OK, this is one of the thorniest update problems...I am using WSUS on the network, and all of my updates on my desktop client are running, except for KB2847927 ...it keeps failing. I have cleaned up any Trojan/viruses, I have run a chkdsk /r, I have
done all of the recommended fixes to correct my antivirus problems (McAfee), and fixed my Windows Firewall (and related Base Filtering Engine Service). I have run recommended subinacl.exe fix (as admin), and it apparently fixed some things, but here's
what it said after running in the command shell:
************
HKEY_CLASSES_ROOT\X509Enrollment.CX509PolicyServerUrl.1 - RegSetKeySecurity Erro
r : 5 Access is denied.
X509Enrollment.CX509PolicyServerUrl.1\CLSID : delete Perm. ACE 3 nt authority\sy
stem
X509Enrollment.CX509PolicyServerUrl.1\CLSID : delete Perm. ACE 2 nt authority\sy
stem
X509Enrollment.CX509PolicyServerUrl.1\CLSID : new ace for nt authority\system
HKEY_CLASSES_ROOT\X509Enrollment.CX509PolicyServerUrl.1\CLSID - RegSetKeySecurit
y Error : 5 Access is denied.
X509Enrollment.CX509PrivateKey : delete Perm. ACE 3 nt authority\system
X509Enrollment.CX509PrivateKey : delete Perm. ACE 2 nt authority\system
X509Enrollment.CX509PrivateKey : new ace for nt authority\system
HKEY_CLASSES_ROOT\X509Enrollment.CX509PrivateKey - RegSetKeySecurity Error : 5 A
ccess is denied.
X509Enrollment.CX509PrivateKey\CurVer : delete Perm. ACE 3 nt authority\system
X509Enrollment.CX509PrivateKey\CurVer : delete Perm. ACE 2 nt authority\system
X509Enrollment.CX509PrivateKey\CurVer : new ace for nt authority\system
HKEY_CLASSES_ROOT\X509Enrollment.CX509PrivateKey\CurVer - RegSetKeySecurity Erro
r : 5 Access is denied.
X509Enrollment.CX509PrivateKey.1 : delete Perm. ACE 3 nt authority\system
X509Enrollment.CX509PrivateKey.1 : delete Perm. ACE 2 nt authority\system
X509Enrollment.CX509PrivateKey.1 : new ace for nt authority\system
HKEY_CLASSES_ROOT\X509Enrollment.CX509PrivateKey.1 - RegSetKeySecurity Error : 5
Access is denied.
X509Enrollment.CX509PrivateKey.1\CLSID : delete Perm. ACE 3 nt authority\system
X509Enrollment.CX509PrivateKey.1\CLSID : delete Perm. ACE 2 nt authority\system
X509Enrollment.CX509PrivateKey.1\CLSID : new ace for nt authority\system
HKEY_CLASSES_ROOT\X509Enrollment.CX509PrivateKey.1\CLSID - RegSetKeySecurity Err
or : 5 Access is denied.
X509Enrollment.CX509PublicKey : delete Perm. ACE 3 nt authority\system
X509Enrollment.CX509PublicKey : delete Perm. ACE 2 nt authority\system
X509Enrollment.CX509PublicKey : new ace for nt authority\system
HKEY_CLASSES_ROOT\X509Enrollment.CX509PublicKey - RegSetKeySecurity Error : 5 Ac
cess is denied.
X509Enrollment.CX509PublicKey\CurVer : delete Perm. ACE 3 nt authority\system
X509Enrollment.CX509PublicKey\CurVer : delete Perm. ACE 2 nt authority\system
X509Enrollment.CX509PublicKey\CurVer : new ace for nt authority\system
HKEY_CLASSES_ROOT\X509Enrollment.CX509PublicKey\CurVer - RegSetKeySecurity Error
: 5 Access is denied.
X509Enrollment.CX509PublicKey.1 : delete Perm. ACE 3 nt authority\system
X509Enrollment.CX509PublicKey.1 : delete Perm. ACE 2 nt authority\system
X509Enrollment.CX509PublicKey.1 : new ace for nt authority\system
HKEY_CLASSES_ROOT\X509Enrollment.CX509PublicKey.1 - RegSetKeySecurity Error : 5
Access is denied.
X509Enrollment.CX509PublicKey.1\CLSID : delete Perm. ACE 3 nt authority\system
X509Enrollment.CX509PublicKey.1\CLSID : delete Perm. ACE 2 nt authority\system
X509Enrollment.CX509PublicKey.1\CLSID : new ace for nt authority\system
HKEY_CLASSES_ROOT\X509Enrollment.CX509PublicKey.1\CLSID - RegSetKeySecurity Erro
r : 5 Access is denied.
XEV.FailSafeApp : delete Perm. ACE 1 nt authority\system
XEV.FailSafeApp : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.FailSafeApp : 2 change(s)
XEV.FailSafeApp\DefaultIcon : delete Perm. ACE 1 nt authority\system
XEV.FailSafeApp\DefaultIcon : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.FailSafeApp\DefaultIcon : 2 change(s)
XEV.FailSafeApp\shell : delete Perm. ACE 1 nt authority\system
XEV.FailSafeApp\shell : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.FailSafeApp\shell : 2 change(s)
XEV.FailSafeApp\shell\open : delete Perm. ACE 1 nt authority\system
XEV.FailSafeApp\shell\open : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.FailSafeApp\shell\open : 2 change(s)
XEV.FailSafeApp\shell\open\command : delete Perm. ACE 1 nt authority\system
XEV.FailSafeApp\shell\open\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.FailSafeApp\shell\open\command : 2 change(s)
XEV.GenericApp : delete Perm. ACE 1 nt authority\system
XEV.GenericApp : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.GenericApp : 2 change(s)
XEV.GenericApp\DefaultIcon : delete Perm. ACE 1 nt authority\system
XEV.GenericApp\DefaultIcon : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.GenericApp\DefaultIcon : 2 change(s)
XEV.GenericApp\shell : delete Perm. ACE 1 nt authority\system
XEV.GenericApp\shell : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.GenericApp\shell : 2 change(s)
XEV.GenericApp\shell\open : delete Perm. ACE 1 nt authority\system
XEV.GenericApp\shell\open : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.GenericApp\shell\open : 2 change(s)
XEV.GenericApp\shell\open\command : delete Perm. ACE 1 nt authority\system
XEV.GenericApp\shell\open\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.GenericApp\shell\open\command : 2 change(s)
XEV.GenericApp\shell\open\ddeexec : delete Perm. ACE 1 nt authority\system
XEV.GenericApp\shell\open\ddeexec : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.GenericApp\shell\open\ddeexec : 2 change(s)
XEV.GenericApp\shell\open\ddeexec\application : delete Perm. ACE 1 nt authority\
system
XEV.GenericApp\shell\open\ddeexec\application : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.GenericApp\shell\open\ddeexec\application : 2 change(s)
XEV.GenericApp\shell\open\ddeexec\topic : delete Perm. ACE 1 nt authority\system
XEV.GenericApp\shell\open\ddeexec\topic : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.GenericApp\shell\open\ddeexec\topic : 2 change(s)
XEV.OriginalApp : delete Perm. ACE 1 nt authority\system
XEV.OriginalApp : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.OriginalApp : 2 change(s)
XEV.OriginalApp\DefaultIcon : delete Perm. ACE 1 nt authority\system
XEV.OriginalApp\DefaultIcon : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.OriginalApp\DefaultIcon : 2 change(s)
XEV.OriginalApp\shell : delete Perm. ACE 1 nt authority\system
XEV.OriginalApp\shell : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.OriginalApp\shell : 2 change(s)
XEV.OriginalApp\shell\open : delete Perm. ACE 1 nt authority\system
XEV.OriginalApp\shell\open : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.OriginalApp\shell\open : 2 change(s)
XEV.OriginalApp\shell\open\command : delete Perm. ACE 1 nt authority\system
XEV.OriginalApp\shell\open\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.OriginalApp\shell\open\command : 2 change(s)
XEV.OriginalApp\shell\open\ddeexec : delete Perm. ACE 1 nt authority\system
XEV.OriginalApp\shell\open\ddeexec : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.OriginalApp\shell\open\ddeexec : 2 change(s)
XEV.OriginalApp\shell\open\ddeexec\application : delete Perm. ACE 1 nt authority
\system
XEV.OriginalApp\shell\open\ddeexec\application : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.OriginalApp\shell\open\ddeexec\application : 2 change(s)
XEV.OriginalApp\shell\open\ddeexec\topic : delete Perm. ACE 1 nt authority\syste
m
XEV.OriginalApp\shell\open\ddeexec\topic : new ace for nt authority\system
HKEY_CLASSES_ROOT\XEV.OriginalApp\shell\open\ddeexec\topic : 2 change(s)
xhtmlfile : delete Perm. ACE 1 nt authority\system
xhtmlfile : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile : 2 change(s)
xhtmlfile\CLSID : delete Perm. ACE 1 nt authority\system
xhtmlfile\CLSID : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\CLSID : 2 change(s)
xhtmlfile\shell : delete Perm. ACE 1 nt authority\system
xhtmlfile\shell : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\shell : 2 change(s)
xhtmlfile\shell\open : delete Perm. ACE 1 nt authority\system
xhtmlfile\shell\open : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\shell\open : 2 change(s)
xhtmlfile\shell\open\command : delete Perm. ACE 1 nt authority\system
xhtmlfile\shell\open\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\shell\open\command : 2 change(s)
xhtmlfile\shell\opennew : delete Perm. ACE 1 nt authority\system
xhtmlfile\shell\opennew : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\shell\opennew : 2 change(s)
xhtmlfile\shell\opennew\command : delete Perm. ACE 1 nt authority\system
xhtmlfile\shell\opennew\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\shell\opennew\command : 2 change(s)
xhtmlfile\shell\print : delete Perm. ACE 1 nt authority\system
xhtmlfile\shell\print : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\shell\print : 2 change(s)
xhtmlfile\shell\print\command : delete Perm. ACE 1 nt authority\system
xhtmlfile\shell\print\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\shell\print\command : 2 change(s)
xhtmlfile\shell\printto : delete Perm. ACE 1 nt authority\system
xhtmlfile\shell\printto : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\shell\printto : 2 change(s)
xhtmlfile\shell\printto\command : delete Perm. ACE 1 nt authority\system
xhtmlfile\shell\printto\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\xhtmlfile\shell\printto\command : 2 change(s)
XML : delete Perm. ACE 3 nt authority\system
XML : delete Perm. ACE 2 nt authority\system
XML : new ace for nt authority\system
HKEY_CLASSES_ROOT\XML - RegSetKeySecurity Error : 5 Access is denied.
XML\CLSID : delete Perm. ACE 3 nt authority\system
XML\CLSID : delete Perm. ACE 2 nt authority\system
XML\CLSID : new ace for nt authority\system
HKEY_CLASSES_ROOT\XML\CLSID - RegSetKeySecurity Error : 5 Access is denied.
XML\OLEScript : delete Perm. ACE 1 nt authority\system
XML\OLEScript : new ace for nt authority\system
HKEY_CLASSES_ROOT\XML\OLEScript : 2 change(s)
xmlfile : delete Perm. ACE 1 nt authority\system
xmlfile : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile : 2 change(s)
xmlfile\BrowseInPlace : delete Perm. ACE 1 nt authority\system
xmlfile\BrowseInPlace : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\BrowseInPlace : 2 change(s)
xmlfile\CLSID : delete Perm. ACE 3 nt authority\system
xmlfile\CLSID : delete Perm. ACE 2 nt authority\system
xmlfile\CLSID : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\CLSID - RegSetKeySecurity Error : 5 Access is denied.
xmlfile\DefaultIcon : delete Perm. ACE 1 nt authority\system
xmlfile\DefaultIcon : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\DefaultIcon : 2 change(s)
xmlfile\shell : delete Perm. ACE 1 nt authority\system
xmlfile\shell : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\shell : 2 change(s)
xmlfile\shell\edit : delete Perm. ACE 1 nt authority\system
xmlfile\shell\edit : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\shell\edit : 2 change(s)
xmlfile\shell\edit\command : delete Perm. ACE 1 nt authority\system
xmlfile\shell\edit\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\shell\edit\command : 2 change(s)
xmlfile\shell\open : delete Perm. ACE 1 nt authority\system
xmlfile\shell\open : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\shell\open : 2 change(s)
xmlfile\shell\open\command : delete Perm. ACE 1 nt authority\system
xmlfile\shell\open\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\shell\open\command : 2 change(s)
xmlfile\ShellEx : delete Perm. ACE 1 nt authority\system
xmlfile\ShellEx : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\ShellEx : 2 change(s)
xmlfile\ShellEx\IconHandler : delete Perm. ACE 1 nt authority\system
xmlfile\ShellEx\IconHandler : new ace for nt authority\system
HKEY_CLASSES_ROOT\xmlfile\ShellEx\IconHandler : 2 change(s)
xslfile : delete Perm. ACE 1 nt authority\system
xslfile : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile : 2 change(s)
xslfile\BrowseInPlace : delete Perm. ACE 1 nt authority\system
xslfile\BrowseInPlace : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile\BrowseInPlace : 2 change(s)
xslfile\CLSID : delete Perm. ACE 3 nt authority\system
xslfile\CLSID : delete Perm. ACE 2 nt authority\system
xslfile\CLSID : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile\CLSID - RegSetKeySecurity Error : 5 Access is denied.
xslfile\DefaultIcon : delete Perm. ACE 1 nt authority\system
xslfile\DefaultIcon : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile\DefaultIcon : 2 change(s)
xslfile\shell : delete Perm. ACE 1 nt authority\system
xslfile\shell : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile\shell : 2 change(s)
xslfile\shell\Open : delete Perm. ACE 1 nt authority\system
xslfile\shell\Open : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile\shell\Open : 2 change(s)
xslfile\shell\Open\command : delete Perm. ACE 1 nt authority\system
xslfile\shell\Open\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile\shell\Open\command : 2 change(s)
xslfile\shell\Open\ddeexec : delete Perm. ACE 1 nt authority\system
xslfile\shell\Open\ddeexec : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile\shell\Open\ddeexec : 2 change(s)
xslfile\shell\Open\ddeexec\application : delete Perm. ACE 1 nt authority\system
xslfile\shell\Open\ddeexec\application : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile\shell\Open\ddeexec\application : 2 change(s)
xslfile\shell\Open\ddeexec\topic : delete Perm. ACE 1 nt authority\system
xslfile\shell\Open\ddeexec\topic : new ace for nt authority\system
HKEY_CLASSES_ROOT\xslfile\shell\Open\ddeexec\topic : 2 change(s)
zapfile : delete Perm. ACE 1 nt authority\system
zapfile : new ace for nt authority\system
HKEY_CLASSES_ROOT\zapfile : 2 change(s)
zapfile\DefaultIcon : delete Perm. ACE 1 nt authority\system
zapfile\DefaultIcon : new ace for nt authority\system
HKEY_CLASSES_ROOT\zapfile\DefaultIcon : 2 change(s)
zapfile\shell : delete Perm. ACE 1 nt authority\system
zapfile\shell : new ace for nt authority\system
HKEY_CLASSES_ROOT\zapfile\shell : 2 change(s)
zapfile\shell\open : delete Perm. ACE 1 nt authority\system
zapfile\shell\open : new ace for nt authority\system
HKEY_CLASSES_ROOT\zapfile\shell\open : 2 change(s)
zapfile\shell\open\command : delete Perm. ACE 1 nt authority\system
zapfile\shell\open\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\zapfile\shell\open\command : 2 change(s)
zapfile\shell\print : delete Perm. ACE 1 nt authority\system
zapfile\shell\print : new ace for nt authority\system
HKEY_CLASSES_ROOT\zapfile\shell\print : 2 change(s)
zapfile\shell\print\command : delete Perm. ACE 1 nt authority\system
zapfile\shell\print\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\zapfile\shell\print\command : 2 change(s)
zapfile\shell\printto : delete Perm. ACE 1 nt authority\system
zapfile\shell\printto : new ace for nt authority\system
HKEY_CLASSES_ROOT\zapfile\shell\printto : 2 change(s)
zapfile\shell\printto\command : delete Perm. ACE 1 nt authority\system
zapfile\shell\printto\command : new ace for nt authority\system
HKEY_CLASSES_ROOT\zapfile\shell\printto\command : 2 change(s)
{2C256447-3F0D-4CBB-9D12-575BB20CDA0A} : delete Perm. ACE 1 nt authority\system
{2C256447-3F0D-4CBB-9D12-575BB20CDA0A} : new ace for nt authority\system
HKEY_CLASSES_ROOT\{2C256447-3F0D-4CBB-9D12-575BB20CDA0A} : 2 change(s)
{2C256447-3F0D-4CBB-9D12-575BB20CDA0A}\ProgID : delete Perm. ACE 3 nt authority\
system
{2C256447-3F0D-4CBB-9D12-575BB20CDA0A}\ProgID : delete Perm. ACE 2 nt authority\
system
{2C256447-3F0D-4CBB-9D12-575BB20CDA0A}\ProgID : new ace for nt authority\system
HKEY_CLASSES_ROOT\{2C256447-3F0D-4CBB-9D12-575BB20CDA0A}\ProgID - RegSetKeySecur
ity Error : 5 Access is denied.
Elapsed Time: 00 00:02:16
Done: 163592, Modified 116878, Failed 46714, Syntax errors 0
Last Done : HKEY_CLASSES_ROOT\{2C256447-3F0D-4CBB-9D12-575BB20CDA0A}\ProgID
Last Failed: HKEY_CLASSES_ROOT\{2C256447-3F0D-4CBB-9D12-575BB20CDA0A}\ProgID - R
egSetKeySecurity Error : 5 Access is denied.
C:\Users\xxxxx.xxxxx\Desktop : delete Perm. ACE 2 nt authority\system
C:\Users\xxxxx.xxxxx\Desktop : delete Perm. ACE 1 nt authority\system
C:\Users\xxxxx.xxxxx\Desktop : new ace for nt authority\system
C:\Users\xxxxx.xxxxx\Desktop : new ace for nt authority\system
C:\Users\xxxxx.xxxxx\Desktop : 4 change(s)
Elapsed Time: 00 00:00:00
Done: 1, Modified 1, Failed 0, Syntax errors 0
Last Done : C:\Users\xxxxx.xxxxxx\Desktop
=========================
Finished.
=========================
Press any key to continue . . .
********************
...so I'm guessing the major problem is the whole "access is denied" problem, no doubt caused by the virus. I really don't want to reformat, after doing all this work, but...
Any recommendation would be appreciated. Thanks all.