Photoshop CC 2017: Has stopped working

  • 3
  • Problem
  • Updated 1 year ago
  • (Edited)
I get this when I try to open Photoshop: Abode Photoshop CC 2017 has stopped working. A problem caused the program to stop working correctly. Windows will close the program and notify you if a solution is available. Help, this happened before 2017 updated.  This has been going on for a couple of weeks.
Photo of Jeanine Polston Sturgeon

Jeanine Polston Sturgeon

  • 2 Posts
  • 0 Reply Likes
  • fustrated

Posted 2 years ago

  • 3
Photo of David Dobish

David Dobish, Senior QE Photoshop

  • 197 Posts
  • 49 Reply Likes
Are you by chance running lavasoft virus scanner?
Photo of Jeanine Polston Sturgeon

Jeanine Polston Sturgeon

  • 2 Posts
  • 0 Reply Likes
No, but when I was doing research on this, I saw that some people were having problems because of that.  Im using AVG
Photo of David Dobish

David Dobish, Senior QE Photoshop

  • 197 Posts
  • 49 Reply Likes
Please see this KB doc:  https://helpx.adobe.com/premiere-pro/kb/avg-quicktime.html

I suspect that AVG is blocking Photoshop from launching.  This is for Premiere but the same may apply for PS.
(Edited)
Photo of Bella Nadort

Bella Nadort

  • 5 Posts
  • 1 Reply Like
I'm having the same exact problem :I the anti-virus program I'm using is AVAST anti-virus... I looked into it and it is not blocking ANYTHING. please tell me how to fix this. I have done the update, (still didn't work) so I un-installed Photoshop, and then downloaded it again. The problem is still the same and it's really sad that I can't use the program I rely on to make money...
Photo of Pete Green

Pete Green, Customer Advocate

  • 710 Posts
  • 134 Reply Likes
Bella, Can you post the Photoshop crash report you get in the Windows Event Viewer? That might have some clues as to what's crashing. 
Photo of Bella Nadort

Bella Nadort

  • 5 Posts
  • 1 Reply Like
Sure, it says: Photoshop CC 2017 has stopped working, and below that it then says: A problem caused the program to stop working correctly. Windows will close the program and notify you if a solution is available.
Ps: I noticed AVAST was acting weird with Photoshop, so I completely uninstalled it... However sadly enough this did not get rid of the problem.
Photo of Pete Green

Pete Green, Customer Advocate

  • 710 Posts
  • 134 Reply Likes
Thanks Bella, Although, that sounds more like the crash dialog, and less the crash report from the Event Viewer -- have a look at this document which gives you steps for getting to Event Viewer where you'll see the Photoshop crash events. Paste that crash event text back here in the thread when you can.

https://helpx.adobe.com/photoshop-elements-editor/using/find-crashlogs.html
(Edited)
Photo of Bella Nadort

Bella Nadort

  • 5 Posts
  • 1 Reply Like
Whoops, sorry wrong thing :p
I'll upload screenshots, also thanks for helping.
Photo of Bella Nadort

Bella Nadort

  • 5 Posts
  • 1 Reply Like
Log Name: Application
Source: SkypeUpdate
Date: 11/8/2016 8:44:11 AM
Event ID: 100
Task Category: Service Events
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
Service started.
Event Xml:

100
4
1
0x80000000000000

22730
Application
Lenovo-PC

Log Name: Application
Source: Microsoft-Windows-Security-SPP
Date: 11/8/2016 8:41:55 AM
Event ID: 903
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The Software Protection service has stopped.

Event Xml:

903
0
0
0
0
0x80000000000000

22729

Application
Lenovo-PC

Log Name: Application
Source: Microsoft-Windows-Security-SPP
Date: 11/8/2016 8:41:55 AM
Event ID: 16384
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
Successfully scheduled Software Protection service for re-start at 2116-10-15T07:41:54Z. Reason: RulesEngine.
Event Xml:

16384
0
4
0
0
0x80000000000000

22728

Application
Lenovo-PC

2116-10-15T07:41:54Z
RulesEngine

Log Name: Application
Source: Microsoft-Windows-Security-SPP
Date: 11/8/2016 8:41:04 AM
Event ID: 902
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The Software Protection service has started.
10.0.14393.351
Event Xml:

902
0
0
0
0
0x80000000000000

22727

Application
Lenovo-PC

10.0.14393.351

Log Name: Application
Source: Microsoft-Windows-Security-SPP
Date: 11/8/2016 8:41:04 AM
Event ID: 1003
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The Software Protection service has completed licensing status check.
Application Id=55c92734-d682-4d71-983e-d6ec3f16059f
Licensing Status=
1: 0567073a-7d74-403b-b2d5-6b35da372d8d, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
2: 1b750385-9fe2-49a8-ab55-149d0546395b, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
3: 1d873132-f09f-4eb2-bf5a-2e4fb48935e8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
4: 2b1f36bb-c1cd-4306-bf5c-a0367c2d97d8, 1, 1 [(0 )(1 )(2 [0x00000000, 1, 0], [(?)( 1 0x00000000)(?)(?)(?)(?)( 10 0x00000000 msft:rm/algorithm/flags/1.0)(?)])(3 )]
5: 30d469c6-a78f-4476-b5c8-af78d5b6a5fb, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
6: 411b3d4f-be6d-4a06-baaa-9cabfc256cae, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
7: 58e97c99-f377-4ef1-81d5-4ad5522b5fd8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
8: 74436dbb-cc17-46de-867f-14906ba4a938, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
9: 8db63db6-4f8f-46d6-a448-66444faaaa72, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
10: e371d89a-73e8-4b24-a7ff-23a3641dd18e, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]

Event Xml:

1003
0
4
0
0
0x80000000000000

22726

Application
Lenovo-PC

55c92734-d682-4d71-983e-d6ec3f16059f

1: 0567073a-7d74-403b-b2d5-6b35da372d8d, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
2: 1b750385-9fe2-49a8-ab55-149d0546395b, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
3: 1d873132-f09f-4eb2-bf5a-2e4fb48935e8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
4: 2b1f36bb-c1cd-4306-bf5c-a0367c2d97d8, 1, 1 [(0 )(1 )(2 [0x00000000, 1, 0], [(?)( 1 0x00000000)(?)(?)(?)(?)( 10 0x00000000 msft:rm/algorithm/flags/1.0)(?)])(3 )]
5: 30d469c6-a78f-4476-b5c8-af78d5b6a5fb, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
6: 411b3d4f-be6d-4a06-baaa-9cabfc256cae, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
7: 58e97c99-f377-4ef1-81d5-4ad5522b5fd8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
8: 74436dbb-cc17-46de-867f-14906ba4a938, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
9: 8db63db6-4f8f-46d6-a448-66444faaaa72, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
10: e371d89a-73e8-4b24-a7ff-23a3641dd18e, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]

Log Name: Application
Source: Microsoft-Windows-Security-SPP
Date: 11/8/2016 8:41:04 AM
Event ID: 1066
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
Initialization status for service objects.
C:\WINDOWS\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:rm/algorithm/inherited/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:rm/algorithm/pkey/detect, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/ActionScheduler/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/statecollector/pkey, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/volume/services/kms/activationinfo/1.0, 0x00000000, 0x00000000

Event Xml:

1066
0
4
0
0
0x80000000000000

22725

Application
Lenovo-PC

C:\WINDOWS\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:rm/algorithm/inherited/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:rm/algorithm/pkey/detect, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/ActionScheduler/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/statecollector/pkey, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/volume/services/kms/activationinfo/1.0, 0x00000000, 0x00000000

Log Name: Application
Source: Microsoft-Windows-Security-SPP
Date: 11/8/2016 8:41:04 AM
Event ID: 900
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The Software Protection service is starting.
Parameters:caller=devicecensus.exe
Event Xml:

900
0
4
0
0
0x80000000000000

22724

Application
Lenovo-PC

caller=devicecensus.exe

Log Name: Application
Source: PG_Service_Launcher
Date: 11/8/2016 8:37:07 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
PowerEvent is verwerkt door de service.
Event Xml:

0
4
0
0x80000000000000

22723
Application
Lenovo-PC

PowerEvent is verwerkt door de service.

Log Name: Application
Source: PG_Service_Launcher
Date: 11/8/2016 8:37:06 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
PowerEvent is verwerkt door de service.
Event Xml:

0
4
0
0x80000000000000

22722
Application
Lenovo-PC

PowerEvent is verwerkt door de service.

Log Name: Application
Source: PG_Service_Launcher
Date: 11/8/2016 8:37:03 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
PowerEvent is verwerkt door de service.
Event Xml:

0
4
0
0x80000000000000

22721
Application
Lenovo-PC

PowerEvent is verwerkt door de service.

Log Name: Application
Source: igfxCUIService2.0.0.0
Date: 11/8/2016 8:37:00 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The description for Event ID 0 from source igfxCUIService2.0.0.0 cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Received Post Shell Event 2

Event Xml:

0
4
0
0x80000000000000

22720
Application
Lenovo-PC

Received Post Shell Event 2

Log Name: Application
Source: Microsoft-Windows-Winlogon
Date: 11/8/2016 8:37:00 AM
Event ID: 6000
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The winlogon notification subscriber was unavailable to handle a notification event.
Event Xml:

6000
0
4
0
0
0x80000000000000

22719

Application
Lenovo-PC

SessionEnv
D9060000

Log Name: Application
Source: igfxCUIService2.0.0.0
Date: 11/8/2016 8:36:58 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The description for Event ID 0 from source igfxCUIService2.0.0.0 cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Logon: 2

Event Xml:

0
4
0
0x80000000000000

22718
Application
Lenovo-PC

Logon: 2

Log Name: Application
Source: igfxCUIService2.0.0.0
Date: 11/8/2016 8:36:58 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The description for Event ID 0 from source igfxCUIService2.0.0.0 cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Log on event received User1

Event Xml:

0
4
0
0x80000000000000

22717
Application
Lenovo-PC

Log on event received User1

Log Name: Application
Source: Microsoft-Windows-Winlogon
Date: 11/8/2016 8:36:56 AM
Event ID: 6003
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The winlogon notification subscriber was unavailable to handle a critical notification event.
Event Xml:

6003
0
4
0
0
0x80000000000000

22716

Application
Lenovo-PC

SessionEnv
D9060000

Log Name: Application
Source: Bonjour Service
Date: 11/8/2016 2:14:20 AM
Event ID: 100
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
Task Scheduling Error: m->NextScheduledSPRetry 15593
Event Xml:

100
2
0
0x80000000000000

22715
Application
Lenovo-PC

Task Scheduling Error: m->NextScheduledSPRetry 15593

Log Name: Application
Source: Bonjour Service
Date: 11/8/2016 2:14:20 AM
Event ID: 100
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
Task Scheduling Error: m->NextScheduledEvent 15593
Event Xml:

100
2
0
0x80000000000000

22714
Application
Lenovo-PC

Task Scheduling Error: m->NextScheduledEvent 15593

Log Name: Application
Source: Bonjour Service
Date: 11/8/2016 2:14:20 AM
Event ID: 100
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
Task Scheduling Error: Continuously busy for more than a second
Event Xml:

100
2
0
0x80000000000000

22713
Application
Lenovo-PC

Task Scheduling Error: Continuously busy for more than a second

Log Name: Application
Source: PG_Service_Launcher
Date: 11/8/2016 2:14:02 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
PowerEvent is verwerkt door de service.
Event Xml:

0
4
0
0x80000000000000

22712
Application
Lenovo-PC

PowerEvent is verwerkt door de service.

Log Name: Application
Source: Microsoft-Windows-User Profiles Service
Date: 11/8/2016 2:14:01 AM
Event ID: 1530
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Lenovo-PC
Description:
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. No user action is required.

DETAIL -
2 user registry handles leaked from \Registry\User\S-1-5-21-936871469-3958677741-3392624676-1001_Classes:
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001_Classes
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001_Classes

Event Xml:

1530
0
4
0
0
0x8000000000000000

22711

Application
Lenovo-PC

2 user registry handles leaked from \Registry\User\S-1-5-21-936871469-3958677741-3392624676-1001_Classes:
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001_Classes
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001_Classes

Log Name: Application
Source: Microsoft-Windows-Winlogon
Date: 11/8/2016 2:14:01 AM
Event ID: 6000
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The winlogon notification subscriber was unavailable to handle a notification event.
Event Xml:

6000
0
4
0
0
0x80000000000000

22710

Application
Lenovo-PC

SessionEnv
D9060000

Log Name: Application
Source: Microsoft-Windows-User Profiles Service
Date: 11/8/2016 2:14:00 AM
Event ID: 1530
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Lenovo-PC
Description:
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. No user action is required.

DETAIL -
24 user registry handles leaked from \Registry\User\S-1-5-21-936871469-3958677741-3392624676-1001:
Process 2972 (\Device\HarddiskVolume5\Program Files (x86)\Lenovo\Lenovo Settings\LenovoSetSvr.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001
Process 100 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\System\GameConfigStore\Parents
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\CommsAPHost\Test
Process 100 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\System\GameConfigStore
Process 1160 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Policies\Microsoft\Windows\DataCollection
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\ActiveSync\Partners
Process 100 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\System\GameConfigStore\Children
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Security
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Security
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Security

Event Xml:

1530
0
4
0
0
0x8000000000000000

22709

Application
Lenovo-PC

24 user registry handles leaked from \Registry\User\S-1-5-21-936871469-3958677741-3392624676-1001:
Process 2972 (\Device\HarddiskVolume5\Program Files (x86)\Lenovo\Lenovo Settings\LenovoSetSvr.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001
Process 100 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\System\GameConfigStore\Parents
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\CommsAPHost\Test
Process 100 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\System\GameConfigStore
Process 1160 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Policies\Microsoft\Windows\DataCollection
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Main
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\ActiveSync\Partners
Process 100 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\System\GameConfigStore\Children
Process 3364 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Security
Process 2652 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Security
Process 6220 (\Device\HarddiskVolume5\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-936871469-3958677741-3392624676-1001\SOFTWARE\Microsoft\Internet Explorer\Security

Log Name: Application
Source: igfxCUIService2.0.0.0
Date: 11/8/2016 2:14:00 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The description for Event ID 0 from source igfxCUIService2.0.0.0 cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Logoff: 1

Event Xml:

0
4
0
0x80000000000000

22708
Application
Lenovo-PC

Logoff: 1

Log Name: Application
Source: igfxCUIService2.0.0.0
Date: 11/8/2016 2:14:00 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The description for Event ID 0 from source igfxCUIService2.0.0.0 cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Logoff: Test

Event Xml:

0
4
0
0x80000000000000

22707
Application
Lenovo-PC

Logoff: Test

Log Name: Application
Source: Desktop Window Manager
Date: 11/8/2016 2:13:55 AM
Event ID: 9027
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
The Desktop Window Manager has registered the session port.
Event Xml:

9027
4
0
0x80000000000000

22706
Application
Lenovo-PC

Log Name: Application
Source: Microsoft-Windows-Winsrv
Date: 11/8/2016 2:13:49 AM
Event ID: 10001
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Lenovo-PC
Description:
The following application attempted to veto the shutdown: Steam.exe.
Event Xml:

10001
0
4
0
0
0x8000000000000000

22705

Application
Lenovo-PC

Steam.exe
32

Log Name: Application
Source: PG_Service_Launcher
Date: 11/8/2016 2:05:04 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
PowerEvent is verwerkt door de service.
Event Xml:

0
4
0
0x80000000000000

22704
Application
Lenovo-PC

PowerEvent is verwerkt door de service.

Log Name: Application
Source: Microsoft-Windows-Search
Date: 11/8/2016 2:04:39 AM
Event ID: 3104
Task Category: Gatherer
Level: Error
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
Enumerating user sessions to generate filter pools failed.

Details:
(HRESULT : 0x80040210) (0x80040210)

Event Xml:

3104
0
2
3
0
0x80000000000000

22703

Application
Lenovo-PC

Details:
(HRESULT : 0x80040210) (0x80040210)

Log Name: Application
Source: Microsoft-Windows-Search
Date: 11/8/2016 2:04:39 AM
Event ID: 3104
Task Category: Gatherer
Level: Error
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
Enumerating user sessions to generate filter pools failed.

Details:
(HRESULT : 0x80040210) (0x80040210)

Event Xml:

3104
0
2
3
0
0x80000000000000

22702

Application
Lenovo-PC

Details:
(HRESULT : 0x80040210) (0x80040210)

Log Name: Application
Source: Microsoft-Windows-Search
Date: 11/8/2016 2:04:39 AM
Event ID: 3104
Task Category: Gatherer
Level: Error
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
Enumerating user sessions to generate filter pools failed.

Details:
(HRESULT : 0x80040210) (0x80040210)

Event Xml:

3104
0
2
3
0
0x80000000000000

22701

Application
Lenovo-PC

Details:
(HRESULT : 0x80040210) (0x80040210)

Log Name: Application
Source: PG_Service_Launcher
Date: 11/8/2016 2:03:56 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
PowerEvent is verwerkt door de service.
Event Xml:

0
4
0
0x80000000000000

22700
Application
Lenovo-PC

PowerEvent is verwerkt door de service.

Log Name: Application
Source: PG_Service_Launcher
Date: 11/8/2016 2:03:56 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
PowerEvent is verwerkt door de service.
Event Xml:

0
4
0
0x80000000000000

22699
Application
Lenovo-PC

PowerEvent is verwerkt door de service.

Log Name: Application
Source: PG_Service_Launcher
Date: 11/8/2016 2:03:55 AM
Event ID: 0
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Lenovo-PC
Description:
PowerEvent is verwerkt door de service.
Event Xml:

0
4
0
0x80000000000000

22698
Application
Lenovo-PC

PowerEvent is verwerkt door de service.
Photo of Klaus P. Brueck

Klaus P. Brueck

  • 1 Post
  • 0 Reply Likes
My name is Klaus Brueck. E-mail klaus.p.brueck@gmail.com 
Could you please assist me to get my Photoshop CC 2017 problem solved. I followed your instruction and have the crashlog.txt file ready for dispatch.
Your help would be much appreciated.
Klaus