Заглянул в лог - вот такие вещи попались:
читать дальше »
Система Windows обнаружила, что файл реестра используется другими приложениями или службами. Файл будет сейчас выгружен. Приложения или службы, которые используют файл реестра, могут впоследствии работать неправильно.
ПОДРОБНО -
120 user registry handles leaked from \Registry\User\S-1-5-21-548846823-1451437002-2697315498-1000:
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3712 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Power Management\SPMgr.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4180 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\plugin-container.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 4400 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 5024 (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\BingBar\BingBar.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 5204 (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\BingBar\BingApp.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 5840 (\Device\HarddiskVolume3\Windows\System32\wuauclt.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 5548 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Care\VCsystray.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3780 (\Device\HarddiskVolume3\Windows\System32\dwm.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3804 (\Device\HarddiskVolume3\Windows\System32\taskhost.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3944 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Smart Network\VSNClient.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000
Process 3804 (\Device\HarddiskVolume3\Windows\System32\taskhost.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\CTF\SortOrder
Process 5024 (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\BingBar\BingBar.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\BingBar\PlatformSettings
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{CEBFF5CD-ACE2-4F4F-9178-9926F41749EA}\Count
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Skype\Toolbars\Firefox
Process 3804 (\Device\HarddiskVolume3\Windows\System32\taskhost.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\CTF\TIP
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Internet Explorer\Main\WindowsSearch
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows NT\CurrentVersion
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows NT\CurrentVersion
Process 3772 (\Device\HarddiskVolume3\Windows\System32\taskeng.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows NT\CurrentVersion
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows NT\CurrentVersion
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows NT\CurrentVersion
Process 3804 (\Device\HarddiskVolume3\Windows\System32\taskhost.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Run
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\Shell
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\Root
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\Root
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\Root
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\Root
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\My
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\My
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\My
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\My
Process 5024 (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\BingBar\BingBar.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 4180 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\plugin-container.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 5024 (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\BingBar\BingBar.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 5548 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Care\VCsystray.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\CA
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\CA
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\CA
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\CA
Process 3804 (\Device\HarddiskVolume3\Windows\System32\taskhost.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\CTF\DirectSwitchHotkeys
Process 3944 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Smart Network\VSNClient.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Sony Corporation\VAIO Smart Network
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Sony Corporation\Shared Info\UXInfo
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Sony Corporation\Shared Info\UXInfo
Process 5024 (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\BingBar\BingBar.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\trust
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\trust
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\trust
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\trust
Process 3804 (\Device\HarddiskVolume3\Windows\System32\taskhost.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\CTF\Assemblies
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\HomeGroup\Printers
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{F4E57C4B-2036-45F0-A9AB-443BCFE33D9F}\Count
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\MSF\Registration\Listen
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies\Microsoft\SystemCertificates
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies\Microsoft\SystemCertificates
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies\Microsoft\SystemCertificates
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies\Microsoft\SystemCertificates
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies\Microsoft\SystemCertificates
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies\Microsoft\SystemCertificates
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Policies\Microsoft\SystemCertificates
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 4228 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 3580 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 2480 (\Device\HarddiskVolume3\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Internet Explorer\Main
Process 2312 (\Device\HarddiskVolume3\Program Files (x86)\Symantec\Symantec Endpoint Protection\Rtvscan.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Symantec\Symantec Endpoint Protection\AV\Custom Tasks
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 5024 (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\BingBar\BingBar.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 3944 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Smart Network\VSNClient.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 3712 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Power Management\SPMgr.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 4336 (\Device\HarddiskVolume3\Program Files (x86)\Mozilla Firefox\firefox.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software\Microsoft\Direct3D
Process 5024 (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\BingBar\BingBar.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software
Process 3848 (\Device\HarddiskVolume3\Windows\explorer.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software
Process 3980 (\Device\HarddiskVolume3\Program Files\Sony\VAIO Gate\VAIO Gate.exe) has opened key \REGISTRY\USER\S-1-5-21-548846823-1451437002-2697315498-1000\Software
Вот еще:
читать дальше »
Windows не удалось загрузить профиль пользователя, поэтому вход в систему выполнен с помощью стандартного системного профиля.
ПОДРОБНО - Отказано в доступе.