Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The Windows logon process has failed to spawn a user application. Application name: . Command line parameters: c:\windows\system32\userinit.exe.
|English: Request a translation of the event description in plain English.|
See the "Vista or Server2008 stuck at a black screen and the desktop never renders" blog entry for some details about this problem. You can solve this by adding the NT Authority\Interactive in the local users group on Windows 2008.
One newsgroup post claims that the cause appears to be related to User Account Control (UAC). The suggested workaround is to disable UAC. This solution did work for me but I prefer to use UAC.
This issue occurs if the Userinit key in the Windows registry has been modified. For example, this issue may occur if the Userinit key has a value but no binary data. See ME929825 to solve this problem.
|Private comment: Subscribers only. See example of private comment|
|Links: ME929825, Vista or Server2008 stuck at a black screen and the desktop never renders|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
|Custom search for *****: Google - Bing - Microsoft - Yahoo|
Send comments or solutions
- Notify me when updated