Link to home
Start Free TrialLog in
Avatar of scott2112
scott2112

asked on

Local or Group Policy causing this problem when i create a new domain user ?

I have a network running 2003 on the server with a domain.  There are 2 client machines both running xp pro.  On one of them, when i create a new domain user and then login to the client, everything works fine at first.  However, if i logout and then back in again... it seems that there is a major policy overhaul going on.  I only get 3/10 icons in the system try; the start button only has 5 links rather than the normal 10 or so; i cant open outlook after it tries to install (it says outlook cannot open);etc.  This even happens if i login to that workstation using the server's admin account.  Just like the user, it happens after i logout and then back in again.  It seems that there is some kind of policy taking precedence and changing everything.  However, on the 2nd client in the network, this does NOT happen.  So i assume it must be local policy since there is no gpo on the domain besides the default stuff.  Is there anyway to return local computer policy back to the default state?  Or does anyone have another suggestion to try here ?
SOLUTION
Avatar of NJComputerNetworks
NJComputerNetworks
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of scott2112
scott2112

ASKER

Ok well maybe this will make it easier to figure out.
I just tried to create a new domain user name on the server.  When i dtry to login to that new user on the domain from this client i get , " windows cannot log you on because your profile cannot e loaded.  Check that you are connected to the network, or that your network is functioning correctly, blah blah .

I AM connected to the network and the domain works fine.  The reason i was having my original problem was because i couldnt login to a new domain user and thought i had to create that user on the client too.. So ultimately it was causing some kind of conflict.  However, i realize now that you do NOT need to create the user on the client and that it should be able to just simply login to the new domain user.
There are NO group policies being applied to this client.  I copied an existing local profile to the roaming path thinking that maybe that would at least help.  Well i get 3 errors in the client even log now, and it still will NOT login to the domain user.

1. Event 1506 Your roaming profile is not available.  You are logged on with the locally stored profile... Possible causes of this error include network problems or insufficient security rights.  Detail: Access is denied.

2. Event Id 1511 Windows cannot find the local profile and is logging you on with a temp profile....

3. Event Id 1500 Windows cannot log you on because your profile cannot be loaded.  check that you are connected to the network...  Detail The system cannot find the file specified.

This is not specifically a roaming problem because i cant even login without a roaming profile.  There is some security or corruption that is preventing the client from loggin in.  Even the server shows that the domain user was logged on and logged off in the event viewer/security/success Audit.

Im really going nuts here.
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Ive been using UPHClean believe it or not.
So here is an update of the odd behavior on my client.

1. I made the new domain user a member of 'domain admins' and then reestablished the root to the roaming profile on the server.  When i logged in on the xp pro workstation it finally worked.  I have access to everything, and even outlook was working.  The roaming profile and and everything was working.

2. I then tried to login simply using the admin from the domain.  I got the same odd behavior as before.  a) The first time it logged in, it said 'no profile was found and it would create a deafult one'.  Then when i logged out and back in again, it took 5 mins to load the settings and gave me a totally restricted user where outlook would NOT work and half the access to the start button/control panel was blocked. Obviously this is a totally secure user profile it loaded.

3.  Then i logged out and changed that new domain user so that it was No longer a member of Domain Admins... and i logged in.  Well, it did login to the roaming profile, but certain apps didnt load up and i got some errors in zone alarm and outlook wouldnt load up.  Obviously something is restricted here without domain admins as part of this user's security.

4. I rejoined domain admins in this user and everything loads up perfectly when i login.  

So im sure someon can make sense out of this , but i certainly cant.  What has been changed or corrupted so that only domain admins allows my new user to load up unencumbered.  Also, if the server's admin account IS part of domain admins, then why does that account not login correctly the 2nd time after creating the default profile.  It seems that it needs that roaming profile to keep working.  Is there something corrupt in documents and settings or something else ?

Thanks
Are you familiar with Userenv logging?

If you run this on the client computer it will create a log showing where the profiles are being loaded from, group policies being applied, etc...

The following article will show you how to enable the logging.

http://support.microsoft.com/default.aspx?scid=kb;EN-US;221833

If you want you can post the log file.

Also be sure that the User Profile Hive Cleanup Service is started

Jason
Well - here is the log file.  I found out that i was missing the 'Default User Folder' in documents and settings and that was causing half of the problem.  However, if i use roaming profiles, i am still blocked from half of my apps from loading up or working including outlook. Outlook will attmept to install on this roaming profile but then fail at the end.   I see in the log file that there is comment about an exclusion list that includes 'local settings/app data/msft/outlook' which is where the .pst should be.   But i also notice that zone alarm and spyware and aim etc dont load up, whereas without a roaming profile they all do.  These apps ARE all installed on the local machine where im trying to access the roaming profile.  
Thanks again if you have any insight...
---------------------------------------------------------------------------------------------------------------

USERENV(398.39c) 13:36:30:728 UnloadUserProfile: Entering, hProfile = <0x674>
USERENV(398.39c) 13:36:30:728 UnloadUserProfile: In console winlogon process
USERENV(398.39c) 13:36:30:728 UnloadUserProfileP: Entering, hProfile = <0x674>
USERENV(398.39c) 13:36:30:728 GetExclusionListFromRegistry: Policy list is empty, returning user list = <Local Settings;Temporary Internet Files;History;Temp;Local Settings\Application Data\Microsoft\Outlook>
USERENV(398.39c) 13:36:30:728 CSyncManager::EnterLock <S-1-5-21-2052111302-1965331169-1801674531-1003>
USERENV(398.39c) 13:36:30:728 CSyncManager::EnterLock: No existing entry found
USERENV(398.39c) 13:36:30:728 CSyncManager::EnterLock: New entry created
USERENV(398.39c) 13:36:30:728 CHashTable::HashAdd: S-1-5-21-2052111302-1965331169-1801674531-1003 added in bucket 9
USERENV(398.39c) 13:36:30:743 UnloadUserProfileP: Wait succeeded.  In critical section.
USERENV(398.39c) 13:36:30:868 MyRegUnLoadKey: Returning 1.
USERENV(398.39c) 13:36:30:868 UnloadUserProfileP:  Succesfully unloaded profile
USERENV(398.39c) 13:36:30:868 MyRegUnLoadKey: Returning 1.
USERENV(398.39c) 13:36:30:868 UnLoadClassHive: Successfully unmounted S-1-5-21-2052111302-1965331169-1801674531-1003_Classes
USERENV(398.39c) 13:36:30:868 UnloadUserProfileP:  Successfully unloaded user classes
USERENV(398.39c) 13:36:30:884 UnloadUserProfileP: Impersonated user
USERENV(398.39c) 13:36:30:884 UnloadUserProfileP: Writing local ini file
USERENV(398.39c) 13:36:30:884 UnloadUserProfileP: Reverting to Self
USERENV(398.39c) 13:36:30:884 UnloadUserProfileP: exitting and cleaning up
USERENV(398.39c) 13:36:30:884 CSyncManager::LeaveLock <S-1-5-21-2052111302-1965331169-1801674531-1003>
USERENV(398.39c) 13:36:30:884 CSyncManager::LeaveLock: Lock released
USERENV(398.39c) 13:36:30:884 CHashTable::HashDelete: S-1-5-21-2052111302-1965331169-1801674531-1003 deleted
USERENV(398.39c) 13:36:30:884 CSyncManager::LeaveLock: Lock deleted
USERENV(398.39c) 13:36:30:884 UnloadUserProfileP: Leave critical section.
USERENV(398.39c) 13:36:30:884 UnloadUserProfileP: Leaving with a return value of 1
USERENV(398.39c) 13:36:30:884 UnloadUserProfile: UnloadUserProfileP succeeded
USERENV(398.39c) 13:36:30:884 UnloadUserProfile: returning 1
USERENV(398.2de8) 13:36:41:478 IsSyncForegroundPolicyRefresh: Synchronous, Reason: FirstPolicyRefresh
USERENV(398.39c) 13:36:41:494 LoadUserProfile: Yes, we can impersonate the user. Running as self
USERENV(398.39c) 13:36:41:509 =========================================================
USERENV(398.39c) 13:36:41:509 LoadUserProfile: Entering, hToken = <0xa5c>, lpProfileInfo = 0x6e3e0
USERENV(398.39c) 13:36:41:509 LoadUserProfile: lpProfileInfo->dwFlags = <0x0>
USERENV(398.39c) 13:36:41:509 LoadUserProfile: lpProfileInfo->lpUserName = <jen2>
USERENV(398.39c) 13:36:41:509 LoadUserProfile: lpProfileInfo->lpProfilePath = <\\Dell\Public\Profiles\Jennifer>
USERENV(398.39c) 13:36:41:509 LoadUserProfile: lpProfileInfo->lpDefaultPath = <\\DELL\netlogon\Default User>
USERENV(398.39c) 13:36:41:509 LoadUserProfile: NULL server name
USERENV(398.39c) 13:36:41:509 LoadUserProfile: In console winlogon process
USERENV(398.39c) 13:36:41:509 In LoadUserProfileP
USERENV(398.39c) 13:36:41:509 =========================================================
USERENV(398.39c) 13:36:41:509 LoadUserProfile: Entering, hToken = <0xa5c>, lpProfileInfo = 0x6e3e0
USERENV(398.39c) 13:36:41:525 LoadUserProfile: lpProfileInfo->dwFlags = <0x0>
USERENV(398.39c) 13:36:41:525 LoadUserProfile: lpProfileInfo->lpUserName = <jen2>
USERENV(398.39c) 13:36:41:525 LoadUserProfile: lpProfileInfo->lpProfilePath = <\\Dell\Public\Profiles\Jennifer>
USERENV(398.39c) 13:36:41:525 LoadUserProfile: lpProfileInfo->lpDefaultPath = <\\DELL\netlogon\Default User>
USERENV(398.39c) 13:36:41:525 LoadUserProfile: NULL server name
USERENV(398.39c) 13:36:41:525 LoadUserProfile: User sid: S-1-5-21-1408492126-1867152476-2230165497-1122
USERENV(398.39c) 13:36:41:525 CSyncManager::EnterLock <S-1-5-21-1408492126-1867152476-2230165497-1122>
USERENV(398.39c) 13:36:41:525 CSyncManager::EnterLock: No existing entry found
USERENV(398.39c) 13:36:41:525 CSyncManager::EnterLock: New entry created
USERENV(398.39c) 13:36:41:525 CHashTable::HashAdd: S-1-5-21-1408492126-1867152476-2230165497-1122 added in bucket 14
USERENV(398.39c) 13:36:41:525 LoadUserProfile: Wait succeeded. In critical section.
USERENV(398.39c) 13:36:41:650 GetOldSidString:  Failed to open profile profile guid key with error 2
USERENV(398.39c) 13:36:41:666 GetProfileSid: No Guid -> Sid Mapping available
USERENV(398.39c) 13:36:41:666 GetOldSidString:  Failed to open profile profile guid key with error 2
USERENV(398.39c) 13:36:41:666 GetProfileSid: No Guid -> Sid Mapping available
USERENV(398.39c) 13:36:41:666 LoadUserProfile: Expanded profile path is \\Dell\Public\Profiles\Jennifer
USERENV(398.39c) 13:36:41:666 ParseProfilePath: Entering, lpProfilePath = <\\Dell\Public\Profiles\Jennifer>
USERENV(398.39c) 13:36:41:666 CheckXForestLogon: checking x-forest logon, user handle = 2652
USERENV(398.39c) 13:36:41:666 CheckXForestLogon: not XForest logon.
USERENV(398.39c) 13:36:41:681 AbleToBypassCSC: Try to bypass CSC
USERENV(398.39c) 13:36:41:713 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:36:41:728 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:36:41:759 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:36:41:775 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:36:41:806 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:36:41:822 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:36:41:853 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:36:41:869 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:36:41:900 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 2109
USERENV(398.39c) 13:36:41:900 AbleToBypassCSC: Share \\Dell\Public mapped to drive M. Returned Path M:\Profiles\Jennifer
USERENV(398.39c) 13:36:41:900 ParseProfilePath: CSC bypassed. Profile path M:\Profiles\Jennifer
USERENV(398.39c) 13:36:41:900 ParseProfilePath: Tick Count = 0
USERENV(398.39c) 13:36:41:900 PingComputer: Adapter speed 100000000 bps
USERENV(398.39c) 13:36:41:916 PingComputer:  First time:  0
USERENV(398.39c) 13:36:41:916 PingComputer:  Fast link.  Exiting.
USERENV(398.39c) 13:36:41:916 ParseProfilePath: GetFileAttributes found something with attributes <0x30>
USERENV(398.39c) 13:36:41:916 ParseProfilePath: Found a directory
USERENV(398.39c) 13:36:41:916 LoadUserProfile: ParseProfilePath returned a directory of <M:\Profiles\Jennifer>
USERENV(398.39c) 13:36:41:916 RestoreUserProfile:  Entering
USERENV(398.39c) 13:36:41:916 IsCentralProfileReachable:  Entering
USERENV(398.39c) 13:36:41:916 CheckRoamingShareOwnership: checking ownership for M:\Profiles\Jennifer
USERENV(398.39c) 13:36:41:931 CheckRoamingShareOwnership: owner is admin
USERENV(398.39c) 13:36:41:931 IsCentralProfileReachable:  Testing <M:\Profiles\Jennifer\ntuser.man>
USERENV(398.39c) 13:36:41:931 IsCentralProfileReachable:  Profile is not reachable, error = 2
USERENV(398.39c) 13:36:41:931 IsCentralProfileReachable:  Testing <M:\Profiles\Jennifer\ntuser.dat>
USERENV(398.39c) 13:36:41:947 IsCentralProfileReachable:  Found a user profile.
USERENV(398.39c) 13:36:41:947 RestoreUserProfile:  Central Profile is reachable
USERENV(398.39c) 13:36:41:947 RestoreUserProfile:  Central Profile is roaming
USERENV(398.39c) 13:36:41:947 RestoreUserProfile:  Profile path = <M:\Profiles\Jennifer>
USERENV(398.39c) 13:36:41:947 ExtractProfileFromBackup:  Failed to open key Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-1408492126-1867152476-2230165497-1122 with error 2
USERENV(398.39c) 13:36:41:947 ExtractProfileFromBackup:  Couldn't open backup profile key.  Error = 2
USERENV(398.39c) 13:36:41:947 GetOldSidString:  Failed to open profile profile guid key with error 2
USERENV(398.39c) 13:36:41:947 PatchNewProfileIfRequred: No OldSidString found
USERENV(398.39c) 13:36:41:963 CreateLocalProfileKey:  Not setting additional Security
USERENV(398.39c) 13:36:41:963 CreateLocalProfileImage:  One way or another we haven't got an existing local profile, try and create one
USERENV(398.39c) 13:36:41:963 CreateSecureDirectory: Entering with <C:\Documents and Settings\jen2>
USERENV(398.39c) 13:36:41:963 CreateSecureDirectory: Created the directory <C:\Documents and Settings\jen2>
USERENV(398.39c) 13:36:41:963 ComputeLocalProfileName: generated the profile directory <C:\Documents and Settings\jen2>
USERENV(398.39c) 13:36:41:963 Creating Local Profile
USERENV(398.39c) 13:36:41:963 Local profile name is <C:\Documents and Settings\jen2>
USERENV(398.39c) 13:36:41:963 RestoreUserProfile:  Reconciling roaming profile with local profile
USERENV(398.39c) 13:36:41:963 GetExclusionList: Failed to get file size of <M:\Profiles\Jennifer\ntuser.ini>
USERENV(398.39c) 13:36:41:978 TouchLocalHive: Failed to query central profile with error 2
USERENV(398.39c) 13:36:41:978 CopyProfileDirectoryEx: Entering, lpSourceDir = <M:\Profiles\Jennifer>, lpDestinationDir = <C:\Documents and Settings\jen2>, dwFlags = 0x4000

USERENV(398.39c) 13:36:42:384 FindTotalDiskSpaceNeeded: Largest 7 file size is 33037202
USERENV(398.39c) 13:36:42:384 Available            -1150169088
USERENV(398.39c) 13:36:42:384 Needed            84529080
USERENV(398.39c) 13:36:42:384 Src size            43807417
USERENV(398.39c) 13:36:42:384 Dest size            0
USERENV(398.39c) 13:36:42:384 Largest hive file            1310720
USERENV(398.39c) 13:36:42:384 CopyProfileDirectoryEx: Found hive file ntuser.dat
USERENV(398.39c) 13:36:42:572 ReconcileFile: M:\Profiles\Jennifer\ntuser.dat ==> C:\Documents and Settings\jen2\ntuser.dat  [OK]
USERENV(398.39c) 13:36:42:572 CopyProfileDirectoryEx: Calling ReconcileDirectory for all Directories
USERENV(398.39c) 13:36:43:728 CopyProfileDirectoryEx: Reconcile Directory Done for all Directories

USERENV(398.39c) 13:36:49:244 CopyProfileDirectoryEx: Setting Directory TimeStamps all Directories
USERENV(398.39c) 13:36:49:275 CopyProfileDirectoryEx: Set times on all directories
USERENV(398.39c) 13:36:49:291 CopyProfileDirectoryEx: Leaving with a return value of 1
USERENV(398.39c) 13:36:49:291 MyRegLoadKey: Returning 00000000
USERENV(398.39c) 13:36:49:307 MyRegLoadKey: Returning 00000000
USERENV(398.39c) 13:36:49:307 CreateClassHive: existing user classes hive not found
USERENV(398.39c) 13:36:49:307 SetDefaultUserHiveSecurity:  Entering
USERENV(398.39c) 13:36:49:307 RestoreUserProfile:  About to Leave.  Final Information follows:
USERENV(398.39c) 13:36:49:307 Profile was successfully loaded.
USERENV(398.39c) 13:36:49:307 lpProfile->lpRoamingProfile = <M:\Profiles\Jennifer>
USERENV(398.39c) 13:36:49:322 lpProfile->lpLocalProfile = <C:\Documents and Settings\jen2>
USERENV(398.39c) 13:36:49:322 lpProfile->dwInternalFlags = 0x14
USERENV(398.39c) 13:36:49:322 RestoreUserProfile:  Leaving.
USERENV(398.39c) 13:36:49:322 UpgradeProfile: Entering
USERENV(398.39c) 13:36:49:322 UpgradeProfile: Build numbers match
USERENV(398.39c) 13:36:49:322 UpgradeProfile: Leaving Successfully
USERENV(398.39c) 13:36:49:338 Profile Ref Count is 1
USERENV(398.39c) 13:36:49:338 LoadUserProfile: Leaving critical Section.
USERENV(398.39c) 13:36:49:338 CSyncManager::LeaveLock <S-1-5-21-1408492126-1867152476-2230165497-1122>
USERENV(398.39c) 13:36:49:338 CSyncManager::LeaveLock: Lock released
USERENV(398.39c) 13:36:49:338 CHashTable::HashDelete: S-1-5-21-1408492126-1867152476-2230165497-1122 deleted
USERENV(398.39c) 13:36:49:338 CSyncManager::LeaveLock: Lock deleted
USERENV(398.39c) 13:36:49:338 LoadUserProfile: Impersonated user: 00000a5c, 00000000
USERENV(398.39c) 13:36:49:338 LoadUserProfile: Reverted to user: 00000000
USERENV(398.39c) 13:36:49:338 CancelCSCBypassedConnection: Cancelling connection of M:
USERENV(398.39c) 13:36:49:369 CancelCSCBypassedConnection: Connection deleted.
USERENV(398.39c) 13:36:49:369 LoadUserProfile: Leaving with a value of 1.
USERENV(398.39c) 13:36:49:369 =========================================================
USERENV(398.39c) 13:36:49:369 LoadUserProfile: LoadUserProfileP succeeded
USERENV(398.39c) 13:36:49:369 LoadUserProfile:  Returning success.  Final Information follows:
USERENV(398.39c) 13:36:49:369 lpProfileInfo->UserName = <jen2>
USERENV(398.39c) 13:36:49:369 lpProfileInfo->lpProfilePath = <\\Dell\Public\Profiles\Jennifer>
USERENV(398.39c) 13:36:49:369 lpProfileInfo->dwFlags = 0x0
USERENV(398.39c) 13:36:49:385 LoadUserProfile: Returning TRUE. hProfile = <0x5d0>
USERENV(398.39c) 13:36:49:400 IsSyncForegroundPolicyRefresh: Synchronous, Reason: FirstPolicyRefresh
USERENV(398.2df4) 13:36:49:400 IsSyncForegroundPolicyRefresh: Synchronous, Reason: FirstPolicyRefresh
USERENV(398.2df4) 13:36:49:650 ApplyGroupPolicy: Entering. Flags = 6
USERENV(398.2df4) 13:36:49:650 ProcessGPOs:
USERENV(398.2df4) 13:36:49:650 ProcessGPOs:
USERENV(398.2df4) 13:36:49:650 ProcessGPOs: Starting user Group Policy (Background) processing...
USERENV(398.2df4) 13:36:49:650 ProcessGPOs:
USERENV(398.2df4) 13:36:49:650 ProcessGPOs:
USERENV(398.2df4) 13:36:49:650 EnterCriticalPolicySectionEx: Entering with timeout 600000 and flags 0x0
USERENV(398.2df4) 13:36:49:650 EnterCriticalPolicySectionEx: User critical section has been claimed.  Handle = 0x7a4
USERENV(398.2df4) 13:36:49:650 EnterCriticalPolicySectionEx: Leaving successfully.
USERENV(398.2df4) 13:36:49:682 ProcessGPOs:  Machine role is 2.
USERENV(398.2df4) 13:36:49:697 PingComputer: Adapter speed 100000000 bps
USERENV(398.2df4) 13:36:49:697 PingComputer:  First time:  0
USERENV(398.2df4) 13:36:49:697 PingComputer:  Fast link.  Exiting.
USERENV(398.2df4) 13:36:49:697 ProcessGPOs:  User name is:  CN=Jen2,CN=Users,DC=Marmle,DC=com, Domain name is:  MARMLE
USERENV(398.2df4) 13:36:49:697 ProcessGPOs: Domain controller is:  \\dell.Marmle.com  Domain DN is Marmle.com
USERENV(398.2df4) 13:36:49:697 ReadGPExtensions: Rsop entry point not found for gptext.dll.
USERENV(398.2df4) 13:36:49:697 ReadGPExtensions: Rsop entry point not found for dskquota.dll.
USERENV(398.2df4) 13:36:49:697 ReadGPExtensions: Rsop entry point not found for gptext.dll.
USERENV(398.2df4) 13:36:49:697 ReadGPExtensions: Rsop entry point not found for iedkcs32.dll.
USERENV(398.2df4) 13:36:49:713 ReadGPExtensions: Rsop entry point not found for scecli.dll.
USERENV(398.2df4) 13:36:49:713 ReadGPExtensions: Rsop entry point not found for C:\WINDOWS\System32\cscui.dll.
USERENV(398.2df4) 13:36:49:713 ReadGPExtensions: Rsop entry point not found for gptext.dll.
USERENV(398.2df4) 13:36:49:713 ReadExtStatus: Reading Previous Status for extension {35378EAC-683F-11D2-A89A-00C04FBBCFA2}
USERENV(398.2df4) 13:36:49:713 ReadExtStatus: Reading Previous Status for extension {0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63}
USERENV(398.2df4) 13:36:49:713 ReadExtStatus: Reading Previous Status for extension {25537BA6-77A8-11D2-9B6C-0000F8080861}
USERENV(398.2df4) 13:36:49:713 ReadExtStatus: Reading Previous Status for extension {3610eda5-77ef-11d2-8dc5-00c04fa31a66}
USERENV(398.2df4) 13:36:49:713 ReadExtStatus: Reading Previous Status for extension {426031c0-0b47-4852-b0ca-ac3d37bfcb39}
USERENV(398.2df4) 13:36:49:713 ReadExtStatus: Reading Previous Status for extension {42B5FAAE-6536-11d2-AE5A-0000F87571E3}
USERENV(398.2df4) 13:36:49:713 ReadExtStatus: Reading Previous Status for extension {4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3}
USERENV(398.2df4) 13:36:49:713 ReadExtStatus: Reading Previous Status for extension {827D319E-6EAC-11D2-A4EA-00C04F79F83A}
USERENV(398.2df4) 13:36:49:728 ReadExtStatus: Reading Previous Status for extension {A2E30F80-D7DE-11d2-BBDE-00C04F86AE3B}
USERENV(398.2df4) 13:36:49:728 ReadExtStatus: Reading Previous Status for extension {B1BE8D72-6EAC-11D2-A4EA-00C04F79F83A}
USERENV(398.2df4) 13:36:49:728 ReadExtStatus: Reading Previous Status for extension {C631DF4C-088F-4156-B058-4375F0853CD8}
USERENV(398.2df4) 13:36:49:728 ReadExtStatus: Reading Previous Status for extension {c6dc5466-785a-11d2-84d0-00c04fb169f7}
USERENV(398.2df4) 13:36:49:728 ReadExtStatus: Reading Previous Status for extension {e437bc1c-aa7d-11d2-a382-00c04f991e27}
USERENV(398.2df4) 13:36:49:728 ProcessGPOs: Calling GetGPOInfo for normal policy mode
USERENV(398.2df4) 13:36:49:728 GetGPOInfo:  ********************************
USERENV(398.2df4) 13:36:49:728 GetGPOInfo:  Entering...
USERENV(398.2df4) 13:36:49:728 GetGPOInfo:  Server connection established.
USERENV(398.2df4) 13:36:49:744 GetGPOInfo:  Bound successfully.
USERENV(398.2df4) 13:36:49:744 SearchDSObject:  Searching <DC=Marmle,DC=com>
USERENV(398.2df4) 13:36:49:744 SearchDSObject:  Found GPO(s):  < >
USERENV(398.2df4) 13:36:49:744 SearchDSObject:  Searching <CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=Marmle,DC=com>
USERENV(398.2df4) 13:36:49:760 SearchDSObject:  No GPO(s) for this object.
USERENV(398.2df4) 13:36:49:760 GetGPOInfo:  Leaving with 1
USERENV(398.2df4) 13:36:49:760 GetGPOInfo:  ********************************
USERENV(398.2df4) 13:36:49:760 ReadMembershipList: Old count 7 is different from current count 6
USERENV(398.2df4) 13:36:49:760 ProcessGPOs: Logging Data for Target <jen2>.
USERENV(398.2df4) 13:36:49:760 GetWbemServices: CoCreateInstance succeeded
USERENV(398.2df4) 13:36:49:775 ConnectToNameSpace: ConnectServer returned 0x8004100e
USERENV(398.2df4) 13:36:49:775 ConnectToNameSpace: ConnectServer failed with 0x8004100e, trying to recreate the name space
USERENV(398.2df4) 13:36:49:853 LogExtSessionStatus: Successfully logged Extension Session data
USERENV(398.2df4) 13:36:49:853 CSessionLogger::Log: Get failed. hr=0x00000000.
USERENV(398.2df4) 13:36:49:853 CSessionLogger::Log: logging new security grps
USERENV(398.2df4) 13:36:49:869 LogRsopData: Successfully logged Rsop data
USERENV(398.2df4) 13:36:49:869 ProcessGPOs: Logged Rsop Data successfully.
USERENV(398.2df4) 13:36:49:869 ProcessGPOs: OpenThreadToken failed with error 1008, assuming thread is not impersonating
USERENV(398.2df4) 13:36:49:885 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:885 ProcessGPOs: Processing extension Registry
USERENV(398.2df4) 13:36:49:885 CompareGPOLists:  One list is empty
USERENV(398.2df4) 13:36:49:885 ProcessGPOList: Entering for extension Registry
USERENV(398.2df4) 13:36:49:885 UserPolicyCallback: Setting status UI to Applying Registry policy...
USERENV(398.2df4) 13:36:49:885 LogExtSessionStatus: Successfully logged Extension Session data
USERENV(398.2df4) 13:36:49:885 EnterCriticalPolicySectionEx: Entering with timeout 60000 and flags 0x2
USERENV(398.2df4) 13:36:49:885 EnterCriticalPolicySectionEx: User critical section has been claimed.  Handle = 0x618
USERENV(398.2df4) 13:36:49:900 EnterCriticalPolicySectionEx: Leaving successfully.
USERENV(398.2df4) 13:36:49:900 ResetPolicies: Entering.
USERENV(398.2df4) 13:36:49:900 ParseRegistryFile: Entering with <C:\Documents and Settings\jen2\ntuser.pol>.
USERENV(398.2df4) 13:36:49:900 ParseRegistryFile: Leaving.
USERENV(398.2df4) 13:36:49:900 ResetPolicies: Leaving.
USERENV(398.2df4) 13:36:49:900 ParseRegistryFile: Entering with <C:\WINDOWS\System32\GroupPolicy\User\registry.pol>.
USERENV(398.2df4) 13:36:49:900 SetRegistryValue: ForceClassicControlPanel => 1  [OK]
USERENV(398.2df4) 13:36:49:900 SetRegistryValue: AEPolicy => 0  [OK]
USERENV(398.2df4) 13:36:49:900 ParseRegistryFile: Leaving.
USERENV(398.2df4) 13:36:49:900 AllocAdmFileInfo: Adding File name <C:\WINDOWS\System32\GroupPolicy\Adm\conf.adm> to the Adm list.
USERENV(398.2df4) 13:36:49:900 MakePathUNC: Entering with <C:\WINDOWS\System32\GroupPolicy\Adm\conf.adm>
USERENV(398.2df4) 13:36:49:916 MakePathUNC: Returning a UNCPath of \\AMDX2\admin$\System32\GroupPolicy\Adm\conf.adm
USERENV(398.2df4) 13:36:49:916 AllocAdmFileInfo: Adding File name <C:\WINDOWS\System32\GroupPolicy\Adm\inetres.adm> to the Adm list.
USERENV(398.2df4) 13:36:49:916 MakePathUNC: Entering with <C:\WINDOWS\System32\GroupPolicy\Adm\inetres.adm>
USERENV(398.2df4) 13:36:49:916 MakePathUNC: Returning a UNCPath of \\AMDX2\admin$\System32\GroupPolicy\Adm\inetres.adm
USERENV(398.2df4) 13:36:49:916 AllocAdmFileInfo: Adding File name <C:\WINDOWS\System32\GroupPolicy\Adm\system.adm> to the Adm list.
USERENV(398.2df4) 13:36:49:916 MakePathUNC: Entering with <C:\WINDOWS\System32\GroupPolicy\Adm\system.adm>
USERENV(398.2df4) 13:36:49:916 MakePathUNC: Returning a UNCPath of \\AMDX2\admin$\System32\GroupPolicy\Adm\system.adm
USERENV(398.2df4) 13:36:49:916 AllocAdmFileInfo: Adding File name <C:\WINDOWS\System32\GroupPolicy\Adm\wmplayer.adm> to the Adm list.
USERENV(398.2df4) 13:36:49:916 MakePathUNC: Entering with <C:\WINDOWS\System32\GroupPolicy\Adm\wmplayer.adm>
USERENV(398.2df4) 13:36:49:916 MakePathUNC: Returning a UNCPath of \\AMDX2\admin$\System32\GroupPolicy\Adm\wmplayer.adm
USERENV(398.2df4) 13:36:49:916 AllocAdmFileInfo: Adding File name <C:\WINDOWS\System32\GroupPolicy\Adm\wuau.adm> to the Adm list.
USERENV(398.2df4) 13:36:49:916 MakePathUNC: Entering with <C:\WINDOWS\System32\GroupPolicy\Adm\wuau.adm>
USERENV(398.2df4) 13:36:49:932 MakePathUNC: Returning a UNCPath of \\AMDX2\admin$\System32\GroupPolicy\Adm\wuau.adm
USERENV(398.2df4) 13:36:49:932 LogRegistry RsopData: Successfully logged registry Rsop data
USERENV(398.2df4) 13:36:49:932 CAdmFileLogger::Log: Logging \\AMDX2\admin$\System32\GroupPolicy\Adm\wuau.adm
USERENV(398.2df4) 13:36:49:932 CAdmFileLogger::Log: Logging \\AMDX2\admin$\System32\GroupPolicy\Adm\wmplayer.adm
USERENV(398.2df4) 13:36:49:932 CAdmFileLogger::Log: Logging \\AMDX2\admin$\System32\GroupPolicy\Adm\system.adm
USERENV(398.2df4) 13:36:49:947 CAdmFileLogger::Log: Logging \\AMDX2\admin$\System32\GroupPolicy\Adm\inetres.adm
USERENV(398.2df4) 13:36:49:947 CAdmFileLogger::Log: Logging \\AMDX2\admin$\System32\GroupPolicy\Adm\conf.adm
USERENV(398.2df4) 13:36:49:947 LogAdmRsopData: Successfully logged Adm data
USERENV(398.2df4) 13:36:49:947 LeaveCriticalPolicySection: Critical section 0x618 has been released.
USERENV(398.2df4) 13:36:49:947 ProcessGPOList: Extension Registry was able to log data. RsopStatus = 0x0, dwRet = 0, Clearing the dirty bit
USERENV(398.2df4) 13:36:49:947 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:947 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:947 ProcessGPOs: Processing extension Wireless
USERENV(398.2df4) 13:36:49:947 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:963 ProcessGPOs: Extension Wireless skipped with flags 0x6.
USERENV(398.2df4) 13:36:49:963 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:963 ProcessGPOs: Processing extension Folder Redirection
USERENV(398.2df4) 13:36:49:963 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:963 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:963 ProcessGPOs: Extension Folder Redirection skipped because both deleted and changed GPO lists are empty.
USERENV(398.2df4) 13:36:49:963 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:963 ProcessGPOs: Processing extension Microsoft Disk Quota
USERENV(398.2df4) 13:36:49:963 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:963 ProcessGPOs: Extension Microsoft Disk Quota skipped with flags 0x6.
USERENV(398.2df4) 13:36:49:963 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:963 ProcessGPOs: Processing extension QoS Packet Scheduler
USERENV(398.2df4) 13:36:49:978 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:978 ProcessGPOs: Extension QoS Packet Scheduler skipped with flags 0x6.
USERENV(398.2df4) 13:36:49:978 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:978 ProcessGPOs: Processing extension Scripts
USERENV(398.2df4) 13:36:49:978 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:978 ProcessGPOs: Extension Scripts skipped because both deleted and changed GPO lists are empty.
USERENV(398.2df4) 13:36:49:978 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:978 ProcessGPOs: Processing extension Internet Explorer Zonemapping
USERENV(398.2df4) 13:36:49:978 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:978 ProcessGPOs: Extension Internet Explorer Zonemapping skipped because both deleted and changed GPO lists are empty.
USERENV(398.2df4) 13:36:49:978 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:978 ProcessGPOs: Processing extension Security
USERENV(398.2df4) 13:36:49:978 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: Extension Security skipped with flags 0x6.
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: Processing extension Internet Explorer Branding
USERENV(398.2df4) 13:36:49:994 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: Extension Internet Explorer Branding skipped because both deleted and changed GPO lists are empty.
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: Processing extension EFS recovery
USERENV(398.2df4) 13:36:49:994 CompareGPOLists:  One list is empty
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: Extension EFS recovery skipped with flags 0x6.
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: Processing extension Microsoft Offline Files
USERENV(398.2df4) 13:36:49:994 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:49:994 ProcessGPOs: Extension Microsoft Offline Files skipped with flags 0x6.
USERENV(398.2df4) 13:36:50:010 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:50:010 ProcessGPOs: Processing extension Software Installation
USERENV(398.2df4) 13:36:50:010 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:50:010 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:50:010 ProcessGPOs: Extension Software Installation skipped because both deleted and changed GPO lists are empty.
USERENV(398.2df4) 13:36:50:010 ProcessGPOs: -----------------------
USERENV(398.2df4) 13:36:50:010 ProcessGPOs: Processing extension IP Security
USERENV(398.2df4) 13:36:50:010 CompareGPOLists:  The lists are the same.
USERENV(398.2df4) 13:36:50:010 ProcessGPOs: Extension IP Security skipped with flags 0x6.
USERENV(398.2df4) 13:36:50:010 SetFgRefreshInfo: Previous User Fg policy Synchronous, Reason: FirstPolicyRefresh.
USERENV(398.2df4) 13:36:50:010 SetFgRefreshInfo: Next User Fg policy Asynchronous, Reason: NoNeedForSync.
USERENV(398.2df4) 13:36:50:025 LeaveCriticalPolicySection: Critical section 0x7a4 has been released.
USERENV(398.2df4) 13:36:50:025 ProcessGPOs: User Group Policy has been applied.
USERENV(398.2bd4) 13:36:50:025 PolicyChangedThread: Calling UpdateUser with 0.
USERENV(398.2df4) 13:36:50:025 ProcessGPOs: Leaving with 1.
USERENV(398.2bd4) 13:36:50:025 PolicyChangedThread: UpdateUser failed with 1008.
USERENV(398.2df4) 13:36:50:025 ApplyGroupPolicy: Leaving successfully.
USERENV(398.2628) 13:36:50:025 GPOThread:  Next refresh will happen in 115 minutes
USERENV(398.2bd4) 13:36:50:025 PolicyChangedThread: Broadcast message for 0.
USERENV(398.2bd4) 13:36:50:057 PolicyChangedThread: Leaving
USERENV(398.39c) 13:36:50:088 IsSyncForegroundPolicyRefresh: Asynchronous, Reason: NoNeedForSync
USERENV(1960.29f0) 13:36:50:150 LibMain: Process Name:  C:\WINDOWS\system32\userinit.exe
USERENV(2fc0.2e78) 13:36:50:260 LibMain: Process Name:  C:\WINDOWS\Explorer.EXE
USERENV(2fc0.2c60) 13:36:50:369 GetProfileType:  Profile is not loaded.
USERENV(2fc0.2c60) 13:36:50:369 GetProfileType:  Profile is not loaded.
USERENV(2754.291c) 13:36:55:463 LibMain: Process Name:  C:\WINDOWS\system32\imapi.exe
USERENV(1ae4.2130) 13:37:05:042 LibMain: Process Name:  C:\WINDOWS\system32\userinit.exe
USERENV(398.39c) 13:37:17:151 UnloadUserProfile: Entering, hProfile = <0x5d0>
USERENV(398.39c) 13:37:17:151 UnloadUserProfile: In console winlogon process
USERENV(398.39c) 13:37:17:151 UnloadUserProfileP: Entering, hProfile = <0x5d0>
USERENV(398.39c) 13:37:17:151 AbleToBypassCSC: Try to bypass CSC
USERENV(398.39c) 13:37:17:183 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:37:17:198 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:37:17:230 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:37:17:245 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:37:17:276 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:37:17:292 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:37:17:323 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:37:17:339 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 85
USERENV(398.39c) 13:37:17:370 AbleToBypassCSC: tried NPAddConnection3ForCSCAgent. Error 2109
USERENV(398.39c) 13:37:17:370 AbleToBypassCSC: Share \\Dell\Public mapped to drive M. Returned Path M:\Profiles\Jennifer
USERENV(398.39c) 13:37:17:370 UnLoadUserProfileP: CSC bypassed.
USERENV(398.39c) 13:37:17:370 GetExclusionListFromRegistry: Policy list is empty, returning user list = <Local Settings;Temporary Internet Files;History;Temp;Local Settings\Application Data\Microsoft\Outlook>
USERENV(398.39c) 13:37:17:386 CSyncManager::EnterLock <S-1-5-21-1408492126-1867152476-2230165497-1122>
USERENV(398.39c) 13:37:17:386 CSyncManager::EnterLock: No existing entry found
USERENV(398.39c) 13:37:17:386 CSyncManager::EnterLock: New entry created
USERENV(398.39c) 13:37:17:386 CHashTable::HashAdd: S-1-5-21-1408492126-1867152476-2230165497-1122 added in bucket 14
USERENV(398.39c) 13:37:17:386 UnloadUserProfileP: Wait succeeded.  In critical section.
USERENV(398.39c) 13:37:17:417 MyRegUnLoadKey: Returning 1.
USERENV(398.39c) 13:37:17:417 UnloadUserProfileP:  Succesfully unloaded profile
USERENV(398.39c) 13:37:17:433 MyRegUnLoadKey: Returning 1.
USERENV(398.39c) 13:37:17:433 UnLoadClassHive: Successfully unmounted S-1-5-21-1408492126-1867152476-2230165497-1122_Classes
USERENV(398.39c) 13:37:17:433 UnloadUserProfileP:  Successfully unloaded user classes
USERENV(398.39c) 13:37:17:433 UnloadUserProfileP: Impersonated user
USERENV(398.39c) 13:37:17:448 UnloadUserProfileP:  Copying profile back to M:\Profiles\Jennifer
USERENV(398.39c) 13:37:17:448 UnloadUserProfileP: Tick Count = 0
USERENV(398.39c) 13:37:17:448 PingComputer: Adapter speed 100000000 bps
USERENV(398.39c) 13:37:17:448 PingComputer:  First time:  0
USERENV(398.39c) 13:37:17:448 PingComputer:  Fast link.  Exiting.
USERENV(398.39c) 13:37:17:448 SetNtUserPolTime: succeed
USERENV(398.39c) 13:37:17:448 CopyProfileDirectoryEx: Entering, lpSourceDir = <C:\Documents and Settings\jen2>, lpDestinationDir = <M:\Profiles\Jennifer>, dwFlags = 0x6c20
USERENV(398.39c) 13:37:17:448 CopyProfileDirectoryEx: lpExclusionList = <Local Settings;Temporary Internet Files;History;Temp;Local Settings\Application Data\Microsoft\Outlook>
USERENV(398.39c) 13:37:17:464 ConvertExclusionList: Adding C:\Documents and Settings\jen2\Local Settings to ExclusionList
USERENV(398.39c) 13:37:17:464 ConvertExclusionList: Adding C:\Documents and Settings\jen2\Temporary Internet Files to ExclusionList
USERENV(398.39c) 13:37:17:464 ConvertExclusionList: Adding C:\Documents and Settings\jen2\History to ExclusionList
USERENV(398.39c) 13:37:17:464 ConvertExclusionList: Adding C:\Documents and Settings\jen2\Temp to ExclusionList
USERENV(398.39c) 13:37:17:464 ConvertExclusionList: Adding C:\Documents and Settings\jen2\Local Settings\Application Data\Microsoft\Outlook to ExclusionList

USERENV(398.39c) 13:37:17:620 RecurseDirectory: Skipping <C:\Documents and Settings\jen2\Local Settings> due to exclusion list.

USERENV(398.39c) 13:37:18:026 FindTotalDiskSpaceNeeded: Largest 7 file size is 33037202
USERENV(398.39c) 13:37:18:026 Available            -656224256
USERENV(398.39c) 13:37:18:026 Needed            36343210
USERENV(398.39c) 13:37:18:026 Src size            43809497
USERENV(398.39c) 13:37:18:026 Dest size            43807417
USERENV(398.39c) 13:37:18:026 Largest hive file            1310720
USERENV(398.39c) 13:37:18:042 CopyProfileDirectoryEx: Found hive file ntuser.dat
USERENV(398.39c) 13:37:18:042 ReconcileFile: GetTempFileName failed with 5
USERENV(398.39c) 13:37:18:042 CopyProfileDirectoryEx: ReconcileFile failed with error = 5
USERENV(398.39c) 13:37:18:042 ReportError: Impersonating user.
USERENV(398.39c) 13:37:18:042 GetShareName: WNetGetConnection initially returned error 2250
USERENV(398.39c) 13:37:18:058 CopyProfileDirectoryEx: Leaving with a return value of 0
USERENV(398.39c) 13:37:18:058 UnloadUserProfileP:  CopyProfileDirectory returned FALSE for primary profile.  Error = 5
USERENV(398.39c) 13:37:18:058 ReportError: Impersonating user.
USERENV(398.39c) 13:37:18:058 ReportError: Logging Error <Windows cannot update your roaming profile. Possible causes of this error include network problems or insufficient security rights. If this problem persists, contact your network administrator.



U