![]() |
![]() | ![]() | ![]() | ![]() | ![]() | ![]() | ![]() |
| Welcome to Windows Vista Forums. Our forum is dedicated to helping you find solutions with any problems, errors or issues you are experiencing with Windows Vista. The Vista forum also covers news and updates and has an extensive Windows Vista tutorial section that covers a wide range of tips and tricks. |
| |||||||
![]() |
| |
| | #1 (permalink) |
| Vista Business x64 and XP 32 | mid session new logon account? what's up with this message? An account was successfully logged on. Subject: Security ID: SYSTEM Account Name: MAINFRAME$ Account Domain: WORKGROUP Logon ID: 0x3e7 that happened in the middle of my morning? and soon after, the computer froze. . . thanks sportsguy |
My System Specs![]() |
| | #2 (permalink) |
| Vista Business x64 and XP 32 | Re: mid session new logon account? nad just prior to that A logon was attempted using explicit credentials. Subject: Security ID: SYSTEM Account Name: MAINFRAME$ Account Domain: WORKGROUP Logon ID: 0x3e7 Logon GUID: {00000000-0000-0000-0000-000000000000} Account Whose Credentials Were Used: Account Name: SYSTEM Account Domain: NT AUTHORITY Logon GUID: {00000000-0000-0000-0000-000000000000} Target Server: Target Server Name: localhost Additional Information: localhost Process Information: Process ID: 0x2a0 Process Name: C:\Windows\System32\services.exe Network Information: Network Address: - Port: - This event is generated when a process attempts to log on an account by explicitly specifying that account’s credentials. This most commonly occurs in batch-type configurations such as scheduled tasks, or when using the RUNAS command. is this how an antivirus or a virus user logons on? |
My System Specs![]() |
| | #3 (permalink) |
| Vista Business x64 and XP 32 | Re: mid session new logon account? what does this mean? Code: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 3 user registry handles leaked from \Registry\User\S-1-5-21-3857319494-4221527959-2872253871-1000: Process 560 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3857319494-4221527959-2872253871-1000 Process 560 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3857319494-4221527959-2872253871-1000 Process 560 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3857319494-4221527959-2872253871-1000\Software\Microsoft\RAS AutoDial sportsguy |
My System Specs![]() |
![]() |
| Thread Tools | |
| |
Similar Threads | ||||
| Thread | Forum | |||
| Can't logon to a user account | Vista General | |||
| Administrator account is lock,no other account available to logon | Vista account administration | |||
| hidden account logon? | Vista General | |||
| Hide an account at logon? | Vista General | |||
| VPN Session Icon Disappears, so I can't close Session | Vista file management | |||