundles 1 updates:
2006-11-05 15:46:32 964 3e4 Agent *
{B9EDAA69-B877-406C-B948-9008870F4902}.102
2006-11-05 15:46:32 964 3e4 Agent * Title = Windows Internet Explorer
7.0 for Windows XP
2006-11-05 15:46:32 964 3e4 Agent * UpdateId =
{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
2006-11-05 15:46:32 964 3e4 Agent * Bundles 1 updates:
2006-11-05 15:46:32 964 3e4 Agent *
{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
2006-11-05 15:46:32 3956 758 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 15:46:32 3956 758 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 15:46:32 964 3e4 DnldMgr *********** DnldMgr: New download job
[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
2006-11-05 15:46:32 964 3e4 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:46:35 964 3e4 DnldMgr * BITS job initialized, JobId =
{77915F5F-3CCE-471E-92B7-A2EDE979C663}
2006-11-05 15:46:35 964 3e4 DnldMgr * Downloading from
http://www.download.windowsupdate.co...0948a40446.exe
to
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\445710fed136176214560cf8f0d5735c\e69cdc796b5c50 94328c5cef5374f70948a40446 (full file).
2006-11-05 15:46:35 964 3e4 Agent *********
2006-11-05 15:46:35 964 3e4 Agent ** END ** Agent: Downloading updates
[CallerId = WindowsUpdate]
2006-11-05 15:46:35 964 3e4 Agent *************
2006-11-05 15:46:40 964 484 DnldMgr BITS job
{77915F5F-3CCE-471E-92B7-A2EDE979C663} completed successfully
2006-11-05 15:46:41 964 484 DnldMgr Download job bytes total = 966960,
bytes transferred = 0
2006-11-05 15:46:41 964 484 DnldMgr *********** DnldMgr: New download job
[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
2006-11-05 15:46:41 964 484 DnldMgr * All files for update were already
downloaded and are valid.
2006-11-05 15:46:41 964 484 DnldMgr *********** DnldMgr: New download job
[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
2006-11-05 15:46:41 964 484 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:46:42 964 484 DnldMgr * BITS job initialized, JobId =
{DB79CCFA-0304-4BB6-B5FB-AB226E11BDB1}
2006-11-05 15:46:42 964 484 DnldMgr * Downloading from
http://www.download.windowsupdate.co...63e4adcf11.exe
to
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\04207f552de32d85230aac3b62d4814e\b30d100d880e2b aa44e8f3972dce1e63e4adcf11 (full file).
2006-11-05 15:46:46 964 f80 DnldMgr BITS job
{DB79CCFA-0304-4BB6-B5FB-AB226E11BDB1} completed successfully
2006-11-05 15:46:46 964 f80 DnldMgr Download job bytes total = 754088,
bytes transferred = 0
2006-11-05 15:46:46 964 f80 DnldMgr *********** DnldMgr: New download job
[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
2006-11-05 15:46:46 964 f80 DnldMgr * All files for update were already
downloaded and are valid.
2006-11-05 15:46:46 964 f80 DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 15:46:46 964 f80 Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 15:46:47 964 f80 DnldMgr * BITS job initialized, JobId =
{CE6CE14B-C2A2-43FD-BCC2-15955CD35CD9}
2006-11-05 15:46:47 964 f80 DnldMgr * Downloading from
http://www.download.windowsupdate.co...8e53e5d1d1.exe
to
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\f0c43c883b45dd5bc3e231479dfed214\4b37109cbe42dc 1eb44bfb848edd998e53e5d1d1 (full file).
2006-11-05 15:46:47 964 554 Report REPORT EVENT:
{8CB709D8-FA1E-4FB8-B6C3-57E9CBFA6B1B} 2006-11-05
15:46:42-0000 1 162 101 {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E} 103 0 WindowsUpdate Success Content Download Download succeeded.
2006-11-05 15:46:52 964 554 Report REPORT EVENT:
{83F52EE6-7630-43C3-AA81-7029FD4DC255} 2006-11-05
15:46:47-0000 1 162 101 {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3} 102 0 WindowsUpdate Success Content Download Download succeeded.
2006-11-05 15:47:54 964 f94 DnldMgr BITS job
{CE6CE14B-C2A2-43FD-BCC2-15955CD35CD9} completed successfully
2006-11-05 15:47:55 964 f94 DnldMgr Download job bytes total = 15521072,
bytes transferred = 0
2006-11-05 15:47:55 964 f94 DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 15:47:55 964 f94 DnldMgr * All files for update were already
downloaded and are valid.
2006-11-05 15:47:55 3956 758 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 15:47:55 3956 758 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 15:47:55 392 dcc COMAPI >>-- RESUMED -- COMAPI: Download
[ClientId = WindowsUpdate]
2006-11-05 15:47:55 392 dcc COMAPI - Download call complete (succeeded =
3, succeeded with errors = 0, failed = 0, unaccounted = 0)
2006-11-05 15:47:55 392 dcc COMAPI ---------
2006-11-05 15:47:55 392 dcc COMAPI -- END -- COMAPI: Download [ClientId
= WindowsUpdate]
2006-11-05 15:47:55 392 dcc COMAPI -------------
2006-11-05 15:47:56 392 1f0 COMAPI -------------
2006-11-05 15:47:56 392 1f0 COMAPI -- START -- COMAPI: Install [ClientId =
WindowsUpdate]
2006-11-05 15:47:56 392 1f0 COMAPI ---------
2006-11-05 15:47:56 392 1f0 COMAPI - Allow source prompts: Yes; Forced:
No; Force quiet: No
2006-11-05 15:47:56 392 1f0 COMAPI - Updates in request: 3
2006-11-05 15:47:56 392 1f0 COMAPI - ServiceID =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 15:47:56 392 1f0 COMAPI - Updates to install = 3
2006-11-05 15:47:56 392 1f0 COMAPI <<-- SUBMITTED -- COMAPI: Install
[ClientId = WindowsUpdate]
2006-11-05 15:47:56 964 3b4 Agent *************
2006-11-05 15:47:56 964 3b4 Agent ** START ** Agent: Installing updates
[CallerId = WindowsUpdate]
2006-11-05 15:47:56 964 3b4 Agent *********
2006-11-05 15:47:56 964 3b4 Agent * Updates to install = 3
2006-11-05 15:47:56 964 3b4 Agent * Title = <NULL>
2006-11-05 15:47:56 964 3b4 Agent * UpdateId =
{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
2006-11-05 15:47:56 964 3b4 Agent * Bundles 1 updates:
2006-11-05 15:47:56 964 3b4 Agent *
{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
2006-11-05 15:47:56 964 3b4 Agent * Title = <NULL>
2006-11-05 15:47:56 964 3b4 Agent * UpdateId =
{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
2006-11-05 15:47:56 964 3b4 Agent * Bundles 2 updates:
2006-11-05 15:47:56 964 3b4 Agent *
{F137C8D7-5145-4C53-A870-BC00854564CA}.102
2006-11-05 15:47:56 964 3b4 Agent *
{B9EDAA69-B877-406C-B948-9008870F4902}.102
2006-11-05 15:47:56 964 3b4 Agent * Title = <NULL>
2006-11-05 15:47:56 964 3b4 Agent * UpdateId =
{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
2006-11-05 15:47:56 964 3b4 Agent * Bundles 1 updates:
2006-11-05 15:47:56 964 3b4 Agent *
{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
2006-11-05 15:48:00 964 3e4 Report REPORT EVENT:
{EAEB9309-2796-4C10-A17A-F263A079FB5E} 2006-11-05
15:47:55-0000 1 162 101 {1A0ABF21-29D9-4396-B40E-EE082B435FB8} 100 0 WindowsUpdate Success Content Download Download succeeded.
2006-11-05 15:48:09 964 3b4 Service WARNING: GetUserTokenFromSessionId
failed with hr 0x800704dd
2006-11-05 15:48:09 964 3b4 Agent * WARNING: Exit code = 0x80240020
2006-11-05 15:48:09 964 3b4 Agent *********
2006-11-05 15:48:09 964 3b4 Agent ** END ** Agent: Installing updates
[CallerId = WindowsUpdate]
2006-11-05 15:48:09 964 3b4 Agent *************
2006-11-05 15:48:09 964 3b4 Agent WARNING: WU client failed installing
updates with error 0x80240020
2006-11-05 15:48:10 392 8c8 COMAPI >>-- RESUMED -- COMAPI: Install
[ClientId = WindowsUpdate]
2006-11-05 15:48:10 392 8c8 COMAPI - Install call failed
2006-11-05 15:48:10 392 8c8 COMAPI - Reboot required = No
2006-11-05 15:48:10 392 8c8 COMAPI - WARNING: Exit code = 0x80240FFF;
Call error code = 0x80240020
2006-11-05 15:48:10 392 8c8 COMAPI ---------
2006-11-05 15:48:10 392 8c8 COMAPI -- END -- COMAPI: Install [ClientId =
WindowsUpdate]
2006-11-05 15:48:10 392 8c8 COMAPI -------------
2006-11-05 15:48:10 392 1f0 COMAPI WARNING: Operation failed due to earlier
error, hr=80240020

******************************************
 
Reply With Quote
 
 
 
 
MowGreen [MVP]
Guest
Posts: n/a

 
      11-05-2006
Copy and paste what is below the dotted line into a new .txt file

-------------------------------------------------------------------------------------------
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
Winlogon\Notify\SensLogn]

"Asynchronous"=dword:00000001
"DLLName"="WlNotify.dll"
"Impersonate"=dword:00000001
"Lock"="SensLockEvent"
"Logoff"="SensLogoffEvent"
"Logon"="SensLogonEvent"
"MaxWait"=dword:00000258
"Safe"=dword:00000001
"Shutdown"="SensShutdownEvent"
"StartScreenSaver"="SensStartScreenSaverEvent"
"StartShell"="SensStartShellEvent"
"Startup"="SensStartupEvent"
"StopScreenSaver"="SensStopScreenSaverEvent"
"Unlock"="SensUnlockEvent"

-------------------------------------------------------------------------------------------
Ensure that there is a blank line after the last entry,
" Unlock"="SensUnlockEvent"
Now click File, Save As
In the "Save as type" field, set it to All Files
For File name, type in SensLogn.reg ( Encoding will be set to ANSI; do
NOT change it )
Now click the Desktop icon in the left frame
Click the Save button

Double click SensLogn.reg to merge the info in the reg file into the
registry.
Click Yes to the prompt, "Are you sure you want to add the information
in SensLogn.reg to the registry? "
You should get this message -

Information in SensLogn.reg has been successfully entered into the registry.

Restart the system and revisit Windows Update.


MowGreen [MVP 2003-2007]
===============
*-343-* FDNY
Never Forgotten
===============


Wardy wrote:

> Hi,
> I have just fixed a friends laptop clearing viruses, spyware and alike and
> all seems ok now except i can get it to process Windows Updates.
>
> The analysis and download work fine but the install fails quickly. Having
> looked at the website I've deduced the place to look is the windowsupdate log
> but can't interpret the messages :-(
>
> Here is the log chopper down, can anyone help please?
>
> ************************************************** **********
> 2006-11-05 15:39:13 392 1f0 Misc =========== Logging initialized (build:
> 5.8.0.2469, tz: -0000) ===========
> =========== Logging initialized (build: 5.8.0.2469, tz: -0000) ===========
> 2006-11-05 15:39:23 392 1f0 Misc = Process: C:\Program Files\Internet
> Explorer\iexplore.exe
> 2006-11-05 15:39:23 392 1f0 Misc = Module: C:\WINDOWS\system32\wuapi.dll
> 2006-11-05 15:39:23 392 1f0 COMAPI -------------
> 2006-11-05 15:39:23 392 1f0 COMAPI -- START -- COMAPI: Search [ClientId =
> WindowsUpdate]
> 2006-11-05 15:39:23 392 1f0 COMAPI ---------
> 2006-11-05 15:39:23 392 1f0 COMAPI - Online = Yes; Ignore download
> priority = No
> 2006-11-05 15:39:23 392 1f0 COMAPI - Criteria = "IsInstalled=0 and
> IsHidden=1"
> 2006-11-05 15:39:23 392 1f0 COMAPI - ServiceID =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 15:39:23 392 1f0 COMAPI <<-- SUBMITTED -- COMAPI: Search
> [ClientId = WindowsUpdate]
> 2006-11-05 15:39:23 964 3b4 Agent *************
> 2006-11-05 15:39:23 964 3b4 Agent ** START ** Agent: Finding updates
> [CallerId = WindowsUpdate]
> 2006-11-05 15:39:23 964 3b4 Agent *********
> 2006-11-05 15:39:34 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:39:34 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:39:47 964 3b4 PT +++++++++++ PT: Synchronizing server
> updates +++++++++++
> 2006-11-05 15:39:47 964 3b4 PT + ServiceId =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}, Server URL =
> https://update.microsoft.com/v6/Clie...ce/client.asmx
> 2006-11-05 15:39:47 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:07 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> ******Keeps repeating - chopped out to reduce text below 30000 - hope it
> wasn't important
> 2006-11-05 15:41:07 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:08 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:08 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:08 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:22 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:22 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:23 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:31 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:31 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:32 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:32 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:42 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:50 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:51 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:41:51 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:01 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:14 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:15 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:15 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:15 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:30 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:30 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:30 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:44 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:45 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:45 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:42:45 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:43:04 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:43:05 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:43:05 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:43:22 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:43:39 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:43:51 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:13 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:14 964 3b4 PT +++++++++++ PT: Synchronizing extended
> update info +++++++++++
> 2006-11-05 15:44:14 964 3b4 PT + ServiceId =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}, Server URL =
> https://update.microsoft.com/v6/Clie...ce/client.asmx
> 2006-11-05 15:44:14 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:15 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:16 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:16 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:17 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:30 3956 758 Misc =========== Logging initialized (build:
> 5.8.0.2469, tz: -0000) ===========
> 2006-11-05 15:44:30 3956 758 Misc = Process: C:\WINDOWS\system32\wuauclt.exe
> 2006-11-05 15:44:30 3956 758 Misc = Module: C:\WINDOWS\system32\wuaueng.dll
> 2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...fe91e62311.cab
> for file jqlwW9P2cpPLyw0aYuo3/pHmIxE= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...942fbb0ae2.cab
> for file 4QZYFOUAs4oaZdXIUZb7lC+7CuI= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...d4f475a4f7.cab
> for file l0CQzwgGSsSSDbAWPsp01PR1pPc= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...92599f1122.cab
> for file ZiGanWJxGkocWzg+e+DdklmfESI= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...1dffbc11ce.cab
> for file lUDWOji7NTnJHf9DOULxHf+8Ec4= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...18f11b446a.cab
> for file i6d/TAv7mEtms5I8A1MhGPEbRGo= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:30 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...b153838a75.cab
> for file ORu/EN0PQ4zeo+tsehF3sVODinU= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:31 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...f8bd1752b4.cab
> for file zdEv/RNy9hrDwj+ryP5W+L0XUrQ= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:31 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...c926c8de2a.cab
> for file RIRg3gANNQ4ZvZgmDN8GySbI3io= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:31 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...54399b6ebc.cab
> for file Z29+W8NRG5EMlDHVcXojVDmbbrw= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:32 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...5558130683.cab
> for file TPIzZn9zv+ZmD+Hei9+AVVgTBoM= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:32 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...b37f0050b0.cab
> for file 0LK60fvYlmr3VPe67VPEs38AULA= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:32 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...fc7c42959f.cab
> for file 1EhK4FnAxGv3WGU1EOsS/HxClZ8= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:32 3956 758 DtaStor WARNING: Attempted to add URL
> http://www.download.windowsupdate.co...4b6b7970fb.cab
> for file 14tDCBv0NKCt+wkPrhCFS2t5cPs= when file has not been previously added
> to the datastore
> 2006-11-05 15:44:39 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:39 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:39 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:44:43 964 3b4 Agent * Found 0 updates and 12 categories in
> search
> 2006-11-05 15:44:43 964 3b4 Report *********** Report: Initializing static
> reporting data ***********
> 2006-11-05 15:44:43 964 3b4 Report * OS Version = 5.1.2600.2.0.66304
> 2006-11-05 15:44:47 964 3b4 Report * Computer Brand = Hewlett-Packard
>
> 2006-11-05 15:44:47 964 3b4 Report * Computer Model = Pavilion ze8500
> (DJ347A)
> 2006-11-05 15:44:48 964 3b4 Report * Bios Revision = KF_KH.F.19
> 2006-11-05 15:44:48 964 3b4 Report * Bios Name = PhoenixBIOS 4.0 Release
> 6.0
> 2006-11-05 15:44:48 964 3b4 Report * Bios Release Date =
> 2003-12-05T00:00:00
> 2006-11-05 15:44:48 964 3b4 Report * Locale ID = 2057
> 2006-11-05 15:44:48 964 3b4 Agent *********
> 2006-11-05 15:44:48 964 3b4 Agent ** END ** Agent: Finding updates
> [CallerId = WindowsUpdate]
> 2006-11-05 15:44:48 964 3b4 Agent *************
> 2006-11-05 15:44:48 392 a30 COMAPI >>-- RESUMED -- COMAPI: Search
> [ClientId = WindowsUpdate]
> 2006-11-05 15:44:49 392 a30 COMAPI - Updates found = 0
> 2006-11-05 15:44:49 392 a30 COMAPI ---------
> 2006-11-05 15:44:49 392 a30 COMAPI -- END -- COMAPI: Search [ClientId =
> WindowsUpdate]
> 2006-11-05 15:44:49 392 a30 COMAPI -------------
> 2006-11-05 15:44:49 392 1f0 COMAPI -------------
> 2006-11-05 15:44:49 392 1f0 COMAPI -- START -- COMAPI: Search [ClientId =
> WindowsUpdate]
> 2006-11-05 15:44:49 392 1f0 COMAPI ---------
> 2006-11-05 15:44:49 392 1f0 COMAPI - Online = No; Ignore download
> priority = No
> 2006-11-05 15:44:49 392 1f0 COMAPI - Criteria = "IsInstalled = 0 and
> IsHidden = 0"
> 2006-11-05 15:44:49 392 1f0 COMAPI - ServiceID =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 15:44:49 392 1f0 COMAPI <<-- SUBMITTED -- COMAPI: Search
> [ClientId = WindowsUpdate]
> 2006-11-05 15:44:49 964 3b4 Agent *************
> 2006-11-05 15:44:49 964 3b4 Agent ** START ** Agent: Finding updates
> [CallerId = WindowsUpdate]
> 2006-11-05 15:44:49 964 3b4 Agent *********
> 2006-11-05 15:45:40 964 3b4 Driver DeviceStatus: 0x180000a,
> DeviceProblemNumber: 00000000
> 2006-11-05 15:45:40 964 3b4 Agent * Added update
> {C57C82A0-BFE5-49C1-B4D4-57DA31994859}.50 to search result
> 2006-11-05 15:45:40 964 3b4 Agent * Added update
> {5A0255AB-8EB9-49DF-8878-C137F278397E}.100 to search result
> 2006-11-05 15:45:40 964 3b4 Agent * Added update
> {6384F8AC-4973-4ED9-BC7F-4644507FB001}.100 to search result
> 2006-11-05 15:45:40 964 3b4 Agent * Added update
> {46A0B6F7-B283-45F8-9CCB-C8E3B4EC332C}.100 to search result
> 2006-11-05 15:45:40 964 3b4 Agent * Added update
> {9D493962-0BB7-4541-AD81-F96263B4B201}.102 to search result
> 2006-11-05 15:45:42 964 3b4 Driver DeviceStatus: 0x180200a,
> DeviceProblemNumber: 00000000
> 2006-11-05 15:45:42 964 3b4 Agent * Added update
> {4A420C00-383D-4E00-8B8F-9EF31366653B}.100 to search result
> 2006-11-05 15:45:42 964 3b4 Agent * Added update
> {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103 to search result
> 2006-11-05 15:45:42 964 3b4 Agent * Added update
> {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102 to search result
> 2006-11-05 15:45:42 964 3b4 Agent * Added update
> {8F771EC5-FCD3-4A6B-ADA6-7D6F0927F080}.102 to search result
> 2006-11-05 15:45:42 964 3b4 Agent * Added update
> {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100 to search result
> 2006-11-05 15:45:42 964 3b4 Agent * Found 10 updates and 12 categories in
> search
> 2006-11-05 15:45:42 964 3b4 Agent *********
> 2006-11-05 15:45:42 964 3b4 Agent ** END ** Agent: Finding updates
> [CallerId = WindowsUpdate]
> 2006-11-05 15:45:42 964 3b4 Agent *************
> 2006-11-05 15:45:42 392 a30 COMAPI >>-- RESUMED -- COMAPI: Search
> [ClientId = WindowsUpdate]
> 2006-11-05 15:45:42 964 3b4 Report REPORT EVENT:
> {7EC0E543-9543-40E3-A2D3-0C29FE2AF046} 2006-11-05
> 15:44:43-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 WindowsUpdate Success Software Synchronization Agent has finished detecting items.
> 2006-11-05 15:45:43 392 a30 COMAPI - Updates found = 10
> 2006-11-05 15:45:43 392 a30 COMAPI ---------
> 2006-11-05 15:45:43 392 a30 COMAPI -- END -- COMAPI: Search [ClientId =
> WindowsUpdate]
> 2006-11-05 15:45:43 392 a30 COMAPI -------------
> 2006-11-05 15:46:32 392 1f0 COMAPI -------------
> 2006-11-05 15:46:32 392 1f0 COMAPI -- START -- COMAPI: Download [ClientId
> = WindowsUpdate]
> 2006-11-05 15:46:32 392 1f0 COMAPI ---------
> 2006-11-05 15:46:32 392 1f0 COMAPI - Forced: No; Download priority: 3
> 2006-11-05 15:46:32 392 1f0 COMAPI - Updates in request: 3
> 2006-11-05 15:46:32 392 1f0 COMAPI - ServiceID =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 15:46:32 392 1f0 COMAPI <<-- SUBMITTED -- COMAPI: Download
> [ClientId = WindowsUpdate]
> 2006-11-05 15:46:32 964 3e4 DnldMgr *************
> 2006-11-05 15:46:32 964 3e4 DnldMgr ** START ** DnldMgr: Downloading
> updates [CallerId = WindowsUpdate]
> 2006-11-05 15:46:32 964 3e4 DnldMgr *********
> 2006-11-05 15:46:32 964 3e4 DnldMgr * Priority = 3, ServiceId =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 15:46:32 964 3e4 DnldMgr * Updates to download = 3
> 2006-11-05 15:46:32 964 3e4 Agent * Title = Windows Genuine Advantage
> Notification Upgrade (KB905474)
> 2006-11-05 15:46:32 964 3e4 Agent * UpdateId =
> {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
> 2006-11-05 15:46:32 964 3e4 Agent * Bundles 1 updates:
> 2006-11-05 15:46:32 964 3e4 Agent *
> {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
> 2006-11-05 15:46:32 964 3e4 Agent * Title = Windows Malicious Software
> Removal Tool - October 2006 (KB890830)
> 2006-11-05 15:46:32 964 3e4 Agent * UpdateId =
> {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
> 2006-11-05 15:46:32 964 3e4 Agent * Bundles 1 updates:
> 2006-11-05 15:46:32 964 3e4 Agent *
> {B9EDAA69-B877-406C-B948-9008870F4902}.102
> 2006-11-05 15:46:32 964 3e4 Agent * Title = Windows Internet Explorer
> 7.0 for Windows XP
> 2006-11-05 15:46:32 964 3e4 Agent * UpdateId =
> {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
> 2006-11-05 15:46:32 964 3e4 Agent * Bundles 1 updates:
> 2006-11-05 15:46:32 964 3e4 Agent *
> {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
> 2006-11-05 15:46:32 3956 758 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 15:46:32 3956 758 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 15:46:32 964 3e4 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
> 2006-11-05 15:46:32 964 3e4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:46:35 964 3e4 DnldMgr * BITS job initialized, JobId =
> {77915F5F-3CCE-471E-92B7-A2EDE979C663}
> 2006-11-05 15:46:35 964 3e4 DnldMgr * Downloading from
> http://www.download.windowsupdate.co...0948a40446.exe
> to
> C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\445710fed136176214560cf8f0d5735c\e69cdc796b5c50 94328c5cef5374f70948a40446 (full file).
> 2006-11-05 15:46:35 964 3e4 Agent *********
> 2006-11-05 15:46:35 964 3e4 Agent ** END ** Agent: Downloading updates
> [CallerId = WindowsUpdate]
> 2006-11-05 15:46:35 964 3e4 Agent *************
> 2006-11-05 15:46:40 964 484 DnldMgr BITS job
> {77915F5F-3CCE-471E-92B7-A2EDE979C663} completed successfully
> 2006-11-05 15:46:41 964 484 DnldMgr Download job bytes total = 966960,
> bytes transferred = 0
> 2006-11-05 15:46:41 964 484 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
> 2006-11-05 15:46:41 964 484 DnldMgr * All files for update were already
> downloaded and are valid.
> 2006-11-05 15:46:41 964 484 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
> 2006-11-05 15:46:41 964 484 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:46:42 964 484 DnldMgr * BITS job initialized, JobId =
> {DB79CCFA-0304-4BB6-B5FB-AB226E11BDB1}
> 2006-11-05 15:46:42 964 484 DnldMgr * Downloading from
> http://www.download.windowsupdate.co...63e4adcf11.exe
> to
> C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\04207f552de32d85230aac3b62d4814e\b30d100d880e2b aa44e8f3972dce1e63e4adcf11 (full file).
> 2006-11-05 15:46:46 964 f80 DnldMgr BITS job
> {DB79CCFA-0304-4BB6-B5FB-AB226E11BDB1} completed successfully
> 2006-11-05 15:46:46 964 f80 DnldMgr Download job bytes total = 754088,
> bytes transferred = 0
> 2006-11-05 15:46:46 964 f80 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
> 2006-11-05 15:46:46 964 f80 DnldMgr * All files for update were already
> downloaded and are valid.
> 2006-11-05 15:46:46 964 f80 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 15:46:46 964 f80 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 15:46:47 964 f80 DnldMgr * BITS job initialized, JobId =
> {CE6CE14B-C2A2-43FD-BCC2-15955CD35CD9}
> 2006-11-05 15:46:47 964 f80 DnldMgr * Downloading from
> http://www.download.windowsupdate.co...8e53e5d1d1.exe
> to
> C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\f0c43c883b45dd5bc3e231479dfed214\4b37109cbe42dc 1eb44bfb848edd998e53e5d1d1 (full file).
> 2006-11-05 15:46:47 964 554 Report REPORT EVENT:
> {8CB709D8-FA1E-4FB8-B6C3-57E9CBFA6B1B} 2006-11-05
> 15:46:42-0000 1 162 101 {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E} 103 0 WindowsUpdate Success Content Download Download succeeded.
> 2006-11-05 15:46:52 964 554 Report REPORT EVENT:
> {83F52EE6-7630-43C3-AA81-7029FD4DC255} 2006-11-05
> 15:46:47-0000 1 162 101 {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3} 102 0 WindowsUpdate Success Content Download Download succeeded.
> 2006-11-05 15:47:54 964 f94 DnldMgr BITS job
> {CE6CE14B-C2A2-43FD-BCC2-15955CD35CD9} completed successfully
> 2006-11-05 15:47:55 964 f94 DnldMgr Download job bytes total = 15521072,
> bytes transferred = 0
> 2006-11-05 15:47:55 964 f94 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 15:47:55 964 f94 DnldMgr * All files for update were already
> downloaded and are valid.
> 2006-11-05 15:47:55 3956 758 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 15:47:55 3956 758 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 15:47:55 392 dcc COMAPI >>-- RESUMED -- COMAPI: Download
> [ClientId = WindowsUpdate]
> 2006-11-05 15:47:55 392 dcc COMAPI - Download call complete (succeeded =
> 3, succeeded with errors = 0, failed = 0, unaccounted = 0)
> 2006-11-05 15:47:55 392 dcc COMAPI ---------
> 2006-11-05 15:47:55 392 dcc COMAPI -- END -- COMAPI: Download [ClientId
> = WindowsUpdate]
> 2006-11-05 15:47:55 392 dcc COMAPI -------------
> 2006-11-05 15:47:56 392 1f0 COMAPI -------------
> 2006-11-05 15:47:56 392 1f0 COMAPI -- START -- COMAPI: Install [ClientId =
> WindowsUpdate]
> 2006-11-05 15:47:56 392 1f0 COMAPI ---------
> 2006-11-05 15:47:56 392 1f0 COMAPI - Allow source prompts: Yes; Forced:
> No; Force quiet: No
> 2006-11-05 15:47:56 392 1f0 COMAPI - Updates in request: 3
> 2006-11-05 15:47:56 392 1f0 COMAPI - ServiceID =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 15:47:56 392 1f0 COMAPI - Updates to install = 3
> 2006-11-05 15:47:56 392 1f0 COMAPI <<-- SUBMITTED -- COMAPI: Install
> [ClientId = WindowsUpdate]
> 2006-11-05 15:47:56 964 3b4 Agent *************
> 2006-11-05 15:47:56 964 3b4 Agent ** START ** Agent: Installing updates
> [CallerId = WindowsUpdate]
> 2006-11-05 15:47:56 964 3b4 Agent *********
> 2006-11-05 15:47:56 964 3b4 Agent * Updates to install = 3
> 2006-11-05 15:47:56 964 3b4 Agent * Title = <NULL>
> 2006-11-05 15:47:56 964 3b4 Agent * UpdateId =
> {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
> 2006-11-05 15:47:56 964 3b4 Agent * Bundles 1 updates:
> 2006-11-05 15:47:56 964 3b4 Agent *
> {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
> 2006-11-05 15:47:56 964 3b4 Agent * Title = <NULL>
> 2006-11-05 15:47:56 964 3b4 Agent * UpdateId =
> {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
> 2006-11-05 15:47:56 964 3b4 Agent * Bundles 2 updates:
> 2006-11-05 15:47:56 964 3b4 Agent *
> {F137C8D7-5145-4C53-A870-BC00854564CA}.102
> 2006-11-05 15:47:56 964 3b4 Agent *
> {B9EDAA69-B877-406C-B948-9008870F4902}.102
> 2006-11-05 15:47:56 964 3b4 Agent * Title = <NULL>
> 2006-11-05 15:47:56 964 3b4 Agent * UpdateId =
> {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
> 2006-11-05 15:47:56 964 3b4 Agent * Bundles 1 updates:
> 2006-11-05 15:47:56 964 3b4 Agent *
> {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
> 2006-11-05 15:48:00 964 3e4 Report REPORT EVENT:
> {EAEB9309-2796-4C10-A17A-F263A079FB5E} 2006-11-05
> 15:47:55-0000 1 162 101 {1A0ABF21-29D9-4396-B40E-EE082B435FB8} 100 0 WindowsUpdate Success Content Download Download succeeded.
> 2006-11-05 15:48:09 964 3b4 Service WARNING: GetUserTokenFromSessionId
> failed with hr 0x800704dd
> 2006-11-05 15:48:09 964 3b4 Agent * WARNING: Exit code = 0x80240020
> 2006-11-05 15:48:09 964 3b4 Agent *********
> 2006-11-05 15:48:09 964 3b4 Agent ** END ** Agent: Installing updates
> [CallerId = WindowsUpdate]
> 2006-11-05 15:48:09 964 3b4 Agent *************
> 2006-11-05 15:48:09 964 3b4 Agent WARNING: WU client failed installing
> updates with error 0x80240020
> 2006-11-05 15:48:10 392 8c8 COMAPI >>-- RESUMED -- COMAPI: Install
> [ClientId = WindowsUpdate]
> 2006-11-05 15:48:10 392 8c8 COMAPI - Install call failed
> 2006-11-05 15:48:10 392 8c8 COMAPI - Reboot required = No
> 2006-11-05 15:48:10 392 8c8 COMAPI - WARNING: Exit code = 0x80240FFF;
> Call error code = 0x80240020
> 2006-11-05 15:48:10 392 8c8 COMAPI ---------
> 2006-11-05 15:48:10 392 8c8 COMAPI -- END -- COMAPI: Install [ClientId =
> WindowsUpdate]
> 2006-11-05 15:48:10 392 8c8 COMAPI -------------
> 2006-11-05 15:48:10 392 1f0 COMAPI WARNING: Operation failed due to earlier
> error, hr=80240020
>
> ******************************************

 
Reply With Quote
 
Wardy
Guest
Posts: n/a

 
      11-05-2006
hi,

No luck i'm afraid. Thanks for the suggestion though. Here is the new log
and the contents of my c:\SensLogn file. I hope I haven't chopped too much out

2006-11-05 20:34:26 1000 830 AU # 3 updates detected
2006-11-05 20:34:27 1000 830 AU #########
2006-11-05 20:34:27 1000 830 AU ## END ## AU: Search for updates [CallId
= {2A88A155-C2DC-48E0-9B25-023290E1696A}]
2006-11-05 20:34:27 1000 830 AU #############
2006-11-05 20:34:27 1000 830 AU AU setting next detection timeout to
2006-11-06 18:17:10
2006-11-05 20:34:27 1000 830 AU #############
2006-11-05 20:34:27 1000 830 AU ## START ## AU: Download updates
2006-11-05 20:34:27 1000 830 AU #########
2006-11-05 20:34:27 1000 830 AU # Approved updates = 3
2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102, callId =
{4468E826-F9AC-4018-BCD8-0B4BED9F7EC5}
2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100, callId =
{D9F23724-497B-47EB-8233-275EBE198EB2}
2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103, callId =
{53077CC1-3F4D-4A73-8D25-C01F558924B4}
2006-11-05 20:34:27 1000 830 AU AU setting pending client directive to
'Download Progress'
2006-11-05 20:34:27 1000 830 AU # Pending download calls = 3
2006-11-05 20:34:27 1000 830 AU <<## SUBMITTED ## AU: Download updates
2006-11-05 20:34:37 1000 f0 Misc WARNING:
2006-11-05 20:36:01 3176 d64 COMAPI - Updates found = 0
2006-11-05 20:36:01 3176 d64 COMAPI ---------
2006-11-05 20:36:01 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
WindowsUpdate]
2006-11-05 20:36:01 3176 d64 COMAPI -------------
2006-11-05 20:36:01 3176 77c COMAPI -------------
2006-11-05 20:36:01 3176 77c COMAPI -- START -- COMAPI: Search [ClientId =
WindowsUpdate]
2006-11-05 20:36:01 3176 77c COMAPI ---------
2006-11-05 20:36:01 3176 77c COMAPI - Online = No; Ignore download
priority = No
2006-11-05 20:36:01 3176 77c COMAPI - Criteria = "IsInstalled = 0 and
IsHidden = 0"
2006-11-05 20:36:01 3176 77c COMAPI - ServiceID =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:36:01 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Search
[ClientId = WindowsUpdate]
2006-11-05 20:36:14 1000 f0 DnldMgr * Odf parameters...
2006-11-05 20:36:14 1000 f0 DnldMgr * Refresh interval: 1
2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate high: 10000
2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate normal: 10000
2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate low: 0
2006-11-05 20:36:14 3084 8b0 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:36:14 3084 8b0 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 20:36:14 1000 f0 DnldMgr *********** DnldMgr: New download job
[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
2006-11-05 20:36:20 1000 f0 DnldMgr * BITS job initialized, JobId =
{FD549133-6A69-4B4D-8D88-E9616D4C8E99}
2006-11-05 20:36:21 1000 f0 DnldMgr * Downloading from
http://au.download.windowsupdate.com...63e4adcf11.exe
to
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\04207f552de32d85230aac3b62d4814e\b30d100d880e2b aa44e8f3972dce1e63e4adcf11 (full file).
2006-11-05 20:36:23 1000 f0 Agent *********
2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
[CallerId = AutomaticUpdates]
2006-11-05 20:36:23 1000 f0 Agent *************
2006-11-05 20:36:23 1000 f0 DnldMgr *************
2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
updates [CallerId = AutomaticUpdates]
2006-11-05 20:36:23 1000 f0 DnldMgr *********
2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 1, ServiceId =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Internet Explorer
7.0 for Windows XP
2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
2006-11-05 20:36:23 1000 f0 Agent *
{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
2006-11-05 20:36:23 3084 8b0 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:36:23 3084 8b0 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 20:36:23 1000 f0 DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 20:36:23 1000 f0 DnldMgr * Update is not allowed to download
due to regulation.
2006-11-05 20:36:23 1000 f0 Agent *********
2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
[CallerId = AutomaticUpdates]
2006-11-05 20:36:23 1000 f0 Agent *************
2006-11-05 20:36:23 1000 f0 DnldMgr *************
2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
updates [CallerId = AutomaticUpdates]
2006-11-05 20:36:23 1000 f0 DnldMgr *********
2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 2, ServiceId =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Genuine Advantage
Notification Upgrade (KB905474)
2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
2006-11-05 20:36:23 1000 f0 Agent *
{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
2006-11-05 20:36:24 3084 8b0 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:36:24 3084 8b0 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 20:36:24 1000 f0 DnldMgr * Update is not allowed to download
due to regulation.
2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
2006-11-05 20:36:24 1000 f0 DnldMgr * BITS job initialized, JobId =
{AF632E84-E7F7-405C-81E6-EA06675AE51F}
2006-11-05 20:36:24 1000 f0 DnldMgr * Downloading from
http://au.download.windowsupdate.com...0948a40446.exe
to
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\445710fed136176214560cf8f0d5735c\e69cdc796b5c50 94328c5cef5374f70948a40446 (full file).
2006-11-05 20:36:24 1000 f0 Agent *********
2006-11-05 20:36:24 1000 f0 Agent ** END ** Agent: Downloading updates
[CallerId = AutomaticUpdates]
2006-11-05 20:36:24 1000 f0 Agent *************
2006-11-05 20:36:24 1000 f0 Agent *************
2006-11-05 20:36:24 1000 f0 Agent ** START ** Agent: Finding updates
[CallerId = WindowsUpdate]
2006-11-05 20:36:24 1000 f0 Agent *********
2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180000a,
DeviceProblemNumber: 00000000
2006-11-05 20:36:44 1000 f0 Agent * Added update
{C57C82A0-BFE5-49C1-B4D4-57DA31994859}.50 to search result
2006-11-05 20:36:44 1000 f0 Agent * Added update
{5A0255AB-8EB9-49DF-8878-C137F278397E}.100 to search result
2006-11-05 20:36:44 1000 f0 Agent * Added update
{6384F8AC-4973-4ED9-BC7F-4644507FB001}.100 to search result
2006-11-05 20:36:44 1000 f0 Agent * Added update
{46A0B6F7-B283-45F8-9CCB-C8E3B4EC332C}.100 to search result
2006-11-05 20:36:44 1000 f0 Agent * Added update
{9D493962-0BB7-4541-AD81-F96263B4B201}.102 to search result
2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180200a,
DeviceProblemNumber: 00000000
2006-11-05 20:36:44 1000 f0 Agent * Added update
{4A420C00-383D-4E00-8B8F-9EF31366653B}.100 to search result
2006-11-05 20:36:44 1000 f0 Agent * Added update
{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103 to search result
2006-11-05 20:36:44 1000 f0 Agent * Added update
{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102 to search result
2006-11-05 20:36:44 1000 f0 Agent * Added update
{8F771EC5-FCD3-4A6B-ADA6-7D6F0927F080}.102 to search result
2006-11-05 20:36:44 1000 f0 Agent * Added update
{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100 to search result
2006-11-05 20:36:44 1000 f0 Agent * Found 10 updates and 12 categories in
search
2006-11-05 20:36:44 1000 f0 Agent *********
2006-11-05 20:36:44 1000 f0 Agent ** END ** Agent: Finding updates
[CallerId = WindowsUpdate]
2006-11-05 20:36:44 1000 f0 Agent *************
2006-11-05 20:36:44 1000 f0 DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 20:36:44 1000 f0 DnldMgr * Update is not allowed to download
due to regulation.
2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
{0A1B8513-2C66-4983-B381-B7DD17568E25} 2006-11-05
20:34:18-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Software Synchronization Agent has finished detecting items.
2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
{F21D5811-41AB-4C27-8705-0A4D8870E5AF} 2006-11-05
20:36:00-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 WindowsUpdate Success Software Synchronization Agent has finished detecting items.
2006-11-05 20:36:46 3176 d64 COMAPI >>-- RESUMED -- COMAPI: Search
[ClientId = WindowsUpdate]
2006-11-05 20:36:46 3176 d64 COMAPI - Updates found = 10
2006-11-05 20:36:46 3176 d64 COMAPI ---------
2006-11-05 20:36:46 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
WindowsUpdate]
2006-11-05 20:36:46 3176 d64 COMAPI -------------
2006-11-05 20:37:25 3176 77c COMAPI -------------
2006-11-05 20:37:25 3176 77c COMAPI -- START -- COMAPI: Download [ClientId
= WindowsUpdate]
2006-11-05 20:37:25 3176 77c COMAPI ---------
2006-11-05 20:37:25 3176 77c COMAPI - Forced: No; Download priority: 3
2006-11-05 20:37:25 3176 77c COMAPI - Updates in request: 3
2006-11-05 20:37:25 3176 77c COMAPI - ServiceID =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:37:26 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Download
[ClientId = WindowsUpdate]
2006-11-05 20:37:26 1000 830 DnldMgr *************
2006-11-05 20:37:26 1000 830 DnldMgr ** START ** DnldMgr: Downloading
updates [CallerId = WindowsUpdate]
2006-11-05 20:37:26 1000 830 DnldMgr *********
2006-11-05 20:37:26 1000 830 DnldMgr * Priority = 3, ServiceId =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:37:26 1000 830 DnldMgr * Updates to download = 3
2006-11-05 20:37:26 1000 830 Agent * Title = Windows Genuine Advantage
Notification Upgrade (KB905474)
2006-11-05 20:37:26 1000 830 Agent * UpdateId =
{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
2006-11-05 20:37:26 1000 830 Agent *
{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
2006-11-05 20:37:26 1000 830 Agent * Title = Windows Malicious Software
Removal Tool - October 2006 (KB890830)
2006-11-05 20:37:26 1000 830 Agent * UpdateId =
{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
2006-11-05 20:37:26 1000 830 Agent *
{B9EDAA69-B877-406C-B948-9008870F4902}.102
2006-11-05 20:37:26 1000 830 Agent * Title = Windows Internet Explorer
7.0 for Windows XP
2006-11-05 20:37:26 1000 830 Agent * UpdateId =
{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
2006-11-05 20:37:26 1000 830 Agent *
{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
2006-11-05 20:37:26 3084 8b0 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:37:26 3084 8b0 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 20:37:26 1000 830 DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 20:37:26 1000 830 DnldMgr * Update is not allowed to download
due to regulation.
2006-11-05 20:37:26 1000 830 Agent *********
2006-11-05 20:37:26 1000 830 Agent ** END ** Agent: Downloading updates
[CallerId = WindowsUpdate]
2006-11-05 20:37:26 1000 830 Agent *************
2006-11-05 20:37:30 1000 bd0 DnldMgr BITS job
{AF632E84-E7F7-405C-81E6-EA06675AE51F} completed successfully
2006-11-05 20:37:30 1000 bd0 DnldMgr Download job bytes total = 966960,
bytes transferred = 0
2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 20:37:30 1000 bd0 DnldMgr * Update is not allowed to download
due to regulation.
2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
2006-11-05 20:37:30 1000 bd0 DnldMgr * All files for update were already
downloaded and are valid.
2006-11-05 20:37:30 3084 8b0 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:37:30 3084 8b0 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
2006-11-05 20:37:30 1000 bd0 DnldMgr * All files for update were already
downloaded and are valid.
2006-11-05 20:37:31 1000 830 AU >>## RESUMED ## AU: Download update
[UpdateId = {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}, succeeded]
2006-11-05 20:37:34 1000 59c DnldMgr BITS job
{FD549133-6A69-4B4D-8D88-E9616D4C8E99} completed successfully
2006-11-05 20:37:35 1000 59c DnldMgr Download job bytes total = 754088,
bytes transferred = 0
2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
2006-11-05 20:37:35 1000 59c DnldMgr * All files for update were already
downloaded and are valid.
2006-11-05 20:37:35 3084 8b0 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:37:35 3084 8b0 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 20:37:35 1000 59c DnldMgr * Update is not allowed to download
due to regulation.
2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
2006-11-05 20:37:35 1000 59c DnldMgr * All files for update were already
downloaded and are valid.
2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 20:37:35 1000 59c Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 20:37:35 1000 59c Misc WARNING: Failed to find token for SID
S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
2006-11-05 20:37:48 1000 59c DnldMgr * BITS job initialized, JobId =
{7424944B-420A-485F-8988-E7B74C06A0F7}
2006-11-05 20:37:48 1000 59c DnldMgr * Downloading from
http://www.download.windowsupdate.co...8e53e5d1d1.exe
to
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\f0c43c883b45dd5bc3e231479dfed214\4b37109cbe42dc 1eb44bfb848edd998e53e5d1d1 (full file).
2006-11-05 20:37:48 1000 830 AU >>## RESUMED ## AU: Download update
[UpdateId = {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}, succeeded]
2006-11-05 20:37:48 1000 830 AU AU checked download status and it changed:
Downloading is paused
2006-11-05 20:37:48 1000 f0 Report REPORT EVENT:
{80B7A8C5-1F77-4EB1-827C-D2A271A4906C} 2006-11-05
20:37:31-0000 1 162 101 {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E} 103 0 AutomaticUpdates Success Content Download Download succeeded.
2006-11-05 20:37:48 1000 830 AU AU checked download status and it changed:
Downloading is not paused
2006-11-05 20:37:48 1000 830 AU AU setting pending client directive to
'Download Progress'
2006-11-05 20:37:53 1000 830 Report REPORT EVENT:
{4A2773D7-DC90-4DB1-8F09-CEA95659E0B0} 2006-11-05
20:37:48-0000 1 162 101 {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3} 102 0 AutomaticUpdates Success Content Download Download succeeded.
2006-11-05 20:38:02 1000 a38 Service WARNING: GetUserTokenFromSessionId
failed with hr 0x800704dd
2006-11-05 20:38:02 1000 a38 AU WARNING: AU found no suitable session to
launch client in
2006-11-05 20:39:42 1000 d4 DnldMgr BITS job
{7424944B-420A-485F-8988-E7B74C06A0F7} completed successfully
2006-11-05 20:39:43 1000 d4 DnldMgr Download job bytes total = 15521072,
bytes transferred = 0
2006-11-05 20:39:43 1000 d4 DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 20:39:44 1000 d4 DnldMgr * All files for update were already
downloaded and are valid.
2006-11-05 20:39:44 3084 8b0 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:39:44 3084 8b0 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 20:39:44 1000 d4 DnldMgr *********** DnldMgr: New download job
[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
2006-11-05 20:39:44 1000 d4 DnldMgr * All files for update were already
downloaded and are valid.
2006-11-05 20:39:44 3084 8b0 DtaStor Update service properties: service
registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:39:44 3084 8b0 DtaStor WARNING: Update Service: Failed to
update backup store
2006-11-05 20:39:44 1000 f0 AU >>## RESUMED ## AU: Download update
[UpdateId = {1A0ABF21-29D9-4396-B40E-EE082B435FB8}, succeeded]
2006-11-05 20:39:44 1000 f0 AU #########
2006-11-05 20:39:44 1000 f0 AU ## END ## AU: Download updates
2006-11-05 20:39:44 1000 f0 AU #############
2006-11-05 20:39:44 1000 f0 AU AU setting pending client directive to
'Install Approval'
2006-11-05 20:39:44 3176 a54 COMAPI >>-- RESUMED -- COMAPI: Download
[ClientId = WindowsUpdate]
2006-11-05 20:39:44 3176 a54 COMAPI - Download call complete (succeeded =
3, succeeded with errors = 0, failed = 0, unaccounted = 0)
2006-11-05 20:39:44 3176 a54 COMAPI ---------
2006-11-05 20:39:44 3176 a54 COMAPI -- END -- COMAPI: Download [ClientId
= WindowsUpdate]
2006-11-05 20:39:44 3176 a54 COMAPI -------------
2006-11-05 20:39:45 3176 77c COMAPI -------------
2006-11-05 20:39:45 3176 77c COMAPI -- START -- COMAPI: Install [ClientId =
WindowsUpdate]
2006-11-05 20:39:45 3176 77c COMAPI ---------
2006-11-05 20:39:45 3176 77c COMAPI - Allow source prompts: Yes; Forced:
No; Force quiet: No
2006-11-05 20:39:45 3176 77c COMAPI - Updates in request: 3
2006-11-05 20:39:45 3176 77c COMAPI - ServiceID =
{9482F4B4-E343-43B6-B170-9A65BC822C77}
2006-11-05 20:39:45 3176 77c COMAPI - Updates to install = 3
2006-11-05 20:39:45 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Install
[ClientId = WindowsUpdate]
2006-11-05 20:39:45 1000 f0 Agent *************
2006-11-05 20:39:45 1000 f0 Agent ** START ** Agent: Installing updates
[CallerId = WindowsUpdate]
2006-11-05 20:39:45 1000 f0 Agent *********
2006-11-05 20:39:45 1000 f0 Agent * Updates to install = 3
2006-11-05 20:39:45 1000 f0 Agent * Title = <NULL>
2006-11-05 20:39:45 1000 f0 Agent * UpdateId =
{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
2006-11-05 20:39:45 1000 f0 Agent * Bundles 1 updates:
2006-11-05 20:39:45 1000 f0 Agent *
{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
2006-11-05 20:39:45 1000 f0 Agent * Title = <NULL>
2006-11-05 20:39:45 1000 f0 Agent * UpdateId =
{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
2006-11-05 20:39:45 1000 f0 Agent * Bundles 2 updates:
2006-11-05 20:39:45 1000 f0 Agent *
{F137C8D7-5145-4C53-A870-BC00854564CA}.102
2006-11-05 20:39:45 1000 f0 Agent *
{B9EDAA69-B877-406C-B948-9008870F4902}.102
2006-11-05 20:39:45 1000 f0 Agent * Title = <NULL>
2006-11-05 20:39:45 1000 f0 Agent * UpdateId =
{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
2006-11-05 20:39:45 1000 f0 Agent * Bundles 1 updates:
2006-11-05 20:39:45 1000 f0 Agent *
{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
2006-11-05 20:39:49 1000 404 Report REPORT EVENT:
{AEF3684A-0E4E-4CC8-A96E-AF62512E744B} 2006-11-05
20:39:44-0000 1 162 101 {1A0ABF21-29D9-4396-B40E-EE082B435FB8} 100 0 AutomaticUpdates Success Content Download Download succeeded.
2006-11-05 20:39:58 1000 a38 Service WARNING: GetUserTokenFromSessionId
failed with hr 0x800704dd
2006-11-05 20:39:58 1000 a38 AU WARNING: AU found no suitable session to
launch client in
2006-11-05 20:40:02 1000 f0 Service WARNING: GetUserTokenFromSessionId
failed with hr 0x800704dd
2006-11-05 20:40:02 1000 f0 Agent * WARNING: Exit code = 0x80240020
2006-11-05 20:40:02 1000 f0 Agent *********
2006-11-05 20:40:02 1000 f0 Agent ** END ** Agent: Installing updates
[CallerId = WindowsUpdate]
2006-11-05 20:40:02 1000 f0 Agent *************
2006-11-05 20:40:02 1000 f0 Agent WARNING: WU client failed installing
updates with error 0x80240020
2006-11-05 20:40:02 3176 e70 COMAPI >>-- RESUMED -- COMAPI: Install
[ClientId = WindowsUpdate]
2006-11-05 20:40:02 3176 e70 COMAPI - Install call failed
2006-11-05 20:40:02 3176 e70 COMAPI - Reboot required = No
2006-11-05 20:40:02 3176 e70 COMAPI - WARNING: Exit code = 0x80240FFF;
Call error code = 0x80240020
2006-11-05 20:40:02 3176 e70 COMAPI ---------
2006-11-05 20:40:02 3176 e70 COMAPI -- END -- COMAPI: Install [ClientId =
WindowsUpdate]
2006-11-05 20:40:02 3176 e70 COMAPI -------------
2006-11-05 20:40:03 3176 77c COMAPI WARNING: Operation failed due to earlier
error, hr=80240020
**********************************************
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
Winlogon\Notify\SensLogn]

"Asynchronous"=dword:00000001
"DLLName"="WlNotify.dll"
"Impersonate"=dword:00000001
"Lock"="SensLockEvent"
"Logoff"="SensLogoffEvent"
"Logon"="SensLogonEvent"
"MaxWait"=dword:00000258
"Safe"=dword:00000001
"Shutdown"="SensShutdownEvent"
"StartScreenSaver"="SensStartScreenSaverEvent"
"StartShell"="SensStartShellEvent"
"Startup"="SensStartupEvent"
"StopScreenSaver"="SensStopScreenSaverEvent"
"Unlock"="SensUnlockEvent"

**************************************************
**********************************************


"MowGreen [MVP]" wrote:

> Copy and paste what is below the dotted line into a new .txt file
>
> -------------------------------------------------------------------------------------------
> REGEDIT4
>
> [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
> Winlogon\Notify\SensLogn]
>
> "Asynchronous"=dword:00000001
> "DLLName"="WlNotify.dll"
> "Impersonate"=dword:00000001
> "Lock"="SensLockEvent"
> "Logoff"="SensLogoffEvent"
> "Logon"="SensLogonEvent"
> "MaxWait"=dword:00000258
> "Safe"=dword:00000001
> "Shutdown"="SensShutdownEvent"
> "StartScreenSaver"="SensStartScreenSaverEvent"
> "StartShell"="SensStartShellEvent"
> "Startup"="SensStartupEvent"
> "StopScreenSaver"="SensStopScreenSaverEvent"
> "Unlock"="SensUnlockEvent"
>
> -------------------------------------------------------------------------------------------
> Ensure that there is a blank line after the last entry,
> " Unlock"="SensUnlockEvent"
> Now click File, Save As
> In the "Save as type" field, set it to All Files
> For File name, type in SensLogn.reg ( Encoding will be set to ANSI; do
> NOT change it )
> Now click the Desktop icon in the left frame
> Click the Save button
>
> Double click SensLogn.reg to merge the info in the reg file into the
> registry.
> Click Yes to the prompt, "Are you sure you want to add the information
> in SensLogn.reg to the registry? "
> You should get this message -
>
> Information in SensLogn.reg has been successfully entered into the registry.
>
> Restart the system and revisit Windows Update.
>
>
> MowGreen [MVP 2003-2007]
> ===============
> *-343-* FDNY
> Never Forgotten
> ===============
>
>
> Wardy wrote:
>
> > Hi,
> > I have just fixed a friends laptop clearing viruses, spyware and alike and
> > all seems ok now except i can get it to process Windows Updates.
> >
> > The analysis and download work fine but the install fails quickly. Having
> > looked at the website I've deduced the place to look is the windowsupdate log
> > but can't interpret the messages :-(
> >
> > Here is the log chopper down, can anyone help please?
> >


 
Reply With Quote
 
Ottmar Freudenberger
Guest
Posts: n/a

 
      11-06-2006
"Wardy" <> schrieb:

> I have just fixed a friends laptop clearing viruses, spyware and alike and
> all seems ok now except i can get it to process Windows Updates.


First of all:
http://www.microsoft.com/technet/com...mt/sm0504.mspx
Read it carefully and come to the right decision.

> 2006-11-05 15:39:34 964 3b4 Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.


http://google.com/groups?threadm=e1p...TNGP09.phx.gbl

> 2006-11-05 15:48:09 964 3b4 Agent * WARNING: Exit code = 0x80240020


http://support.microsoft.com/kb/910341/en-us

Bye,
Freudi
 
Reply With Quote
 
MowGreen [MVP]
Guest
Posts: n/a

 
      11-06-2006
Did you read Ottmar's post ? -
http://support.microsoft.com/kb/910341

The correct names and values for (XP)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
Winlogon\Notify\SensLogn]
are on that page.

It appears that the User Account being used has been damaged due to
malware. The SessionID is where the issue lies.

> Service WARNING: GetUserTokenFromSessionId
> failed with hr 0x800704dd


Have you run sfc /scannow to ensure that all system files are intact ?

You could try creating another User Account with Administration
privileges to see if that will get the updates to install.
The first update to install would be WGA via Windows Update.

MowGreen [MVP 2003-2007]
===============
*-343-* FDNY
Never Forgotten
===============


Wardy wrote:

> hi,
>
> No luck i'm afraid. Thanks for the suggestion though. Here is the new log
> and the contents of my c:\SensLogn file. I hope I haven't chopped too much out
>
> 2006-11-05 20:34:26 1000 830 AU # 3 updates detected
> 2006-11-05 20:34:27 1000 830 AU #########
> 2006-11-05 20:34:27 1000 830 AU ## END ## AU: Search for updates [CallId
> = {2A88A155-C2DC-48E0-9B25-023290E1696A}]
> 2006-11-05 20:34:27 1000 830 AU #############
> 2006-11-05 20:34:27 1000 830 AU AU setting next detection timeout to
> 2006-11-06 18:17:10
> 2006-11-05 20:34:27 1000 830 AU #############
> 2006-11-05 20:34:27 1000 830 AU ## START ## AU: Download updates
> 2006-11-05 20:34:27 1000 830 AU #########
> 2006-11-05 20:34:27 1000 830 AU # Approved updates = 3
> 2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
> {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102, callId =
> {4468E826-F9AC-4018-BCD8-0B4BED9F7EC5}
> 2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
> {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100, callId =
> {D9F23724-497B-47EB-8233-275EBE198EB2}
> 2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
> {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103, callId =
> {53077CC1-3F4D-4A73-8D25-C01F558924B4}
> 2006-11-05 20:34:27 1000 830 AU AU setting pending client directive to
> 'Download Progress'
> 2006-11-05 20:34:27 1000 830 AU # Pending download calls = 3
> 2006-11-05 20:34:27 1000 830 AU <<## SUBMITTED ## AU: Download updates
> 2006-11-05 20:34:37 1000 f0 Misc WARNING:
> 2006-11-05 20:36:01 3176 d64 COMAPI - Updates found = 0
> 2006-11-05 20:36:01 3176 d64 COMAPI ---------
> 2006-11-05 20:36:01 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
> WindowsUpdate]
> 2006-11-05 20:36:01 3176 d64 COMAPI -------------
> 2006-11-05 20:36:01 3176 77c COMAPI -------------
> 2006-11-05 20:36:01 3176 77c COMAPI -- START -- COMAPI: Search [ClientId =
> WindowsUpdate]
> 2006-11-05 20:36:01 3176 77c COMAPI ---------
> 2006-11-05 20:36:01 3176 77c COMAPI - Online = No; Ignore download
> priority = No
> 2006-11-05 20:36:01 3176 77c COMAPI - Criteria = "IsInstalled = 0 and
> IsHidden = 0"
> 2006-11-05 20:36:01 3176 77c COMAPI - ServiceID =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:36:01 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Search
> [ClientId = WindowsUpdate]
> 2006-11-05 20:36:14 1000 f0 DnldMgr * Odf parameters...
> 2006-11-05 20:36:14 1000 f0 DnldMgr * Refresh interval: 1
> 2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate high: 10000
> 2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate normal: 10000
> 2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate low: 0
> 2006-11-05 20:36:14 3084 8b0 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:36:14 3084 8b0 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 20:36:14 1000 f0 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
> 2006-11-05 20:36:20 1000 f0 DnldMgr * BITS job initialized, JobId =
> {FD549133-6A69-4B4D-8D88-E9616D4C8E99}
> 2006-11-05 20:36:21 1000 f0 DnldMgr * Downloading from
> http://au.download.windowsupdate.com...63e4adcf11.exe
> to
> C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\04207f552de32d85230aac3b62d4814e\b30d100d880e2b aa44e8f3972dce1e63e4adcf11 (full file).
> 2006-11-05 20:36:23 1000 f0 Agent *********
> 2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
> [CallerId = AutomaticUpdates]
> 2006-11-05 20:36:23 1000 f0 Agent *************
> 2006-11-05 20:36:23 1000 f0 DnldMgr *************
> 2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
> updates [CallerId = AutomaticUpdates]
> 2006-11-05 20:36:23 1000 f0 DnldMgr *********
> 2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 1, ServiceId =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
> 2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Internet Explorer
> 7.0 for Windows XP
> 2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
> {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
> 2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
> 2006-11-05 20:36:23 1000 f0 Agent *
> {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
> 2006-11-05 20:36:23 3084 8b0 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:36:23 3084 8b0 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 20:36:23 1000 f0 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 20:36:23 1000 f0 DnldMgr * Update is not allowed to download
> due to regulation.
> 2006-11-05 20:36:23 1000 f0 Agent *********
> 2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
> [CallerId = AutomaticUpdates]
> 2006-11-05 20:36:23 1000 f0 Agent *************
> 2006-11-05 20:36:23 1000 f0 DnldMgr *************
> 2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
> updates [CallerId = AutomaticUpdates]
> 2006-11-05 20:36:23 1000 f0 DnldMgr *********
> 2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 2, ServiceId =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
> 2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Genuine Advantage
> Notification Upgrade (KB905474)
> 2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
> {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
> 2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
> 2006-11-05 20:36:23 1000 f0 Agent *
> {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
> 2006-11-05 20:36:24 3084 8b0 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:36:24 3084 8b0 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 20:36:24 1000 f0 DnldMgr * Update is not allowed to download
> due to regulation.
> 2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
> 2006-11-05 20:36:24 1000 f0 DnldMgr * BITS job initialized, JobId =
> {AF632E84-E7F7-405C-81E6-EA06675AE51F}
> 2006-11-05 20:36:24 1000 f0 DnldMgr * Downloading from
> http://au.download.windowsupdate.com...0948a40446.exe
> to
> C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\445710fed136176214560cf8f0d5735c\e69cdc796b5c50 94328c5cef5374f70948a40446 (full file).
> 2006-11-05 20:36:24 1000 f0 Agent *********
> 2006-11-05 20:36:24 1000 f0 Agent ** END ** Agent: Downloading updates
> [CallerId = AutomaticUpdates]
> 2006-11-05 20:36:24 1000 f0 Agent *************
> 2006-11-05 20:36:24 1000 f0 Agent *************
> 2006-11-05 20:36:24 1000 f0 Agent ** START ** Agent: Finding updates
> [CallerId = WindowsUpdate]
> 2006-11-05 20:36:24 1000 f0 Agent *********
> 2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180000a,
> DeviceProblemNumber: 00000000
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {C57C82A0-BFE5-49C1-B4D4-57DA31994859}.50 to search result
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {5A0255AB-8EB9-49DF-8878-C137F278397E}.100 to search result
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {6384F8AC-4973-4ED9-BC7F-4644507FB001}.100 to search result
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {46A0B6F7-B283-45F8-9CCB-C8E3B4EC332C}.100 to search result
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {9D493962-0BB7-4541-AD81-F96263B4B201}.102 to search result
> 2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180200a,
> DeviceProblemNumber: 00000000
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {4A420C00-383D-4E00-8B8F-9EF31366653B}.100 to search result
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103 to search result
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102 to search result
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {8F771EC5-FCD3-4A6B-ADA6-7D6F0927F080}.102 to search result
> 2006-11-05 20:36:44 1000 f0 Agent * Added update
> {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100 to search result
> 2006-11-05 20:36:44 1000 f0 Agent * Found 10 updates and 12 categories in
> search
> 2006-11-05 20:36:44 1000 f0 Agent *********
> 2006-11-05 20:36:44 1000 f0 Agent ** END ** Agent: Finding updates
> [CallerId = WindowsUpdate]
> 2006-11-05 20:36:44 1000 f0 Agent *************
> 2006-11-05 20:36:44 1000 f0 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 20:36:44 1000 f0 DnldMgr * Update is not allowed to download
> due to regulation.
> 2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
> {0A1B8513-2C66-4983-B381-B7DD17568E25} 2006-11-05
> 20:34:18-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Software Synchronization Agent has finished detecting items.
> 2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
> {F21D5811-41AB-4C27-8705-0A4D8870E5AF} 2006-11-05
> 20:36:00-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 WindowsUpdate Success Software Synchronization Agent has finished detecting items.
> 2006-11-05 20:36:46 3176 d64 COMAPI >>-- RESUMED -- COMAPI: Search
> [ClientId = WindowsUpdate]
> 2006-11-05 20:36:46 3176 d64 COMAPI - Updates found = 10
> 2006-11-05 20:36:46 3176 d64 COMAPI ---------
> 2006-11-05 20:36:46 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
> WindowsUpdate]
> 2006-11-05 20:36:46 3176 d64 COMAPI -------------
> 2006-11-05 20:37:25 3176 77c COMAPI -------------
> 2006-11-05 20:37:25 3176 77c COMAPI -- START -- COMAPI: Download [ClientId
> = WindowsUpdate]
> 2006-11-05 20:37:25 3176 77c COMAPI ---------
> 2006-11-05 20:37:25 3176 77c COMAPI - Forced: No; Download priority: 3
> 2006-11-05 20:37:25 3176 77c COMAPI - Updates in request: 3
> 2006-11-05 20:37:25 3176 77c COMAPI - ServiceID =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:37:26 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Download
> [ClientId = WindowsUpdate]
> 2006-11-05 20:37:26 1000 830 DnldMgr *************
> 2006-11-05 20:37:26 1000 830 DnldMgr ** START ** DnldMgr: Downloading
> updates [CallerId = WindowsUpdate]
> 2006-11-05 20:37:26 1000 830 DnldMgr *********
> 2006-11-05 20:37:26 1000 830 DnldMgr * Priority = 3, ServiceId =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:37:26 1000 830 DnldMgr * Updates to download = 3
> 2006-11-05 20:37:26 1000 830 Agent * Title = Windows Genuine Advantage
> Notification Upgrade (KB905474)
> 2006-11-05 20:37:26 1000 830 Agent * UpdateId =
> {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
> 2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
> 2006-11-05 20:37:26 1000 830 Agent *
> {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
> 2006-11-05 20:37:26 1000 830 Agent * Title = Windows Malicious Software
> Removal Tool - October 2006 (KB890830)
> 2006-11-05 20:37:26 1000 830 Agent * UpdateId =
> {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
> 2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
> 2006-11-05 20:37:26 1000 830 Agent *
> {B9EDAA69-B877-406C-B948-9008870F4902}.102
> 2006-11-05 20:37:26 1000 830 Agent * Title = Windows Internet Explorer
> 7.0 for Windows XP
> 2006-11-05 20:37:26 1000 830 Agent * UpdateId =
> {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
> 2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
> 2006-11-05 20:37:26 1000 830 Agent *
> {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
> 2006-11-05 20:37:26 3084 8b0 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:37:26 3084 8b0 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 20:37:26 1000 830 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 20:37:26 1000 830 DnldMgr * Update is not allowed to download
> due to regulation.
> 2006-11-05 20:37:26 1000 830 Agent *********
> 2006-11-05 20:37:26 1000 830 Agent ** END ** Agent: Downloading updates
> [CallerId = WindowsUpdate]
> 2006-11-05 20:37:26 1000 830 Agent *************
> 2006-11-05 20:37:30 1000 bd0 DnldMgr BITS job
> {AF632E84-E7F7-405C-81E6-EA06675AE51F} completed successfully
> 2006-11-05 20:37:30 1000 bd0 DnldMgr Download job bytes total = 966960,
> bytes transferred = 0
> 2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 20:37:30 1000 bd0 DnldMgr * Update is not allowed to download
> due to regulation.
> 2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
> 2006-11-05 20:37:30 1000 bd0 DnldMgr * All files for update were already
> downloaded and are valid.
> 2006-11-05 20:37:30 3084 8b0 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:37:30 3084 8b0 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
> 2006-11-05 20:37:30 1000 bd0 DnldMgr * All files for update were already
> downloaded and are valid.
> 2006-11-05 20:37:31 1000 830 AU >>## RESUMED ## AU: Download update
> [UpdateId = {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}, succeeded]
> 2006-11-05 20:37:34 1000 59c DnldMgr BITS job
> {FD549133-6A69-4B4D-8D88-E9616D4C8E99} completed successfully
> 2006-11-05 20:37:35 1000 59c DnldMgr Download job bytes total = 754088,
> bytes transferred = 0
> 2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
> [UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
> 2006-11-05 20:37:35 1000 59c DnldMgr * All files for update were already
> downloaded and are valid.
> 2006-11-05 20:37:35 3084 8b0 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:37:35 3084 8b0 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 20:37:35 1000 59c DnldMgr * Update is not allowed to download
> due to regulation.
> 2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
> [UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
> 2006-11-05 20:37:35 1000 59c DnldMgr * All files for update were already
> downloaded and are valid.
> 2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 20:37:35 1000 59c Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 20:37:35 1000 59c Misc WARNING: Failed to find token for SID
> S-1-5-21-1547161642-152049171-1060284298-1012 with hr = 80240018.
> 2006-11-05 20:37:48 1000 59c DnldMgr * BITS job initialized, JobId =
> {7424944B-420A-485F-8988-E7B74C06A0F7}
> 2006-11-05 20:37:48 1000 59c DnldMgr * Downloading from
> http://www.download.windowsupdate.co...8e53e5d1d1.exe
> to
> C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\f0c43c883b45dd5bc3e231479dfed214\4b37109cbe42dc 1eb44bfb848edd998e53e5d1d1 (full file).
> 2006-11-05 20:37:48 1000 830 AU >>## RESUMED ## AU: Download update
> [UpdateId = {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}, succeeded]
> 2006-11-05 20:37:48 1000 830 AU AU checked download status and it changed:
> Downloading is paused
> 2006-11-05 20:37:48 1000 f0 Report REPORT EVENT:
> {80B7A8C5-1F77-4EB1-827C-D2A271A4906C} 2006-11-05
> 20:37:31-0000 1 162 101 {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E} 103 0 AutomaticUpdates Success Content Download Download succeeded.
> 2006-11-05 20:37:48 1000 830 AU AU checked download status and it changed:
> Downloading is not paused
> 2006-11-05 20:37:48 1000 830 AU AU setting pending client directive to
> 'Download Progress'
> 2006-11-05 20:37:53 1000 830 Report REPORT EVENT:
> {4A2773D7-DC90-4DB1-8F09-CEA95659E0B0} 2006-11-05
> 20:37:48-0000 1 162 101 {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3} 102 0 AutomaticUpdates Success Content Download Download succeeded.
> 2006-11-05 20:38:02 1000 a38 Service WARNING: GetUserTokenFromSessionId
> failed with hr 0x800704dd
> 2006-11-05 20:38:02 1000 a38 AU WARNING: AU found no suitable session to
> launch client in
> 2006-11-05 20:39:42 1000 d4 DnldMgr BITS job
> {7424944B-420A-485F-8988-E7B74C06A0F7} completed successfully
> 2006-11-05 20:39:43 1000 d4 DnldMgr Download job bytes total = 15521072,
> bytes transferred = 0
> 2006-11-05 20:39:43 1000 d4 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 20:39:44 1000 d4 DnldMgr * All files for update were already
> downloaded and are valid.
> 2006-11-05 20:39:44 3084 8b0 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:39:44 3084 8b0 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 20:39:44 1000 d4 DnldMgr *********** DnldMgr: New download job
> [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> 2006-11-05 20:39:44 1000 d4 DnldMgr * All files for update were already
> downloaded and are valid.
> 2006-11-05 20:39:44 3084 8b0 DtaStor Update service properties: service
> registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:39:44 3084 8b0 DtaStor WARNING: Update Service: Failed to
> update backup store
> 2006-11-05 20:39:44 1000 f0 AU >>## RESUMED ## AU: Download update
> [UpdateId = {1A0ABF21-29D9-4396-B40E-EE082B435FB8}, succeeded]
> 2006-11-05 20:39:44 1000 f0 AU #########
> 2006-11-05 20:39:44 1000 f0 AU ## END ## AU: Download updates
> 2006-11-05 20:39:44 1000 f0 AU #############
> 2006-11-05 20:39:44 1000 f0 AU AU setting pending client directive to
> 'Install Approval'
> 2006-11-05 20:39:44 3176 a54 COMAPI >>-- RESUMED -- COMAPI: Download
> [ClientId = WindowsUpdate]
> 2006-11-05 20:39:44 3176 a54 COMAPI - Download call complete (succeeded =
> 3, succeeded with errors = 0, failed = 0, unaccounted = 0)
> 2006-11-05 20:39:44 3176 a54 COMAPI ---------
> 2006-11-05 20:39:44 3176 a54 COMAPI -- END -- COMAPI: Download [ClientId
> = WindowsUpdate]
> 2006-11-05 20:39:44 3176 a54 COMAPI -------------
> 2006-11-05 20:39:45 3176 77c COMAPI -------------
> 2006-11-05 20:39:45 3176 77c COMAPI -- START -- COMAPI: Install [ClientId =
> WindowsUpdate]
> 2006-11-05 20:39:45 3176 77c COMAPI ---------
> 2006-11-05 20:39:45 3176 77c COMAPI - Allow source prompts: Yes; Forced:
> No; Force quiet: No
> 2006-11-05 20:39:45 3176 77c COMAPI - Updates in request: 3
> 2006-11-05 20:39:45 3176 77c COMAPI - ServiceID =
> {9482F4B4-E343-43B6-B170-9A65BC822C77}
> 2006-11-05 20:39:45 3176 77c COMAPI - Updates to install = 3
> 2006-11-05 20:39:45 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Install
> [ClientId = WindowsUpdate]
> 2006-11-05 20:39:45 1000 f0 Agent *************
> 2006-11-05 20:39:45 1000 f0 Agent ** START ** Agent: Installing updates
> [CallerId = WindowsUpdate]
> 2006-11-05 20:39:45 1000 f0 Agent *********
> 2006-11-05 20:39:45 1000 f0 Agent * Updates to install = 3
> 2006-11-05 20:39:45 1000 f0 Agent * Title = <NULL>
> 2006-11-05 20:39:45 1000 f0 Agent * UpdateId =
> {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
> 2006-11-05 20:39:45 1000 f0 Agent * Bundles 1 updates:
> 2006-11-05 20:39:45 1000 f0 Agent *
> {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
> 2006-11-05 20:39:45 1000 f0 Agent * Title = <NULL>
> 2006-11-05 20:39:45 1000 f0 Agent * UpdateId =
> {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
> 2006-11-05 20:39:45 1000 f0 Agent * Bundles 2 updates:
> 2006-11-05 20:39:45 1000 f0 Agent *
> {F137C8D7-5145-4C53-A870-BC00854564CA}.102
> 2006-11-05 20:39:45 1000 f0 Agent *
> {B9EDAA69-B877-406C-B948-9008870F4902}.102
> 2006-11-05 20:39:45 1000 f0 Agent * Title = <NULL>
> 2006-11-05 20:39:45 1000 f0 Agent * UpdateId =
> {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
> 2006-11-05 20:39:45 1000 f0 Agent * Bundles 1 updates:
> 2006-11-05 20:39:45 1000 f0 Agent *
> {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
> 2006-11-05 20:39:49 1000 404 Report REPORT EVENT:
> {AEF3684A-0E4E-4CC8-A96E-AF62512E744B} 2006-11-05
> 20:39:44-0000 1 162 101 {1A0ABF21-29D9-4396-B40E-EE082B435FB8} 100 0 AutomaticUpdates Success Content Download Download succeeded.
> 2006-11-05 20:39:58 1000 a38 Service WARNING: GetUserTokenFromSessionId
> failed with hr 0x800704dd
> 2006-11-05 20:39:58 1000 a38 AU WARNING: AU found no suitable session to
> launch client in
> 2006-11-05 20:40:02 1000 f0 Service WARNING: GetUserTokenFromSessionId
> failed with hr 0x800704dd
> 2006-11-05 20:40:02 1000 f0 Agent * WARNING: Exit code = 0x80240020
> 2006-11-05 20:40:02 1000 f0 Agent *********
> 2006-11-05 20:40:02 1000 f0 Agent ** END ** Agent: Installing updates
> [CallerId = WindowsUpdate]
> 2006-11-05 20:40:02 1000 f0 Agent *************
> 2006-11-05 20:40:02 1000 f0 Agent WARNING: WU client failed installing
> updates with error 0x80240020
> 2006-11-05 20:40:02 3176 e70 COMAPI >>-- RESUMED -- COMAPI: Install
> [ClientId = WindowsUpdate]
> 2006-11-05 20:40:02 3176 e70 COMAPI - Install call failed
> 2006-11-05 20:40:02 3176 e70 COMAPI - Reboot required = No
> 2006-11-05 20:40:02 3176 e70 COMAPI - WARNING: Exit code = 0x80240FFF;
> Call error code = 0x80240020
> 2006-11-05 20:40:02 3176 e70 COMAPI ---------
> 2006-11-05 20:40:02 3176 e70 COMAPI -- END -- COMAPI: Install [ClientId =
> WindowsUpdate]
> 2006-11-05 20:40:02 3176 e70 COMAPI -------------
> 2006-11-05 20:40:03 3176 77c COMAPI WARNING: Operation failed due to earlier
> error, hr=80240020
> **********************************************
> REGEDIT4
>
> [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
> Winlogon\Notify\SensLogn]
>
> "Asynchronous"=dword:00000001
> "DLLName"="WlNotify.dll"
> "Impersonate"=dword:00000001
> "Lock"="SensLockEvent"
> "Logoff"="SensLogoffEvent"
> "Logon"="SensLogonEvent"
> "MaxWait"=dword:00000258
> "Safe"=dword:00000001
> "Shutdown"="SensShutdownEvent"
> "StartScreenSaver"="SensStartScreenSaverEvent"
> "StartShell"="SensStartShellEvent"
> "Startup"="SensStartupEvent"
> "StopScreenSaver"="SensStopScreenSaverEvent"
> "Unlock"="SensUnlockEvent"
>
> **************************************************
> **********************************************
>
>
> "MowGreen [MVP]" wrote:
>
>
>>Copy and paste what is below the dotted line into a new .txt file
>>
>>-------------------------------------------------------------------------------------------
>>REGEDIT4
>>
>>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
>>Winlogon\Notify\SensLogn]
>>
>>"Asynchronous"=dword:00000001
>>"DLLName"="WlNotify.dll"
>>"Impersonate"=dword:00000001
>>"Lock"="SensLockEvent"
>>"Logoff"="SensLogoffEvent"
>>"Logon"="SensLogonEvent"
>>"MaxWait"=dword:00000258
>>"Safe"=dword:00000001
>>"Shutdown"="SensShutdownEvent"
>>"StartScreenSaver"="SensStartScreenSaverEvent"
>>"StartShell"="SensStartShellEvent"
>>"Startup"="SensStartupEvent"
>>"StopScreenSaver"="SensStopScreenSaverEvent"
>>"Unlock"="SensUnlockEvent"
>>
>>-------------------------------------------------------------------------------------------
>>Ensure that there is a blank line after the last entry,
>>" Unlock"="SensUnlockEvent"
>>Now click File, Save As
>>In the "Save as type" field, set it to All Files
>>For File name, type in SensLogn.reg ( Encoding will be set to ANSI; do
>>NOT change it )
>>Now click the Desktop icon in the left frame
>>Click the Save button
>>
>>Double click SensLogn.reg to merge the info in the reg file into the
>>registry.
>>Click Yes to the prompt, "Are you sure you want to add the information
>>in SensLogn.reg to the registry? "
>>You should get this message -
>>
>>Information in SensLogn.reg has been successfully entered into the registry.
>>
>>Restart the system and revisit Windows Update.
>>
>>
>>MowGreen [MVP 2003-2007]
>>===============
>> *-343-* FDNY
>>Never Forgotten
>>===============
>>
>>
>>Wardy wrote:
>>
>>
>>>Hi,
>>>I have just fixed a friends laptop clearing viruses, spyware and alike and
>>>all seems ok now except i can get it to process Windows Updates.
>>>
>>>The analysis and download work fine but the install fails quickly. Having
>>>looked at the website I've deduced the place to look is the windowsupdate log
>>>but can't interpret the messages :-(
>>>
>>>Here is the log chopper down, can anyone help please?
>>>

>
>

 
Reply With Quote
 
Wardy
Guest
Posts: n/a

 
      11-07-2006
Hi MowGreen

I did read Ottmar's post and all looked OK. I then created a new user and
tried again but no luck. I then ran the sfc /scannow job and it didn't
highlighgt any errors. It didn't say it was OK either (I'm not sure what I
should have seen). I then set the automatic updates and got the BSOD with a
0x8E error. Now it BSODs on each load. I'll restart in safe mode and see if i
can fix that.

Thanks for your efforts so far - i'm now thinking of reimaging it.

"MowGreen [MVP]" wrote:

> Did you read Ottmar's post ? -
> http://support.microsoft.com/kb/910341
>
> The correct names and values for (XP)
> [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
> Winlogon\Notify\SensLogn]
> are on that page.
>
> It appears that the User Account being used has been damaged due to
> malware. The SessionID is where the issue lies.
>
> > Service WARNING: GetUserTokenFromSessionId
> > failed with hr 0x800704dd

>
> Have you run sfc /scannow to ensure that all system files are intact ?
>
> You could try creating another User Account with Administration
> privileges to see if that will get the updates to install.
> The first update to install would be WGA via Windows Update.
>
> MowGreen [MVP 2003-2007]
> ===============
> *-343-* FDNY
> Never Forgotten
> ===============
>
>
> Wardy wrote:
>
> > hi,
> >
> > No luck i'm afraid. Thanks for the suggestion though. Here is the new log
> > and the contents of my c:\SensLogn file. I hope I haven't chopped too much out
> >
> > 2006-11-05 20:34:26 1000 830 AU # 3 updates detected
> > 2006-11-05 20:34:27 1000 830 AU #########
> > 2006-11-05 20:34:27 1000 830 AU ## END ## AU: Search for updates [CallId
> > = {2A88A155-C2DC-48E0-9B25-023290E1696A}]
> > 2006-11-05 20:34:27 1000 830 AU #############
> > 2006-11-05 20:34:27 1000 830 AU AU setting next detection timeout to
> > 2006-11-06 18:17:10
> > 2006-11-05 20:34:27 1000 830 AU #############
> > 2006-11-05 20:34:27 1000 830 AU ## START ## AU: Download updates
> > 2006-11-05 20:34:27 1000 830 AU #########
> > 2006-11-05 20:34:27 1000 830 AU # Approved updates = 3
> > 2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
> > {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102, callId =
> > {4468E826-F9AC-4018-BCD8-0B4BED9F7EC5}
> > 2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
> > {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100, callId =
> > {D9F23724-497B-47EB-8233-275EBE198EB2}
> > 2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
> > {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103, callId =
> > {53077CC1-3F4D-4A73-8D25-C01F558924B4}
> > 2006-11-05 20:34:27 1000 830 AU AU setting pending client directive to
> > 'Download Progress'
> > 2006-11-05 20:34:27 1000 830 AU # Pending download calls = 3
> > 2006-11-05 20:34:27 1000 830 AU <<## SUBMITTED ## AU: Download updates
> > 2006-11-05 20:34:37 1000 f0 Misc WARNING:
> > 2006-11-05 20:36:01 3176 d64 COMAPI - Updates found = 0
> > 2006-11-05 20:36:01 3176 d64 COMAPI ---------
> > 2006-11-05 20:36:01 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
> > WindowsUpdate]
> > 2006-11-05 20:36:01 3176 d64 COMAPI -------------
> > 2006-11-05 20:36:01 3176 77c COMAPI -------------
> > 2006-11-05 20:36:01 3176 77c COMAPI -- START -- COMAPI: Search [ClientId =
> > WindowsUpdate]
> > 2006-11-05 20:36:01 3176 77c COMAPI ---------
> > 2006-11-05 20:36:01 3176 77c COMAPI - Online = No; Ignore download
> > priority = No
> > 2006-11-05 20:36:01 3176 77c COMAPI - Criteria = "IsInstalled = 0 and
> > IsHidden = 0"
> > 2006-11-05 20:36:01 3176 77c COMAPI - ServiceID =
> > {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:36:01 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Search
> > [ClientId = WindowsUpdate]
> > 2006-11-05 20:36:14 1000 f0 DnldMgr * Odf parameters...
> > 2006-11-05 20:36:14 1000 f0 DnldMgr * Refresh interval: 1
> > 2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate high: 10000
> > 2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate normal: 10000
> > 2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate low: 0
> > 2006-11-05 20:36:14 3084 8b0 DtaStor Update service properties: service
> > registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:36:14 3084 8b0 DtaStor WARNING: Update Service: Failed to
> > update backup store
> > 2006-11-05 20:36:14 1000 f0 DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
> > 2006-11-05 20:36:20 1000 f0 DnldMgr * BITS job initialized, JobId =
> > {FD549133-6A69-4B4D-8D88-E9616D4C8E99}
> > 2006-11-05 20:36:21 1000 f0 DnldMgr * Downloading from
> > http://au.download.windowsupdate.com...63e4adcf11.exe
> > to
> > C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\04207f552de32d85230aac3b62d4814e\b30d100d880e2b aa44e8f3972dce1e63e4adcf11 (full file).
> > 2006-11-05 20:36:23 1000 f0 Agent *********
> > 2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
> > [CallerId = AutomaticUpdates]
> > 2006-11-05 20:36:23 1000 f0 Agent *************
> > 2006-11-05 20:36:23 1000 f0 DnldMgr *************
> > 2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
> > updates [CallerId = AutomaticUpdates]
> > 2006-11-05 20:36:23 1000 f0 DnldMgr *********
> > 2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 1, ServiceId =
> > {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
> > 2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Internet Explorer
> > 7.0 for Windows XP
> > 2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
> > {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
> > 2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
> > 2006-11-05 20:36:23 1000 f0 Agent *
> > {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
> > 2006-11-05 20:36:23 3084 8b0 DtaStor Update service properties: service
> > registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:36:23 3084 8b0 DtaStor WARNING: Update Service: Failed to
> > update backup store
> > 2006-11-05 20:36:23 1000 f0 DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> > 2006-11-05 20:36:23 1000 f0 DnldMgr * Update is not allowed to download
> > due to regulation.
> > 2006-11-05 20:36:23 1000 f0 Agent *********
> > 2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
> > [CallerId = AutomaticUpdates]
> > 2006-11-05 20:36:23 1000 f0 Agent *************
> > 2006-11-05 20:36:23 1000 f0 DnldMgr *************
> > 2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
> > updates [CallerId = AutomaticUpdates]
> > 2006-11-05 20:36:23 1000 f0 DnldMgr *********
> > 2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 2, ServiceId =
> > {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
> > 2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Genuine Advantage
> > Notification Upgrade (KB905474)
> > 2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
> > {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
> > 2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
> > 2006-11-05 20:36:23 1000 f0 Agent *
> > {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
> > 2006-11-05 20:36:24 3084 8b0 DtaStor Update service properties: service
> > registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:36:24 3084 8b0 DtaStor WARNING: Update Service: Failed to
> > update backup store
> > 2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> > 2006-11-05 20:36:24 1000 f0 DnldMgr * Update is not allowed to download
> > due to regulation.
> > 2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
> > 2006-11-05 20:36:24 1000 f0 DnldMgr * BITS job initialized, JobId =
> > {AF632E84-E7F7-405C-81E6-EA06675AE51F}
> > 2006-11-05 20:36:24 1000 f0 DnldMgr * Downloading from
> > http://au.download.windowsupdate.com...0948a40446.exe
> > to
> > C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\445710fed136176214560cf8f0d5735c\e69cdc796b5c50 94328c5cef5374f70948a40446 (full file).
> > 2006-11-05 20:36:24 1000 f0 Agent *********
> > 2006-11-05 20:36:24 1000 f0 Agent ** END ** Agent: Downloading updates
> > [CallerId = AutomaticUpdates]
> > 2006-11-05 20:36:24 1000 f0 Agent *************
> > 2006-11-05 20:36:24 1000 f0 Agent *************
> > 2006-11-05 20:36:24 1000 f0 Agent ** START ** Agent: Finding updates
> > [CallerId = WindowsUpdate]
> > 2006-11-05 20:36:24 1000 f0 Agent *********
> > 2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180000a,
> > DeviceProblemNumber: 00000000
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {C57C82A0-BFE5-49C1-B4D4-57DA31994859}.50 to search result
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {5A0255AB-8EB9-49DF-8878-C137F278397E}.100 to search result
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {6384F8AC-4973-4ED9-BC7F-4644507FB001}.100 to search result
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {46A0B6F7-B283-45F8-9CCB-C8E3B4EC332C}.100 to search result
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {9D493962-0BB7-4541-AD81-F96263B4B201}.102 to search result
> > 2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180200a,
> > DeviceProblemNumber: 00000000
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {4A420C00-383D-4E00-8B8F-9EF31366653B}.100 to search result
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103 to search result
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102 to search result
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {8F771EC5-FCD3-4A6B-ADA6-7D6F0927F080}.102 to search result
> > 2006-11-05 20:36:44 1000 f0 Agent * Added update
> > {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100 to search result
> > 2006-11-05 20:36:44 1000 f0 Agent * Found 10 updates and 12 categories in
> > search
> > 2006-11-05 20:36:44 1000 f0 Agent *********
> > 2006-11-05 20:36:44 1000 f0 Agent ** END ** Agent: Finding updates
> > [CallerId = WindowsUpdate]
> > 2006-11-05 20:36:44 1000 f0 Agent *************
> > 2006-11-05 20:36:44 1000 f0 DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> > 2006-11-05 20:36:44 1000 f0 DnldMgr * Update is not allowed to download
> > due to regulation.
> > 2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
> > {0A1B8513-2C66-4983-B381-B7DD17568E25} 2006-11-05
> > 20:34:18-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Software Synchronization Agent has finished detecting items.
> > 2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
> > {F21D5811-41AB-4C27-8705-0A4D8870E5AF} 2006-11-05
> > 20:36:00-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 WindowsUpdate Success Software Synchronization Agent has finished detecting items.
> > 2006-11-05 20:36:46 3176 d64 COMAPI >>-- RESUMED -- COMAPI: Search
> > [ClientId = WindowsUpdate]
> > 2006-11-05 20:36:46 3176 d64 COMAPI - Updates found = 10
> > 2006-11-05 20:36:46 3176 d64 COMAPI ---------
> > 2006-11-05 20:36:46 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
> > WindowsUpdate]
> > 2006-11-05 20:36:46 3176 d64 COMAPI -------------
> > 2006-11-05 20:37:25 3176 77c COMAPI -------------
> > 2006-11-05 20:37:25 3176 77c COMAPI -- START -- COMAPI: Download [ClientId
> > = WindowsUpdate]
> > 2006-11-05 20:37:25 3176 77c COMAPI ---------
> > 2006-11-05 20:37:25 3176 77c COMAPI - Forced: No; Download priority: 3
> > 2006-11-05 20:37:25 3176 77c COMAPI - Updates in request: 3
> > 2006-11-05 20:37:25 3176 77c COMAPI - ServiceID =
> > {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:37:26 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Download
> > [ClientId = WindowsUpdate]
> > 2006-11-05 20:37:26 1000 830 DnldMgr *************
> > 2006-11-05 20:37:26 1000 830 DnldMgr ** START ** DnldMgr: Downloading
> > updates [CallerId = WindowsUpdate]
> > 2006-11-05 20:37:26 1000 830 DnldMgr *********
> > 2006-11-05 20:37:26 1000 830 DnldMgr * Priority = 3, ServiceId =
> > {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:37:26 1000 830 DnldMgr * Updates to download = 3
> > 2006-11-05 20:37:26 1000 830 Agent * Title = Windows Genuine Advantage
> > Notification Upgrade (KB905474)
> > 2006-11-05 20:37:26 1000 830 Agent * UpdateId =
> > {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
> > 2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
> > 2006-11-05 20:37:26 1000 830 Agent *
> > {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
> > 2006-11-05 20:37:26 1000 830 Agent * Title = Windows Malicious Software
> > Removal Tool - October 2006 (KB890830)
> > 2006-11-05 20:37:26 1000 830 Agent * UpdateId =
> > {A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
> > 2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
> > 2006-11-05 20:37:26 1000 830 Agent *
> > {B9EDAA69-B877-406C-B948-9008870F4902}.102
> > 2006-11-05 20:37:26 1000 830 Agent * Title = Windows Internet Explorer
> > 7.0 for Windows XP
> > 2006-11-05 20:37:26 1000 830 Agent * UpdateId =
> > {1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
> > 2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
> > 2006-11-05 20:37:26 1000 830 Agent *
> > {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
> > 2006-11-05 20:37:26 3084 8b0 DtaStor Update service properties: service
> > registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:37:26 3084 8b0 DtaStor WARNING: Update Service: Failed to
> > update backup store
> > 2006-11-05 20:37:26 1000 830 DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> > 2006-11-05 20:37:26 1000 830 DnldMgr * Update is not allowed to download
> > due to regulation.
> > 2006-11-05 20:37:26 1000 830 Agent *********
> > 2006-11-05 20:37:26 1000 830 Agent ** END ** Agent: Downloading updates
> > [CallerId = WindowsUpdate]
> > 2006-11-05 20:37:26 1000 830 Agent *************
> > 2006-11-05 20:37:30 1000 bd0 DnldMgr BITS job
> > {AF632E84-E7F7-405C-81E6-EA06675AE51F} completed successfully
> > 2006-11-05 20:37:30 1000 bd0 DnldMgr Download job bytes total = 966960,
> > bytes transferred = 0
> > 2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> > 2006-11-05 20:37:30 1000 bd0 DnldMgr * Update is not allowed to download
> > due to regulation.
> > 2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
> > 2006-11-05 20:37:30 1000 bd0 DnldMgr * All files for update were already
> > downloaded and are valid.
> > 2006-11-05 20:37:30 3084 8b0 DtaStor Update service properties: service
> > registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:37:30 3084 8b0 DtaStor WARNING: Update Service: Failed to
> > update backup store
> > 2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
> > 2006-11-05 20:37:30 1000 bd0 DnldMgr * All files for update were already
> > downloaded and are valid.
> > 2006-11-05 20:37:31 1000 830 AU >>## RESUMED ## AU: Download update
> > [UpdateId = {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}, succeeded]
> > 2006-11-05 20:37:34 1000 59c DnldMgr BITS job
> > {FD549133-6A69-4B4D-8D88-E9616D4C8E99} completed successfully
> > 2006-11-05 20:37:35 1000 59c DnldMgr Download job bytes total = 754088,
> > bytes transferred = 0
> > 2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
> > 2006-11-05 20:37:35 1000 59c DnldMgr * All files for update were already
> > downloaded and are valid.
> > 2006-11-05 20:37:35 3084 8b0 DtaStor Update service properties: service
> > registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> > 2006-11-05 20:37:35 3084 8b0 DtaStor WARNING: Update Service: Failed to
> > update backup store
> > 2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> > 2006-11-05 20:37:35 1000 59c DnldMgr * Update is not allowed to download
> > due to regulation.
> > 2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
> > [UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
> > 2006-11-05 20:37:35 1000 59c DnldMgr * All files for update were already
> > downloaded and are valid.

 
Reply With Quote
 
MowGreen [MVP]
Guest
Posts: n/a

 
      11-07-2006
I would NOT put any Trust into that system. Since it's been compromised,
and I don't know what the specific malware was/is, highly recommend that
you preserve the data that the User wants to save, format, and then
reinstall. That's the *safest* way of ensuring the system is clean.

Unless you'd like to post to an anti-malware forum that I help out in so
that we can be as sure as *possible* that all malware is gone, it's time
to flatten and reinstall the OS, Wardy.
Let me know if you'd care to post to the forum, or not.

MowGreen [MVP 2003-2007]
===============
*-343-* FDNY
Never Forgotten
===============



Wardy wrote:

> Hi MowGreen
>
> I did read Ottmar's post and all looked OK. I then created a new user and
> tried again but no luck. I then ran the sfc /scannow job and it didn't
> highlighgt any errors. It didn't say it was OK either (I'm not sure what I
> should have seen). I then set the automatic updates and got the BSOD with a
> 0x8E error. Now it BSODs on each load. I'll restart in safe mode and see if i
> can fix that.
>
> Thanks for your efforts so far - i'm now thinking of reimaging it.
>
> "MowGreen [MVP]" wrote:
>
>
>>Did you read Ottmar's post ? -
>>http://support.microsoft.com/kb/910341
>>
>>The correct names and values for (XP)
>>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
>>Winlogon\Notify\SensLogn]
>>are on that page.
>>
>>It appears that the User Account being used has been damaged due to
>>malware. The SessionID is where the issue lies.
>>
>>
>>>Service WARNING: GetUserTokenFromSessionId
>>>failed with hr 0x800704dd

>>
>>Have you run sfc /scannow to ensure that all system files are intact ?
>>
>>You could try creating another User Account with Administration
>>privileges to see if that will get the updates to install.
>>The first update to install would be WGA via Windows Update.
>>
>>MowGreen [MVP 2003-2007]
>>===============
>> *-343-* FDNY
>>Never Forgotten
>>===============
>>
>>
>>Wardy wrote:
>>
>>
>>>hi,
>>>
>>>No luck i'm afraid. Thanks for the suggestion though. Here is the new log
>>>and the contents of my c:\SensLogn file. I hope I haven't chopped too much out
>>>
>>>2006-11-05 20:34:26 1000 830 AU # 3 updates detected
>>>2006-11-05 20:34:27 1000 830 AU #########
>>>2006-11-05 20:34:27 1000 830 AU ## END ## AU: Search for updates [CallId
>>>= {2A88A155-C2DC-48E0-9B25-023290E1696A}]
>>>2006-11-05 20:34:27 1000 830 AU #############
>>>2006-11-05 20:34:27 1000 830 AU AU setting next detection timeout to
>>>2006-11-06 18:17:10
>>>2006-11-05 20:34:27 1000 830 AU #############
>>>2006-11-05 20:34:27 1000 830 AU ## START ## AU: Download updates
>>>2006-11-05 20:34:27 1000 830 AU #########
>>>2006-11-05 20:34:27 1000 830 AU # Approved updates = 3
>>>2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
>>>{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102, callId =
>>>{4468E826-F9AC-4018-BCD8-0B4BED9F7EC5}
>>>2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
>>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100, callId =
>>>{D9F23724-497B-47EB-8233-275EBE198EB2}
>>>2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
>>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103, callId =
>>>{53077CC1-3F4D-4A73-8D25-C01F558924B4}
>>>2006-11-05 20:34:27 1000 830 AU AU setting pending client directive to
>>>'Download Progress'
>>>2006-11-05 20:34:27 1000 830 AU # Pending download calls = 3
>>>2006-11-05 20:34:27 1000 830 AU <<## SUBMITTED ## AU: Download updates
>>>2006-11-05 20:34:37 1000 f0 Misc WARNING:
>>>2006-11-05 20:36:01 3176 d64 COMAPI - Updates found = 0
>>>2006-11-05 20:36:01 3176 d64 COMAPI ---------
>>>2006-11-05 20:36:01 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
>>>WindowsUpdate]
>>>2006-11-05 20:36:01 3176 d64 COMAPI -------------
>>>2006-11-05 20:36:01 3176 77c COMAPI -------------
>>>2006-11-05 20:36:01 3176 77c COMAPI -- START -- COMAPI: Search [ClientId =
>>>WindowsUpdate]
>>>2006-11-05 20:36:01 3176 77c COMAPI ---------
>>>2006-11-05 20:36:01 3176 77c COMAPI - Online = No; Ignore download
>>>priority = No
>>>2006-11-05 20:36:01 3176 77c COMAPI - Criteria = "IsInstalled = 0 and
>>>IsHidden = 0"
>>>2006-11-05 20:36:01 3176 77c COMAPI - ServiceID =
>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:36:01 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Search
>>>[ClientId = WindowsUpdate]
>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Odf parameters...
>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Refresh interval: 1
>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate high: 10000
>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate normal: 10000
>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate low: 0
>>>2006-11-05 20:36:14 3084 8b0 DtaStor Update service properties: service
>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:36:14 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>update backup store
>>>2006-11-05 20:36:14 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
>>>2006-11-05 20:36:20 1000 f0 DnldMgr * BITS job initialized, JobId =
>>>{FD549133-6A69-4B4D-8D88-E9616D4C8E99}
>>>2006-11-05 20:36:21 1000 f0 DnldMgr * Downloading from
>>>http://au.download.windowsupdate.com...63e4adcf11.exe
>>>to
>>>C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\04207f552de32d85230aac3b62d4814e\b30d100d880e2b aa44e8f3972dce1e63e4adcf11 (full file).
>>>2006-11-05 20:36:23 1000 f0 Agent *********
>>>2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
>>>[CallerId = AutomaticUpdates]
>>>2006-11-05 20:36:23 1000 f0 Agent *************
>>>2006-11-05 20:36:23 1000 f0 DnldMgr *************
>>>2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
>>>updates [CallerId = AutomaticUpdates]
>>>2006-11-05 20:36:23 1000 f0 DnldMgr *********
>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 1, ServiceId =
>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
>>>2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Internet Explorer
>>>7.0 for Windows XP
>>>2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
>>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
>>>2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
>>>2006-11-05 20:36:23 1000 f0 Agent *
>>>{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
>>>2006-11-05 20:36:23 3084 8b0 DtaStor Update service properties: service
>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:36:23 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>update backup store
>>>2006-11-05 20:36:23 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Update is not allowed to download
>>>due to regulation.
>>>2006-11-05 20:36:23 1000 f0 Agent *********
>>>2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
>>>[CallerId = AutomaticUpdates]
>>>2006-11-05 20:36:23 1000 f0 Agent *************
>>>2006-11-05 20:36:23 1000 f0 DnldMgr *************
>>>2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
>>>updates [CallerId = AutomaticUpdates]
>>>2006-11-05 20:36:23 1000 f0 DnldMgr *********
>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 2, ServiceId =
>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
>>>2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Genuine Advantage
>>>Notification Upgrade (KB905474)
>>>2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
>>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
>>>2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
>>>2006-11-05 20:36:23 1000 f0 Agent *
>>>{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
>>>2006-11-05 20:36:24 3084 8b0 DtaStor Update service properties: service
>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:36:24 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>update backup store
>>>2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>2006-11-05 20:36:24 1000 f0 DnldMgr * Update is not allowed to download
>>>due to regulation.
>>>2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
>>>2006-11-05 20:36:24 1000 f0 DnldMgr * BITS job initialized, JobId =
>>>{AF632E84-E7F7-405C-81E6-EA06675AE51F}
>>>2006-11-05 20:36:24 1000 f0 DnldMgr * Downloading from
>>>http://au.download.windowsupdate.com...0948a40446.exe
>>>to
>>>C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\445710fed136176214560cf8f0d5735c\e69cdc796b5c50 94328c5cef5374f70948a40446 (full file).
>>>2006-11-05 20:36:24 1000 f0 Agent *********
>>>2006-11-05 20:36:24 1000 f0 Agent ** END ** Agent: Downloading updates
>>>[CallerId = AutomaticUpdates]
>>>2006-11-05 20:36:24 1000 f0 Agent *************
>>>2006-11-05 20:36:24 1000 f0 Agent *************
>>>2006-11-05 20:36:24 1000 f0 Agent ** START ** Agent: Finding updates
>>>[CallerId = WindowsUpdate]
>>>2006-11-05 20:36:24 1000 f0 Agent *********
>>>2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180000a,
>>>DeviceProblemNumber: 00000000
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{C57C82A0-BFE5-49C1-B4D4-57DA31994859}.50 to search result
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{5A0255AB-8EB9-49DF-8878-C137F278397E}.100 to search result
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{6384F8AC-4973-4ED9-BC7F-4644507FB001}.100 to search result
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{46A0B6F7-B283-45F8-9CCB-C8E3B4EC332C}.100 to search result
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{9D493962-0BB7-4541-AD81-F96263B4B201}.102 to search result
>>>2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180200a,
>>>DeviceProblemNumber: 00000000
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{4A420C00-383D-4E00-8B8F-9EF31366653B}.100 to search result
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103 to search result
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102 to search result
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{8F771EC5-FCD3-4A6B-ADA6-7D6F0927F080}.102 to search result
>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100 to search result
>>>2006-11-05 20:36:44 1000 f0 Agent * Found 10 updates and 12 categories in
>>>search
>>>2006-11-05 20:36:44 1000 f0 Agent *********
>>>2006-11-05 20:36:44 1000 f0 Agent ** END ** Agent: Finding updates
>>>[CallerId = WindowsUpdate]
>>>2006-11-05 20:36:44 1000 f0 Agent *************
>>>2006-11-05 20:36:44 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>2006-11-05 20:36:44 1000 f0 DnldMgr * Update is not allowed to download
>>>due to regulation.
>>>2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
>>>{0A1B8513-2C66-4983-B381-B7DD17568E25} 2006-11-05
>>>20:34:18-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Software Synchronization Agent has finished detecting items.
>>>2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
>>>{F21D5811-41AB-4C27-8705-0A4D8870E5AF} 2006-11-05
>>>20:36:00-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 WindowsUpdate Success Software Synchronization Agent has finished detecting items.
>>>2006-11-05 20:36:46 3176 d64 COMAPI >>-- RESUMED -- COMAPI: Search
>>>[ClientId = WindowsUpdate]
>>>2006-11-05 20:36:46 3176 d64 COMAPI - Updates found = 10
>>>2006-11-05 20:36:46 3176 d64 COMAPI ---------
>>>2006-11-05 20:36:46 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
>>>WindowsUpdate]
>>>2006-11-05 20:36:46 3176 d64 COMAPI -------------
>>>2006-11-05 20:37:25 3176 77c COMAPI -------------
>>>2006-11-05 20:37:25 3176 77c COMAPI -- START -- COMAPI: Download [ClientId
>>>= WindowsUpdate]
>>>2006-11-05 20:37:25 3176 77c COMAPI ---------
>>>2006-11-05 20:37:25 3176 77c COMAPI - Forced: No; Download priority: 3
>>>2006-11-05 20:37:25 3176 77c COMAPI - Updates in request: 3
>>>2006-11-05 20:37:25 3176 77c COMAPI - ServiceID =
>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:37:26 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Download
>>>[ClientId = WindowsUpdate]
>>>2006-11-05 20:37:26 1000 830 DnldMgr *************
>>>2006-11-05 20:37:26 1000 830 DnldMgr ** START ** DnldMgr: Downloading
>>>updates [CallerId = WindowsUpdate]
>>>2006-11-05 20:37:26 1000 830 DnldMgr *********
>>>2006-11-05 20:37:26 1000 830 DnldMgr * Priority = 3, ServiceId =
>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:37:26 1000 830 DnldMgr * Updates to download = 3
>>>2006-11-05 20:37:26 1000 830 Agent * Title = Windows Genuine Advantage
>>>Notification Upgrade (KB905474)
>>>2006-11-05 20:37:26 1000 830 Agent * UpdateId =
>>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
>>>2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
>>>2006-11-05 20:37:26 1000 830 Agent *
>>>{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
>>>2006-11-05 20:37:26 1000 830 Agent * Title = Windows Malicious Software
>>>Removal Tool - October 2006 (KB890830)
>>>2006-11-05 20:37:26 1000 830 Agent * UpdateId =
>>>{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
>>>2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
>>>2006-11-05 20:37:26 1000 830 Agent *
>>>{B9EDAA69-B877-406C-B948-9008870F4902}.102
>>>2006-11-05 20:37:26 1000 830 Agent * Title = Windows Internet Explorer
>>>7.0 for Windows XP
>>>2006-11-05 20:37:26 1000 830 Agent * UpdateId =
>>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
>>>2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
>>>2006-11-05 20:37:26 1000 830 Agent *
>>>{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
>>>2006-11-05 20:37:26 3084 8b0 DtaStor Update service properties: service
>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:37:26 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>update backup store
>>>2006-11-05 20:37:26 1000 830 DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>2006-11-05 20:37:26 1000 830 DnldMgr * Update is not allowed to download
>>>due to regulation.
>>>2006-11-05 20:37:26 1000 830 Agent *********
>>>2006-11-05 20:37:26 1000 830 Agent ** END ** Agent: Downloading updates
>>>[CallerId = WindowsUpdate]
>>>2006-11-05 20:37:26 1000 830 Agent *************
>>>2006-11-05 20:37:30 1000 bd0 DnldMgr BITS job
>>>{AF632E84-E7F7-405C-81E6-EA06675AE51F} completed successfully
>>>2006-11-05 20:37:30 1000 bd0 DnldMgr Download job bytes total = 966960,
>>>bytes transferred = 0
>>>2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>2006-11-05 20:37:30 1000 bd0 DnldMgr * Update is not allowed to download
>>>due to regulation.
>>>2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
>>>2006-11-05 20:37:30 1000 bd0 DnldMgr * All files for update were already
>>>downloaded and are valid.
>>>2006-11-05 20:37:30 3084 8b0 DtaStor Update service properties: service
>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:37:30 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>update backup store
>>>2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
>>>2006-11-05 20:37:30 1000 bd0 DnldMgr * All files for update were already
>>>downloaded and are valid.
>>>2006-11-05 20:37:31 1000 830 AU >>## RESUMED ## AU: Download update
>>>[UpdateId = {2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}, succeeded]
>>>2006-11-05 20:37:34 1000 59c DnldMgr BITS job
>>>{FD549133-6A69-4B4D-8D88-E9616D4C8E99} completed successfully
>>>2006-11-05 20:37:35 1000 59c DnldMgr Download job bytes total = 754088,
>>>bytes transferred = 0
>>>2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
>>>2006-11-05 20:37:35 1000 59c DnldMgr * All files for update were already
>>>downloaded and are valid.
>>>2006-11-05 20:37:35 3084 8b0 DtaStor Update service properties: service
>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>2006-11-05 20:37:35 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>update backup store
>>>2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>2006-11-05 20:37:35 1000 59c DnldMgr * Update is not allowed to download
>>>due to regulation.
>>>2006-11-05 20:37:35 1000 59c DnldMgr *********** DnldMgr: New download job
>>>[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
>>>2006-11-05 20:37:35 1000 59c DnldMgr * All files for update were already
>>>downloaded and are valid.

 
Reply With Quote
 
Wardy
Guest
Posts: n/a

 
      11-07-2006
Hi MowGreen,

I think it's time to call it a day and re-format and rebuild the system. At
least I learnt a little bit more about the system which is always good. Many
thanks for your efforts over last few days (and Ottmar :-) ).

Cheers

Wardy

"MowGreen [MVP]" wrote:

> I would NOT put any Trust into that system. Since it's been compromised,
> and I don't know what the specific malware was/is, highly recommend that
> you preserve the data that the User wants to save, format, and then
> reinstall. That's the *safest* way of ensuring the system is clean.
>
> Unless you'd like to post to an anti-malware forum that I help out in so
> that we can be as sure as *possible* that all malware is gone, it's time
> to flatten and reinstall the OS, Wardy.
> Let me know if you'd care to post to the forum, or not.
>
> MowGreen [MVP 2003-2007]
> ===============
> *-343-* FDNY
> Never Forgotten
> ===============
>
>
>
> Wardy wrote:
>
> > Hi MowGreen
> >
> > I did read Ottmar's post and all looked OK. I then created a new user and
> > tried again but no luck. I then ran the sfc /scannow job and it didn't
> > highlighgt any errors. It didn't say it was OK either (I'm not sure what I
> > should have seen). I then set the automatic updates and got the BSOD with a
> > 0x8E error. Now it BSODs on each load. I'll restart in safe mode and see if i
> > can fix that.
> >
> > Thanks for your efforts so far - i'm now thinking of reimaging it.
> >
> > "MowGreen [MVP]" wrote:
> >
> >
> >>Did you read Ottmar's post ? -
> >>http://support.microsoft.com/kb/910341
> >>
> >>The correct names and values for (XP)
> >>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
> >>Winlogon\Notify\SensLogn]
> >>are on that page.
> >>
> >>It appears that the User Account being used has been damaged due to
> >>malware. The SessionID is where the issue lies.
> >>
> >>
> >>>Service WARNING: GetUserTokenFromSessionId
> >>>failed with hr 0x800704dd
> >>
> >>Have you run sfc /scannow to ensure that all system files are intact ?
> >>
> >>You could try creating another User Account with Administration
> >>privileges to see if that will get the updates to install.
> >>The first update to install would be WGA via Windows Update.
> >>
> >>MowGreen [MVP 2003-2007]
> >>===============
> >> *-343-* FDNY
> >>Never Forgotten
> >>===============
> >>
> >>
> >>Wardy wrote:
> >>
> >>
> >>>hi,
> >>>
> >>>No luck i'm afraid. Thanks for the suggestion though. Here is the new log
> >>>and the contents of my c:\SensLogn file. I hope I haven't chopped too much out
> >>>
> >>>2006-11-05 20:34:26 1000 830 AU # 3 updates detected
> >>>2006-11-05 20:34:27 1000 830 AU #########
> >>>2006-11-05 20:34:27 1000 830 AU ## END ## AU: Search for updates [CallId
> >>>= {2A88A155-C2DC-48E0-9B25-023290E1696A}]
> >>>2006-11-05 20:34:27 1000 830 AU #############
> >>>2006-11-05 20:34:27 1000 830 AU AU setting next detection timeout to
> >>>2006-11-06 18:17:10
> >>>2006-11-05 20:34:27 1000 830 AU #############
> >>>2006-11-05 20:34:27 1000 830 AU ## START ## AU: Download updates
> >>>2006-11-05 20:34:27 1000 830 AU #########
> >>>2006-11-05 20:34:27 1000 830 AU # Approved updates = 3
> >>>2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
> >>>{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102, callId =
> >>>{4468E826-F9AC-4018-BCD8-0B4BED9F7EC5}
> >>>2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
> >>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100, callId =
> >>>{D9F23724-497B-47EB-8233-275EBE198EB2}
> >>>2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
> >>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103, callId =
> >>>{53077CC1-3F4D-4A73-8D25-C01F558924B4}
> >>>2006-11-05 20:34:27 1000 830 AU AU setting pending client directive to
> >>>'Download Progress'
> >>>2006-11-05 20:34:27 1000 830 AU # Pending download calls = 3
> >>>2006-11-05 20:34:27 1000 830 AU <<## SUBMITTED ## AU: Download updates
> >>>2006-11-05 20:34:37 1000 f0 Misc WARNING:
> >>>2006-11-05 20:36:01 3176 d64 COMAPI - Updates found = 0
> >>>2006-11-05 20:36:01 3176 d64 COMAPI ---------
> >>>2006-11-05 20:36:01 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
> >>>WindowsUpdate]
> >>>2006-11-05 20:36:01 3176 d64 COMAPI -------------
> >>>2006-11-05 20:36:01 3176 77c COMAPI -------------
> >>>2006-11-05 20:36:01 3176 77c COMAPI -- START -- COMAPI: Search [ClientId =
> >>>WindowsUpdate]
> >>>2006-11-05 20:36:01 3176 77c COMAPI ---------
> >>>2006-11-05 20:36:01 3176 77c COMAPI - Online = No; Ignore download
> >>>priority = No
> >>>2006-11-05 20:36:01 3176 77c COMAPI - Criteria = "IsInstalled = 0 and
> >>>IsHidden = 0"
> >>>2006-11-05 20:36:01 3176 77c COMAPI - ServiceID =
> >>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
> >>>2006-11-05 20:36:01 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Search
> >>>[ClientId = WindowsUpdate]
> >>>2006-11-05 20:36:14 1000 f0 DnldMgr * Odf parameters...
> >>>2006-11-05 20:36:14 1000 f0 DnldMgr * Refresh interval: 1
> >>>2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate high: 10000
> >>>2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate normal: 10000
> >>>2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate low: 0
> >>>2006-11-05 20:36:14 3084 8b0 DtaStor Update service properties: service
> >>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> >>>2006-11-05 20:36:14 3084 8b0 DtaStor WARNING: Update Service: Failed to
> >>>update backup store
> >>>2006-11-05 20:36:14 1000 f0 DnldMgr *********** DnldMgr: New download job
> >>>[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
> >>>2006-11-05 20:36:20 1000 f0 DnldMgr * BITS job initialized, JobId =
> >>>{FD549133-6A69-4B4D-8D88-E9616D4C8E99}
> >>>2006-11-05 20:36:21 1000 f0 DnldMgr * Downloading from
> >>>http://au.download.windowsupdate.com...63e4adcf11.exe
> >>>to
> >>>C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\04207f552de32d85230aac3b62d4814e\b30d100d880e2b aa44e8f3972dce1e63e4adcf11 (full file).
> >>>2006-11-05 20:36:23 1000 f0 Agent *********
> >>>2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
> >>>[CallerId = AutomaticUpdates]
> >>>2006-11-05 20:36:23 1000 f0 Agent *************
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr *************
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
> >>>updates [CallerId = AutomaticUpdates]
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr *********
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 1, ServiceId =
> >>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
> >>>2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Internet Explorer
> >>>7.0 for Windows XP
> >>>2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
> >>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
> >>>2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
> >>>2006-11-05 20:36:23 1000 f0 Agent *
> >>>{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
> >>>2006-11-05 20:36:23 3084 8b0 DtaStor Update service properties: service
> >>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> >>>2006-11-05 20:36:23 3084 8b0 DtaStor WARNING: Update Service: Failed to
> >>>update backup store
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr *********** DnldMgr: New download job
> >>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr * Update is not allowed to download
> >>>due to regulation.
> >>>2006-11-05 20:36:23 1000 f0 Agent *********
> >>>2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
> >>>[CallerId = AutomaticUpdates]
> >>>2006-11-05 20:36:23 1000 f0 Agent *************
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr *************
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
> >>>updates [CallerId = AutomaticUpdates]
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr *********
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 2, ServiceId =
> >>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
> >>>2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
> >>>2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Genuine Advantage
> >>>Notification Upgrade (KB905474)
> >>>2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
> >>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
> >>>2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
> >>>2006-11-05 20:36:23 1000 f0 Agent *
> >>>{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
> >>>2006-11-05 20:36:24 3084 8b0 DtaStor Update service properties: service
> >>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> >>>2006-11-05 20:36:24 3084 8b0 DtaStor WARNING: Update Service: Failed to
> >>>update backup store
> >>>2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
> >>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> >>>2006-11-05 20:36:24 1000 f0 DnldMgr * Update is not allowed to download
> >>>due to regulation.
> >>>2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
> >>>[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
> >>>2006-11-05 20:36:24 1000 f0 DnldMgr * BITS job initialized, JobId =
> >>>{AF632E84-E7F7-405C-81E6-EA06675AE51F}
> >>>2006-11-05 20:36:24 1000 f0 DnldMgr * Downloading from
> >>>http://au.download.windowsupdate.com...0948a40446.exe
> >>>to
> >>>C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\445710fed136176214560cf8f0d5735c\e69cdc796b5c50 94328c5cef5374f70948a40446 (full file).
> >>>2006-11-05 20:36:24 1000 f0 Agent *********
> >>>2006-11-05 20:36:24 1000 f0 Agent ** END ** Agent: Downloading updates
> >>>[CallerId = AutomaticUpdates]
> >>>2006-11-05 20:36:24 1000 f0 Agent *************
> >>>2006-11-05 20:36:24 1000 f0 Agent *************
> >>>2006-11-05 20:36:24 1000 f0 Agent ** START ** Agent: Finding updates
> >>>[CallerId = WindowsUpdate]
> >>>2006-11-05 20:36:24 1000 f0 Agent *********
> >>>2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180000a,
> >>>DeviceProblemNumber: 00000000
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{C57C82A0-BFE5-49C1-B4D4-57DA31994859}.50 to search result
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{5A0255AB-8EB9-49DF-8878-C137F278397E}.100 to search result
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{6384F8AC-4973-4ED9-BC7F-4644507FB001}.100 to search result
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{46A0B6F7-B283-45F8-9CCB-C8E3B4EC332C}.100 to search result
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{9D493962-0BB7-4541-AD81-F96263B4B201}.102 to search result
> >>>2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180200a,
> >>>DeviceProblemNumber: 00000000
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{4A420C00-383D-4E00-8B8F-9EF31366653B}.100 to search result
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103 to search result
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102 to search result
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{8F771EC5-FCD3-4A6B-ADA6-7D6F0927F080}.102 to search result
> >>>2006-11-05 20:36:44 1000 f0 Agent * Added update
> >>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100 to search result
> >>>2006-11-05 20:36:44 1000 f0 Agent * Found 10 updates and 12 categories in
> >>>search
> >>>2006-11-05 20:36:44 1000 f0 Agent *********
> >>>2006-11-05 20:36:44 1000 f0 Agent ** END ** Agent: Finding updates
> >>>[CallerId = WindowsUpdate]
> >>>2006-11-05 20:36:44 1000 f0 Agent *************
> >>>2006-11-05 20:36:44 1000 f0 DnldMgr *********** DnldMgr: New download job
> >>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> >>>2006-11-05 20:36:44 1000 f0 DnldMgr * Update is not allowed to download
> >>>due to regulation.
> >>>2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
> >>>{0A1B8513-2C66-4983-B381-B7DD17568E25} 2006-11-05
> >>>20:34:18-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Software Synchronization Agent has finished detecting items.
> >>>2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
> >>>{F21D5811-41AB-4C27-8705-0A4D8870E5AF} 2006-11-05
> >>>20:36:00-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 WindowsUpdate Success Software Synchronization Agent has finished detecting items.
> >>>2006-11-05 20:36:46 3176 d64 COMAPI >>-- RESUMED -- COMAPI: Search
> >>>[ClientId = WindowsUpdate]
> >>>2006-11-05 20:36:46 3176 d64 COMAPI - Updates found = 10
> >>>2006-11-05 20:36:46 3176 d64 COMAPI ---------
> >>>2006-11-05 20:36:46 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
> >>>WindowsUpdate]
> >>>2006-11-05 20:36:46 3176 d64 COMAPI -------------
> >>>2006-11-05 20:37:25 3176 77c COMAPI -------------
> >>>2006-11-05 20:37:25 3176 77c COMAPI -- START -- COMAPI: Download [ClientId
> >>>= WindowsUpdate]
> >>>2006-11-05 20:37:25 3176 77c COMAPI ---------
> >>>2006-11-05 20:37:25 3176 77c COMAPI - Forced: No; Download priority: 3
> >>>2006-11-05 20:37:25 3176 77c COMAPI - Updates in request: 3
> >>>2006-11-05 20:37:25 3176 77c COMAPI - ServiceID =
> >>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
> >>>2006-11-05 20:37:26 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Download
> >>>[ClientId = WindowsUpdate]
> >>>2006-11-05 20:37:26 1000 830 DnldMgr *************
> >>>2006-11-05 20:37:26 1000 830 DnldMgr ** START ** DnldMgr: Downloading
> >>>updates [CallerId = WindowsUpdate]
> >>>2006-11-05 20:37:26 1000 830 DnldMgr *********
> >>>2006-11-05 20:37:26 1000 830 DnldMgr * Priority = 3, ServiceId =
> >>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
> >>>2006-11-05 20:37:26 1000 830 DnldMgr * Updates to download = 3
> >>>2006-11-05 20:37:26 1000 830 Agent * Title = Windows Genuine Advantage
> >>>Notification Upgrade (KB905474)
> >>>2006-11-05 20:37:26 1000 830 Agent * UpdateId =
> >>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
> >>>2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
> >>>2006-11-05 20:37:26 1000 830 Agent *
> >>>{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
> >>>2006-11-05 20:37:26 1000 830 Agent * Title = Windows Malicious Software
> >>>Removal Tool - October 2006 (KB890830)
> >>>2006-11-05 20:37:26 1000 830 Agent * UpdateId =
> >>>{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
> >>>2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
> >>>2006-11-05 20:37:26 1000 830 Agent *
> >>>{B9EDAA69-B877-406C-B948-9008870F4902}.102
> >>>2006-11-05 20:37:26 1000 830 Agent * Title = Windows Internet Explorer
> >>>7.0 for Windows XP
> >>>2006-11-05 20:37:26 1000 830 Agent * UpdateId =
> >>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
> >>>2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
> >>>2006-11-05 20:37:26 1000 830 Agent *
> >>>{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
> >>>2006-11-05 20:37:26 3084 8b0 DtaStor Update service properties: service
> >>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
> >>>2006-11-05 20:37:26 3084 8b0 DtaStor WARNING: Update Service: Failed to
> >>>update backup store
> >>>2006-11-05 20:37:26 1000 830 DnldMgr *********** DnldMgr: New download job
> >>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
> >>>2006-11-05 20:37:26 1000 830 DnldMgr * Update is not allowed to download
> >>>due to regulation.
> >>>2006-11-05 20:37:26 1000 830 Agent *********
> >>>2006-11-05 20:37:26 1000 830 Agent ** END ** Agent: Downloading updates
> >>>[CallerId = WindowsUpdate]
> >>>2006-11-05 20:37:26 1000 830 Agent *************
> >>>2006-11-05 20:37:30 1000 bd0 DnldMgr BITS job
> >>>{AF632E84-E7F7-405C-81E6-EA06675AE51F} completed successfully
> >>>2006-11-05 20:37:30 1000 bd0 DnldMgr Download job bytes total = 966960,
> >>>bytes transferred = 0
> >>>2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
> >>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********

 
Reply With Quote
 
MowGreen [MVP]
Guest
Posts: n/a

 
      11-08-2006
Wardy,

Smart move. Once a system has been compromised, and it sounds as if that
was compromised BADLY, then it's difficult to Trust.
If any of the malware were trojans, key loggers, or password stealers,
you should get the Owner of the system to change all of the passwords
used to access websites, email, online banking, etc.

Freudie and I say " You're welcome "


MowGreen [MVP 2003-2007]
===============
*-343-* FDNY
Never Forgotten
===============



Wardy wrote:

> Hi MowGreen,
>
> I think it's time to call it a day and re-format and rebuild the system. At
> least I learnt a little bit more about the system which is always good. Many
> thanks for your efforts over last few days (and Ottmar :-) ).
>
> Cheers
>
> Wardy
>
> "MowGreen [MVP]" wrote:
>
>
>>I would NOT put any Trust into that system. Since it's been compromised,
>>and I don't know what the specific malware was/is, highly recommend that
>>you preserve the data that the User wants to save, format, and then
>>reinstall. That's the *safest* way of ensuring the system is clean.
>>
>>Unless you'd like to post to an anti-malware forum that I help out in so
>>that we can be as sure as *possible* that all malware is gone, it's time
>>to flatten and reinstall the OS, Wardy.
>>Let me know if you'd care to post to the forum, or not.
>>
>>MowGreen [MVP 2003-2007]
>>===============
>> *-343-* FDNY
>>Never Forgotten
>>===============
>>
>>
>>
>>Wardy wrote:
>>
>>
>>>Hi MowGreen
>>>
>>>I did read Ottmar's post and all looked OK. I then created a new user and
>>>tried again but no luck. I then ran the sfc /scannow job and it didn't
>>>highlighgt any errors. It didn't say it was OK either (I'm not sure what I
>>>should have seen). I then set the automatic updates and got the BSOD with a
>>>0x8E error. Now it BSODs on each load. I'll restart in safe mode and see if i
>>>can fix that.
>>>
>>>Thanks for your efforts so far - i'm now thinking of reimaging it.
>>>
>>>"MowGreen [MVP]" wrote:
>>>
>>>
>>>
>>>>Did you read Ottmar's post ? -
>>>>http://support.microsoft.com/kb/910341
>>>>
>>>>The correct names and values for (XP)
>>>>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\
>>>>Winlogon\Notify\SensLogn]
>>>>are on that page.
>>>>
>>>>It appears that the User Account being used has been damaged due to
>>>>malware. The SessionID is where the issue lies.
>>>>
>>>>
>>>>
>>>>>Service WARNING: GetUserTokenFromSessionId
>>>>>failed with hr 0x800704dd
>>>>
>>>>Have you run sfc /scannow to ensure that all system files are intact ?
>>>>
>>>>You could try creating another User Account with Administration
>>>>privileges to see if that will get the updates to install.
>>>>The first update to install would be WGA via Windows Update.
>>>>
>>>>MowGreen [MVP 2003-2007]
>>>>===============
>>>> *-343-* FDNY
>>>>Never Forgotten
>>>>===============
>>>>
>>>>
>>>>Wardy wrote:
>>>>
>>>>
>>>>
>>>>>hi,
>>>>>
>>>>>No luck i'm afraid. Thanks for the suggestion though. Here is the new log
>>>>>and the contents of my c:\SensLogn file. I hope I haven't chopped too much out
>>>>>
>>>>>2006-11-05 20:34:26 1000 830 AU # 3 updates detected
>>>>>2006-11-05 20:34:27 1000 830 AU #########
>>>>>2006-11-05 20:34:27 1000 830 AU ## END ## AU: Search for updates [CallId
>>>>>= {2A88A155-C2DC-48E0-9B25-023290E1696A}]
>>>>>2006-11-05 20:34:27 1000 830 AU #############
>>>>>2006-11-05 20:34:27 1000 830 AU AU setting next detection timeout to
>>>>>2006-11-06 18:17:10
>>>>>2006-11-05 20:34:27 1000 830 AU #############
>>>>>2006-11-05 20:34:27 1000 830 AU ## START ## AU: Download updates
>>>>>2006-11-05 20:34:27 1000 830 AU #########
>>>>>2006-11-05 20:34:27 1000 830 AU # Approved updates = 3
>>>>>2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
>>>>>{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102, callId =
>>>>>{4468E826-F9AC-4018-BCD8-0B4BED9F7EC5}
>>>>>2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
>>>>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100, callId =
>>>>>{D9F23724-497B-47EB-8233-275EBE198EB2}
>>>>>2006-11-05 20:34:27 1000 830 AU AU initiated download, updateId =
>>>>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103, callId =
>>>>>{53077CC1-3F4D-4A73-8D25-C01F558924B4}
>>>>>2006-11-05 20:34:27 1000 830 AU AU setting pending client directive to
>>>>>'Download Progress'
>>>>>2006-11-05 20:34:27 1000 830 AU # Pending download calls = 3
>>>>>2006-11-05 20:34:27 1000 830 AU <<## SUBMITTED ## AU: Download updates
>>>>>2006-11-05 20:34:37 1000 f0 Misc WARNING:
>>>>>2006-11-05 20:36:01 3176 d64 COMAPI - Updates found = 0
>>>>>2006-11-05 20:36:01 3176 d64 COMAPI ---------
>>>>>2006-11-05 20:36:01 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
>>>>>WindowsUpdate]
>>>>>2006-11-05 20:36:01 3176 d64 COMAPI -------------
>>>>>2006-11-05 20:36:01 3176 77c COMAPI -------------
>>>>>2006-11-05 20:36:01 3176 77c COMAPI -- START -- COMAPI: Search [ClientId =
>>>>>WindowsUpdate]
>>>>>2006-11-05 20:36:01 3176 77c COMAPI ---------
>>>>>2006-11-05 20:36:01 3176 77c COMAPI - Online = No; Ignore download
>>>>>priority = No
>>>>>2006-11-05 20:36:01 3176 77c COMAPI - Criteria = "IsInstalled = 0 and
>>>>>IsHidden = 0"
>>>>>2006-11-05 20:36:01 3176 77c COMAPI - ServiceID =
>>>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>>>2006-11-05 20:36:01 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Search
>>>>>[ClientId = WindowsUpdate]
>>>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Odf parameters...
>>>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Refresh interval: 1
>>>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate high: 10000
>>>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate normal: 10000
>>>>>2006-11-05 20:36:14 1000 f0 DnldMgr * Accept rate low: 0
>>>>>2006-11-05 20:36:14 3084 8b0 DtaStor Update service properties: service
>>>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>>>2006-11-05 20:36:14 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>>>update backup store
>>>>>2006-11-05 20:36:14 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>>>[UpdateId = {B9EDAA69-B877-406C-B948-9008870F4902}.102] ***********
>>>>>2006-11-05 20:36:20 1000 f0 DnldMgr * BITS job initialized, JobId =
>>>>>{FD549133-6A69-4B4D-8D88-E9616D4C8E99}
>>>>>2006-11-05 20:36:21 1000 f0 DnldMgr * Downloading from
>>>>>http://au.download.windowsupdate.com...63e4adcf11.exe
>>>>>to
>>>>>C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\04207f552de32d85230aac3b62d4814e\b30d100d880e2b aa44e8f3972dce1e63e4adcf11 (full file).
>>>>>2006-11-05 20:36:23 1000 f0 Agent *********
>>>>>2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
>>>>>[CallerId = AutomaticUpdates]
>>>>>2006-11-05 20:36:23 1000 f0 Agent *************
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr *************
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
>>>>>updates [CallerId = AutomaticUpdates]
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr *********
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 1, ServiceId =
>>>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
>>>>>2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Internet Explorer
>>>>>7.0 for Windows XP
>>>>>2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
>>>>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
>>>>>2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
>>>>>2006-11-05 20:36:23 1000 f0 Agent *
>>>>>{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
>>>>>2006-11-05 20:36:23 3084 8b0 DtaStor Update service properties: service
>>>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>>>2006-11-05 20:36:23 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>>>update backup store
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Update is not allowed to download
>>>>>due to regulation.
>>>>>2006-11-05 20:36:23 1000 f0 Agent *********
>>>>>2006-11-05 20:36:23 1000 f0 Agent ** END ** Agent: Downloading updates
>>>>>[CallerId = AutomaticUpdates]
>>>>>2006-11-05 20:36:23 1000 f0 Agent *************
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr *************
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr ** START ** DnldMgr: Downloading
>>>>>updates [CallerId = AutomaticUpdates]
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr *********
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Priority = 2, ServiceId =
>>>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>>>2006-11-05 20:36:23 1000 f0 DnldMgr * Updates to download = 1
>>>>>2006-11-05 20:36:23 1000 f0 Agent * Title = Windows Genuine Advantage
>>>>>Notification Upgrade (KB905474)
>>>>>2006-11-05 20:36:23 1000 f0 Agent * UpdateId =
>>>>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
>>>>>2006-11-05 20:36:23 1000 f0 Agent * Bundles 1 updates:
>>>>>2006-11-05 20:36:23 1000 f0 Agent *
>>>>>{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
>>>>>2006-11-05 20:36:24 3084 8b0 DtaStor Update service properties: service
>>>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>>>2006-11-05 20:36:24 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>>>update backup store
>>>>>2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>>>2006-11-05 20:36:24 1000 f0 DnldMgr * Update is not allowed to download
>>>>>due to regulation.
>>>>>2006-11-05 20:36:24 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>>>[UpdateId = {0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103] ***********
>>>>>2006-11-05 20:36:24 1000 f0 DnldMgr * BITS job initialized, JobId =
>>>>>{AF632E84-E7F7-405C-81E6-EA06675AE51F}
>>>>>2006-11-05 20:36:24 1000 f0 DnldMgr * Downloading from
>>>>>http://au.download.windowsupdate.com...0948a40446.exe
>>>>>to
>>>>>C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\445710fed136176214560cf8f0d5735c\e69cdc796b5c50 94328c5cef5374f70948a40446 (full file).
>>>>>2006-11-05 20:36:24 1000 f0 Agent *********
>>>>>2006-11-05 20:36:24 1000 f0 Agent ** END ** Agent: Downloading updates
>>>>>[CallerId = AutomaticUpdates]
>>>>>2006-11-05 20:36:24 1000 f0 Agent *************
>>>>>2006-11-05 20:36:24 1000 f0 Agent *************
>>>>>2006-11-05 20:36:24 1000 f0 Agent ** START ** Agent: Finding updates
>>>>>[CallerId = WindowsUpdate]
>>>>>2006-11-05 20:36:24 1000 f0 Agent *********
>>>>>2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180000a,
>>>>>DeviceProblemNumber: 00000000
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{C57C82A0-BFE5-49C1-B4D4-57DA31994859}.50 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{5A0255AB-8EB9-49DF-8878-C137F278397E}.100 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{6384F8AC-4973-4ED9-BC7F-4644507FB001}.100 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{46A0B6F7-B283-45F8-9CCB-C8E3B4EC332C}.100 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{9D493962-0BB7-4541-AD81-F96263B4B201}.102 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Driver DeviceStatus: 0x180200a,
>>>>>DeviceProblemNumber: 00000000
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{4A420C00-383D-4E00-8B8F-9EF31366653B}.100 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{8F771EC5-FCD3-4A6B-ADA6-7D6F0927F080}.102 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Added update
>>>>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100 to search result
>>>>>2006-11-05 20:36:44 1000 f0 Agent * Found 10 updates and 12 categories in
>>>>>search
>>>>>2006-11-05 20:36:44 1000 f0 Agent *********
>>>>>2006-11-05 20:36:44 1000 f0 Agent ** END ** Agent: Finding updates
>>>>>[CallerId = WindowsUpdate]
>>>>>2006-11-05 20:36:44 1000 f0 Agent *************
>>>>>2006-11-05 20:36:44 1000 f0 DnldMgr *********** DnldMgr: New download job
>>>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>>>2006-11-05 20:36:44 1000 f0 DnldMgr * Update is not allowed to download
>>>>>due to regulation.
>>>>>2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
>>>>>{0A1B8513-2C66-4983-B381-B7DD17568E25} 2006-11-05
>>>>>20:34:18-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Software Synchronization Agent has finished detecting items.
>>>>>2006-11-05 20:36:45 1000 f0 Report REPORT EVENT:
>>>>>{F21D5811-41AB-4C27-8705-0A4D8870E5AF} 2006-11-05
>>>>>20:36:00-0000 1 147 101 {00000000-0000-0000-0000-000000000000} 0 0 WindowsUpdate Success Software Synchronization Agent has finished detecting items.
>>>>>2006-11-05 20:36:46 3176 d64 COMAPI >>-- RESUMED -- COMAPI: Search
>>>>>[ClientId = WindowsUpdate]
>>>>>2006-11-05 20:36:46 3176 d64 COMAPI - Updates found = 10
>>>>>2006-11-05 20:36:46 3176 d64 COMAPI ---------
>>>>>2006-11-05 20:36:46 3176 d64 COMAPI -- END -- COMAPI: Search [ClientId =
>>>>>WindowsUpdate]
>>>>>2006-11-05 20:36:46 3176 d64 COMAPI -------------
>>>>>2006-11-05 20:37:25 3176 77c COMAPI -------------
>>>>>2006-11-05 20:37:25 3176 77c COMAPI -- START -- COMAPI: Download [ClientId
>>>>>= WindowsUpdate]
>>>>>2006-11-05 20:37:25 3176 77c COMAPI ---------
>>>>>2006-11-05 20:37:25 3176 77c COMAPI - Forced: No; Download priority: 3
>>>>>2006-11-05 20:37:25 3176 77c COMAPI - Updates in request: 3
>>>>>2006-11-05 20:37:25 3176 77c COMAPI - ServiceID =
>>>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>>>2006-11-05 20:37:26 3176 77c COMAPI <<-- SUBMITTED -- COMAPI: Download
>>>>>[ClientId = WindowsUpdate]
>>>>>2006-11-05 20:37:26 1000 830 DnldMgr *************
>>>>>2006-11-05 20:37:26 1000 830 DnldMgr ** START ** DnldMgr: Downloading
>>>>>updates [CallerId = WindowsUpdate]
>>>>>2006-11-05 20:37:26 1000 830 DnldMgr *********
>>>>>2006-11-05 20:37:26 1000 830 DnldMgr * Priority = 3, ServiceId =
>>>>>{9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>>>2006-11-05 20:37:26 1000 830 DnldMgr * Updates to download = 3
>>>>>2006-11-05 20:37:26 1000 830 Agent * Title = Windows Genuine Advantage
>>>>>Notification Upgrade (KB905474)
>>>>>2006-11-05 20:37:26 1000 830 Agent * UpdateId =
>>>>>{2B86CC5F-04DE-4D42-8C41-9EC6C662C51E}.103
>>>>>2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
>>>>>2006-11-05 20:37:26 1000 830 Agent *
>>>>>{0F654B54-2B7B-4FE8-862F-61EF23DA326D}.103
>>>>>2006-11-05 20:37:26 1000 830 Agent * Title = Windows Malicious Software
>>>>>Removal Tool - October 2006 (KB890830)
>>>>>2006-11-05 20:37:26 1000 830 Agent * UpdateId =
>>>>>{A96F7F1C-57F9-45BF-A945-0E8AD2B9ECF3}.102
>>>>>2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
>>>>>2006-11-05 20:37:26 1000 830 Agent *
>>>>>{B9EDAA69-B877-406C-B948-9008870F4902}.102
>>>>>2006-11-05 20:37:26 1000 830 Agent * Title = Windows Internet Explorer
>>>>>7.0 for Windows XP
>>>>>2006-11-05 20:37:26 1000 830 Agent * UpdateId =
>>>>>{1A0ABF21-29D9-4396-B40E-EE082B435FB8}.100
>>>>>2006-11-05 20:37:26 1000 830 Agent * Bundles 1 updates:
>>>>>2006-11-05 20:37:26 1000 830 Agent *
>>>>>{E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100
>>>>>2006-11-05 20:37:26 3084 8b0 DtaStor Update service properties: service
>>>>>registered with AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
>>>>>2006-11-05 20:37:26 3084 8b0 DtaStor WARNING: Update Service: Failed to
>>>>>update backup store
>>>>>2006-11-05 20:37:26 1000 830 DnldMgr *********** DnldMgr: New download job
>>>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********
>>>>>2006-11-05 20:37:26 1000 830 DnldMgr * Update is not allowed to download
>>>>>due to regulation.
>>>>>2006-11-05 20:37:26 1000 830 Agent *********
>>>>>2006-11-05 20:37:26 1000 830 Agent ** END ** Agent: Downloading updates
>>>>>[CallerId = WindowsUpdate]
>>>>>2006-11-05 20:37:26 1000 830 Agent *************
>>>>>2006-11-05 20:37:30 1000 bd0 DnldMgr BITS job
>>>>>{AF632E84-E7F7-405C-81E6-EA06675AE51F} completed successfully
>>>>>2006-11-05 20:37:30 1000 bd0 DnldMgr Download job bytes total = 966960,
>>>>>bytes transferred = 0
>>>>>2006-11-05 20:37:30 1000 bd0 DnldMgr *********** DnldMgr: New download job
>>>>>[UpdateId = {E3D1CF02-49A5-4FAA-9C7B-383D95E8FDBF}.100] ***********

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Re: Update or Instal Vista fails "Windows could not update registry da Frank Saunders, MS-MVP OE/WM Windows Vista General Discussion 0 12-12-2006 07:58 PM
Windows Update not working (log attached) KCO Windows Update 0 08-27-2004 07:29 PM
RE: Windows Update fails - Generic Host Process crashes; windows update has not passed logo testing Nelson Windows Update 1 05-11-2004 04:06 PM
virus attached to an update Angie Windows Update 3 05-11-2004 01:16 AM
Windows auto update - emails received with virus attached ? martin Windows Update 5 10-18-2003 07:59 PM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59