периодически вылазит ошибка:
Код:
Имя журнала: Application
Источник: Microsoft-Windows-User Profiles Service
Дата: 08.02.2016 16:50:07
Код события: 1530
Категория задачи:Отсутствует
Уровень: Предупреждение
Ключевые слова:
Пользователь: система
Компьютер: MSI
Описание:
Система Windows обнаружила, что файл реестра используется другими приложениями или службами. Файл будет сейчас выгружен. Приложения или службы, которые используют файл реестра, могут впоследствии работать неправильно.
ПОДРОБНО -
11 user registry handles leaked from \Registry\User\S-1-5-21-1594575016-671633038-3989275605-1000:
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\Root
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\trust
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\My
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\CA
Xml события:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
<EventID>1530</EventID>
<Version>0</Version>
<Level>3</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2016-02-08T15:50:07.556722900Z" />
<EventRecordID>70204</EventRecordID>
<Correlation />
<Execution ProcessID="1104" ThreadID="1716" />
<Channel>Application</Channel>
<Computer>MSI</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData Name="EVENT_HIVE_LEAK">
<Data Name="Detail">11 user registry handles leaked from \Registry\User\S-1-5-21-1594575016-671633038-3989275605-1000:
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\Root
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\trust
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\Disallowed
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\My
Process 1808 (\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-1594575016-671633038-3989275605-1000\Software\Microsoft\SystemCertificates\CA
</Data>
</EventData>
</Event>
как ее победить?