系统:Windows Server Standard Service Pack2
硬件:IBM X3650 M4
故障:每天下午7点自动关机
之前由于机房原因无法提供空调,所以设置过每天晚上9点自动关机的一个“计划任务”。现机房已经可以全天提供空调,所以无需要每天自动关机任务了,所以我就打开“计划任务”在里边把之前做过的任务删除了,但从那以后发现每天早上过来本台服务器还是关机状态。经查看日志发现每天的关机时间为下午7点(不是我设置的9点)。
注:期间未安装过任务软件与驱动等。
以下是关机关后各种日志:
Application:
Information 9/12/2014 8:11:12 AM Microsoft-Windows-EventSystem 4625 None The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds. The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration
under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.
Information 9/12/2014 8:11:12 AM Microsoft-Windows-Security-Licensing-SLC 900 None "The Software Licensing service is starting.
"
Information 9/12/2014 8:11:12 AM Microsoft-Windows-User Profiles Service 1531 None "The User Profile Service has started successfully.
"
Information 9/11/2014 7:00:05 PM Microsoft-Windows-CertificateServicesClient 2 None Certificate Services Client has been stopped.
Information 9/11/2014 7:00:05 PM Microsoft-Windows-Security-Licensing-SLC 901 None "The Software Licensing service is stopping.
"
Information 9/11/2014 7:00:05 PM MSSQL$MICROSOFT##SSEE 17147 (2) SQL Server is terminating because of a system shutdown. This is an informational message only. No user action is required.
Information 9/11/2014 7:00:05 PM MSSQL$KAV_CS_ADMIN_KIT 17147 (2) SQL Server is terminating because of a system shutdown. This is an informational message only. No user action is required.
Information 9/11/2014 7:00:01 PM Microsoft-Windows-CertificateServicesClient 2 None Certificate Services Client has been stopped.
Warning 9/11/2014 7:00:02 PM Microsoft-Windows-User Profiles Service 1530 None "Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file
may not function properly afterwards.
DETAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-3089481489-35528188-2763025094-500:
Process 1112 (\Device\HarddiskVolume3\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3089481489-35528188-2763025094-500\Printers\DevModePerUser
"
Information 9/11/2014 7:00:02 PM