我在Windows 10 Pro版本1709上安装了IIS版本10,版本为16299.125。
Windows更新后,IIS停止工作。我看到W3SVC无法正常工作,因为无法启动WAS(Windows进程激活服务)。当我尝试启动WAS时,Windows会显示消息:
Windows无法在本地计算机上启动Windows进程应用程序服务。错误13:数据无效
查看Windows事件日志,我看到WAS未启动,因为事件ID 5005,5215和服务控制管理器因事件ID 7023而停止。
我做了一些研究并尝试了很多东西:
这是IIS日志:
[12/26/2017 17:36:37] [ ***** IIS 10.0 Component Based Setup ***** ]
[12/26/2017 17:36:37] .\inetsrv\iissetup.exe /install SharedLibraries /nano
[12/26/2017 17:36:37] Setting Installation Type to Nano
[12/26/2017 17:36:37] Successfully added IIS_IUSRS ACE to DACL at %ProgramData%\Microsoft\Windows\WER\ReportQueue.
[12/26/2017 17:36:38] < !!FAIL!! > Failed to create the NetFrameworkConfigurationKey key container (result=0x8009000f)
[12/26/2017 17:36:38] < !!FAIL!! > Install of component SharedLibraries result=0x8009000f
[12/26/2017 17:36:38] < !!FAIL!! > COMPONENT::ExecuteCommand result=0x8009000f
[12/26/2017 17:36:38] [ End of IIS 10.0 Component Based Setup ]
我执行了Process Monitor并获得了有关WAS和inetsrv的一些信息:
17:36:37,8212043 conhost.exe 10620 FASTIO_NETWORK_QUERY_OPEN C:\WINDOWS\inetsrv\iissetup.exe \install SharedLibraries \nano FAST IO DISALLOWED
17:36:37,8212488 conhost.exe 10620 IRP_MJ_CREATE C:\WINDOWS\inetsrv\iissetup.exe \install SharedLibraries \nano PATH NOT FOUND Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a
和
18:15:01,5512834 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\StartOverride NAME NOT FOUND Desired Access: Query Value
18:15:01,5512974 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Start SUCCESS Type: REG_DWORD, Length: 4, Data: 2
18:15:01,5513106 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Start SUCCESS Type: REG_DWORD, Length: 4, Data: 2
18:15:01,5513231 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ErrorControl SUCCESS Type: REG_DWORD, Length: 4, Data: 1
18:15:01,5513423 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ServiceAccountManaged NAME NOT FOUND Length: 16
18:15:01,5513567 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Tag NAME NOT FOUND Length: 16
18:15:01,5513702 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\DependOnService SUCCESS Type: REG_MULTI_SZ, Length: 14, Data: RPCSS
18:15:01,5513853 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\DependOnGroup NAME NOT FOUND Length: 268
18:15:01,5513984 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Group NAME NOT FOUND Length: 268
18:15:01,5514261 services.exe 668 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS
18:15:01,5514382 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ObjectName SUCCESS Type: REG_SZ, Length: 24, Data: LocalSystem
18:15:01,5514521 services.exe 668 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS
18:15:01,5536911 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:01,5537284 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ImagePath SUCCESS Type: REG_EXPAND_SZ, Length: 82, Data: %windir%\system32\svchost.exe -k iissvcs
18:15:01,5537600 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:01,5537823 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Type SUCCESS Type: REG_DWORD, Length: 4, Data: 32
18:15:01,5538039 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\StartOverride NAME NOT FOUND Desired Access: Query Value
18:15:01,5538226 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Start SUCCESS Type: REG_DWORD, Length: 4, Data: 2
18:15:01,5538653 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Start SUCCESS Type: REG_DWORD, Length: 4, Data: 2
18:15:01,5539450 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ErrorControl SUCCESS Type: REG_DWORD, Length: 4, Data: 1
18:15:01,5539612 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ServiceAccountManaged NAME NOT FOUND Length: 16
18:15:01,5539751 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Tag NAME NOT FOUND Length: 16
18:15:01,5539893 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\DependOnService SUCCESS Type: REG_MULTI_SZ, Length: 14, Data: RPCSS
18:15:01,5540060 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\DependOnGroup NAME NOT FOUND Length: 268
18:15:01,5540468 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Group NAME NOT FOUND Length: 26818:15:03,2385240 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:03,2385446 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ImagePath SUCCESS Type: REG_EXPAND_SZ, Length: 82, Data: %windir%\system32\svchost.exe -k iissvcs
18:15:03,2385633 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:03,2385750 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Type SUCCESS Type: REG_DWORD, Length: 4, Data: 32
18:15:03,2385854 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\StartOverride NAME NOT FOUND Desired Access: Query Value
18:15:03,2385945 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Start SUCCESS Type: REG_DWORD, Length: 4, Data: 2
18:15:03,2386025 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Start SUCCESS Type: REG_DWORD, Length: 4, Data: 2
18:15:03,2386100 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ErrorControl SUCCESS Type: REG_DWORD, Length: 4, Data: 1
18:15:03,2386170 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ServiceAccountManaged NAME NOT FOUND Length: 16
18:15:03,2386239 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Tag NAME NOT FOUND Length: 16
18:15:03,2386313 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\DependOnService SUCCESS Type: REG_MULTI_SZ, Length: 14, Data: RPCSS
18:15:03,2386393 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\DependOnGroup NAME NOT FOUND Length: 268
18:15:03,2386465 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Group NAME NOT FOUND Length: 268
18:15:03,2386641 services.exe 668 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS
18:15:03,2386715 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ObjectName SUCCESS Type: REG_SZ, Length: 24, Data: LocalSystem
18:15:03,2386888 services.exe 668 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS 18:15:03,2653344 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:03,2653643 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\FailureActions SUCCESS Type: REG_BINARY, Length: 44, Data: 80 51 01 00 01 00 00 00 01 00 00 00 03 00 00 00
18:15:03,2653871 services.exe 668 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS
18:15:03,2653989 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:03,2654100 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ImagePath SUCCESS Type: REG_EXPAND_SZ, Length: 82, Data: %windir%\system32\svchost.exe -k iissvcs
18:15:03,2654259 services.exe 668 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS
18:15:03,2654436 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:03,2654637 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\SvcHostSplitDisable SUCCESS Type: REG_DWORD, Length: 4, Data: 1
18:15:03,2654801 services.exe 668 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS
18:15:03,2655908 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:03,2656137 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\ObjectName SUCCESS Type: REG_SZ, Length: 24, Data: LocalSystem
18:15:03,2656275 services.exe 668 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS
18:15:03,2679162 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:03,2679292 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Environment NAME NOT FOUND Length: 268
18:15:03,2679395 services.exe 668 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS
18:15:03,2813183 csrss.exe 452 IRP_MJ_CREATE C:\Windows\System32\svchost.exe.Config NAME NOT FOUND Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: AUTORIDADE NT\SISTEMA
18:15:03,2816062 services.exe 668 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS SUCCESS Desired Access: Read
18:15:03,2816175 services.exe 668 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\RequiredPrivileges BUFFER OVERFLOW Length: 268
18:15:03,3401656 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\ServiceDll SUCCESS Type: REG_EXPAND_SZ, Length: 78, Data: %windir%\system32\inetsrv\iisw3adm.dll
18:15:03,3401959 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\ServiceManifest NAME NOT FOUND Length: 144
18:15:03,3402112 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\ServiceMain NAME NOT FOUND Length: 144
18:15:03,3403389 svchost.exe 9232 FASTIO_NETWORK_QUERY_OPEN C:\Windows\System32\inetsrv\iisw3adm.dll FAST IO DISALLOWED
18:15:03,3404363 svchost.exe 9232 IRP_MJ_CREATE C:\Windows\System32\inetsrv\iisw3adm.dll SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
18:15:03,3404750 svchost.exe 9232 FASTIO_QUERY_INFORMATION C:\Windows\System32\inetsrv\iisw3adm.dll SUCCESS Type: QueryBasicInformationFile, CreationTime: 29/09/2017 11:43:11, LastAccessTime: 30/09/2017 13:20:35, LastWriteTime: 30/09/2017 13:20:35, ChangeTime: 12/12/2017 19:37:41, FileAttributes: A
18:15:03,3404911 svchost.exe 9232 IRP_MJ_CLEANUP C:\Windows\System32\inetsrv\iisw3adm.dll SUCCESS
18:15:03,3405070 svchost.exe 9232 IRP_MJ_CLOSE C:\Windows\System32\inetsrv\iisw3adm.dll SUCCESS
18:15:03,3406013 svchost.exe 9232 IRP_MJ_CREATE C:\Windows\System32\inetsrv\iisw3adm.dll SUCCESS Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened
18:15:03,3406564 svchost.exe 9232 FASTIO_ACQUIRE_FOR_SECTION_SYNCHRONIZATION C:\Windows\System32\inetsrv\iisw3adm.dll FILE LOCKED WITH ONLY READERS SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ|PAGE_NOCACHE
18:15:03,3406942 svchost.exe 9232 FASTIO_RELEASE_FOR_SECTION_SYNCHRONIZATION C:\Windows\System32\inetsrv\iisw3adm.dll SUCCESS
18:15:03,3407476 svchost.exe 9232 FASTIO_ACQUIRE_FOR_SECTION_SYNCHRONIZATION C:\Windows\System32\inetsrv\iisw3adm.dll SUCCESS SyncType: SyncTypeOther
18:15:03,3775143 svchost.exe 9232 FASTIO_QUERY_INFORMATION C:\Windows\System32\inetsrv\iisres.dll SUCCESS Type: QueryBasicInformationFile, CreationTime: 29/09/2017 11:43:11, LastAccessTime: 30/09/2017 13:20:31, LastWriteTime: 30/09/2017 13:20:31, ChangeTime: 12/12/2017 19:37:41, FileAttributes: A
18:15:03,3775266 svchost.exe 9232 IRP_MJ_CLEANUP C:\Windows\System32\inetsrv\iisres.dll SUCCESS
18:15:03,3775415 svchost.exe 9232 IRP_MJ_CLOSE C:\Windows\System32\inetsrv\iisres.dll SUCCESS
18:15:03,3776336 svchost.exe 9232 IRP_MJ_CREATE C:\Windows\System32\inetsrv\iisres.dll SUCCESS Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened
18:15:03,3776866 svchost.exe 9232 FASTIO_ACQUIRE_FOR_SECTION_SYNCHRONIZATION C:\Windows\System32\inetsrv\iisres.dll FILE LOCKED WITH ONLY READERS SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ|PAGE_NOCACHE
18:15:03,3777529 svchost.exe 9232 FASTIO_RELEASE_FOR_SECTION_SYNCHRONIZATION C:\Windows\System32\inetsrv\iisres.dll SUCCESS
18:15:03,3777646 svchost.exe 9232 FASTIO_ACQUIRE_FOR_SECTION_SYNCHRONIZATION C:\Windows\System32\inetsrv\iisres.dll SUCCESS SyncType: SyncTypeOther
18:15:03,3777740 svchost.exe 9232 FASTIO_RELEASE_FOR_SECTION_SYNCHRONIZATION C:\Windows\System32\inetsrv\iisres.dll SUCCESS
18:15:03,3778576 svchost.exe 9232 Load Image C:\Windows\System32\inetsrv\iisres.dll SUCCESS Image Base: 0x25f14650000, Image Size: 0x3b000
18:15:03,3778931 svchost.exe 9232 IRP_MJ_CLEANUP C:\Windows\System32\inetsrv\iisres.dll SUCCESS
18:15:03,3779127 svchost.exe 9232 IRP_MJ_CLOSE C:\Windows\System32\inetsrv\iisres.dll SUCCESS
18:15:03,3781217 svchost.exe 9232 FASTIO_NETWORK_QUERY_OPEN C:\Windows\System32\inetsrv\CRYPTSP.dll FAST IO DISALLOWED
18:15:03,3782051 svchost.exe 9232 IRP_MJ_CREATE C:\Windows\System32\inetsrv\CRYPTSP.dll NAME NOT FOUND Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a
18:15:03,3823147 svchost.exe 9232 RegOpenKey HKLM\Software\Microsoft\InetStp\Configuration NAME NOT FOUND Desired Access: Read
18:15:03,3835549 svchost.exe 9232 IRP_MJ_QUERY_INFORMATION C:\Windows\System32\inetsrv\iisw3adm.dll SUCCESS Type: QueryNameInformationFile, Name: \Windows\System32\inetsrv\iisw3adm.dll
18:15:03,3858351 svchost.exe 9232 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS
18:15:03,3896142 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Control\Cryptography\Configuration REPARSE Desired Access: Read
18:15:03,3896269 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Control\Cryptography\Configuration SUCCESS Desired Access: Read
18:15:03,3896479 svchost.exe 9232 RegCloseKey HKLM\System\CurrentControlSet\Control\Cryptography\Configuration SUCCESS
18:15:03,3901094 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters REPARSE Desired Access: Read
18:15:03,3901180 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS Desired Access: Read
18:15:03,3901349 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\StartupWaitHintInMilliseconds NAME NOT FOUND Length: 144
18:15:03,3901432 svchost.exe 9232 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS
18:15:03,3918415 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters\SystemSettings REPARSE Desired Access: Read
18:15:03,3918597 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters\SystemSettings NAME NOT FOUND Desired Access: Read
18:15:03,3919820 svchost.exe 9232 RegOpenKey HKU\.DEFAULT\Control Panel\Desktop\MuiCached\MachineLanguageConfiguration NAME NOT FOUND Desired Access: Read
18:15:03,3920564 svchost.exe 9232 RegOpenKey HKU\.DEFAULT\Control Panel\Desktop\LanguageConfiguration NAME NOT FOUND Desired Access: Read
18:15:03,3923861 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Control\CMF\Config REPARSE Desired Access: Read
18:15:03,3924044 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Control\CMF\Config SUCCESS Desired Access: Read
18:15:03,3924200 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Control\CMF\Config\SYSTEM SUCCESS Type: REG_DWORD, Length: 4, Data: 3
18:15:03,3924301 svchost.exe 9232 RegCloseKey HKLM\System\CurrentControlSet\Control\CMF\Config SUCCESS
18:15:03,3933736 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters REPARSE Desired Access: Read
18:15:03,3933830 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS Desired Access: Read
18:15:03,3934030 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\ConfigIsolationEnabled NAME NOT FOUND Length: 144
18:15:03,3934123 svchost.exe 9232 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS
18:15:03,3934378 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters REPARSE Desired Access: Read
18:15:03,3934459 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS Desired Access: Read
18:15:03,3934669 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\ConfigIsolationPath NAME NOT FOUND Length: 144
18:15:03,3934998 svchost.exe 9232 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS
18:15:03,3935441 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters REPARSE Desired Access: Read
18:15:03,3935527 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS Desired Access: Read
18:15:03,3935692 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\ConfigIsolationSectionsExcluded NAME NOT FOUND Length: 144
18:15:03,3935944 svchost.exe 9232 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS
18:15:03,3936177 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters REPARSE Desired Access: Read
18:15:03,3936258 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS Desired Access: Read
18:15:03,3936412 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\ConfigIsolationSectionsIncluded NAME NOT FOUND Length: 144
18:15:03,3936638 svchost.exe 9232 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS
18:15:03,3941436 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters REPARSE Desired Access: Read
18:15:03,3941577 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS Desired Access: Read
18:15:03,3942278 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\CreateSharedMachineKeyLocation NAME NOT FOUND Length: 144
18:15:03,3942367 svchost.exe 9232 RegCloseKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS
18:15:03,3942772 svchost.exe 9232 RegOpenKey HKLM\SYSTEM\CurrentControlSet\Services\WAS\Parameters\ REPARSE Desired Access: Read/Write
18:15:03,3942864 svchost.exe 9232 RegOpenKey HKLM\System\CurrentControlSet\Services\WAS\Parameters SUCCESS Desired Access: Read/Write
18:15:03,3943192 svchost.exe 9232 RegQueryValue HKLM\System\CurrentControlSet\Services\WAS\Parameters\NanoSetup SUCCESS Type: REG_DWORD, Length: 4, Data: 1
18:15:03,3982593 svchost.exe 2848 IRP_MJ_DIRECTORY_CONTROL C:\Windows\System32\inetsrv\Config SUCCESS Type: NotifyChangeDirectory, Filter: FILE_NOTIFY_CHANGE_FILE_NAME, FILE_NOTIFY_CHANGE_DIR_NAME, FILE_NOTIFY_CHANGE_SIZE, FILE_NOTIFY_CHANGE_LAST_WRITE, FILE_NOTIFY_CHANGE_CREATION, FILE_NOTIFY_CHANGE_EA, FILE_NOTIFY_CHANGE_SECURITY, FILE_NOTIFY_CHANGE_STREAM_NAME, FILE_NOTIFY_CHANGE_STREAM_SIZE, FILE_NOTIFY_CHANGE_STREAM_WRITE
18:15:03,3982841 svchost.exe 2848 IRP_MJ_DIRECTORY_CONTROL C:\Windows\System32\inetsrv\Config SUCCESS Type: NotifyChangeDirectory, Filter: FILE_NOTIFY_CHANGE_FILE_NAME, FILE_NOTIFY_CHANGE_DIR_NAME, FILE_NOTIFY_CHANGE_SIZE, FILE_NOTIFY_CHANGE_LAST_WRITE, FILE_NOTIFY_CHANGE_CREATION, FILE_NOTIFY_CHANGE_EA, FILE_NOTIFY_CHANGE_SECURITY, FILE_NOTIFY_CHANGE_STREAM_NAME, FILE_NOTIFY_CHANGE_STREAM_SIZE, FILE_NOTIFY_CHANGE_STREAM_WRITE
18:15:03,3983025 svchost.exe 2848 IRP_MJ_DIRECTORY_CONTROL C:\Windows\System32\inetsrv\Config SUCCESS Type: NotifyChangeDirectory, Filter: FILE_NOTIFY_CHANGE_FILE_NAME, FILE_NOTIFY_CHANGE_DIR_NAME, FILE_NOTIFY_CHANGE_SIZE, FILE_NOTIFY_CHANGE_LAST_WRITE, FILE_NOTIFY_CHANGE_CREATION, FILE_NOTIFY_CHANGE_EA, FILE_NOTIFY_CHANGE_SECURITY, FILE_NOTIFY_CHANGE_STREAM_NAME, FILE_NOTIFY_CHANGE_STREAM_SIZE, FILE_NOTIFY_CHANGE_STREAM_WRITE
18:15:03,3983194 svchost.exe 2848 IRP_MJ_DIRECTORY_CONTROL C:\Windows\System32\inetsrv\Config SUCCESS Type: NotifyChangeDirectory, Filter: FILE_NOTIFY_CHANGE_FILE_NAME, FILE_NOTIFY_CHANGE_DIR_NAME, FILE_NOTIFY_CHANGE_SIZE, FILE_NOTIFY_CHANGE_LAST_WRITE, FILE_NOTIFY_CHANGE_CREATION, FILE_NOTIFY_CHANGE_EA, FILE_NOTIFY_CHANGE_SECURITY, FILE_NOTIFY_CHANGE_STREAM_NAME, FILE_NOTIFY_CHANGE_STREAM_SIZE, FILE_NOTIFY_CHANGE_STREAM_WRITE
18:15:03,3983318 svchost.exe 2848 IRP_MJ_DIRECTORY_CONTROL C:\Windows\System32\inetsrv\Config SUCCESS Type: NotifyChangeDirectory, Filter: FILE_NOTIFY_CHANGE_FILE_NAME, FILE_NOTIFY_CHANGE_DIR_NAME, FILE_NOTIFY_CHANGE_SIZE, FILE_NOTIFY_CHANGE_LAST_WRITE, FILE_NOTIFY_CHANGE_CREATION, FILE_NOTIFY_CHANGE_EA, FILE_NOTIFY_CHANGE_SECURITY, FILE_NOTIFY_CHANGE_STREAM_NAME, FILE_NOTIFY_CHANGE_STREAM_SIZE, FILE_NOTIFY_CHANGE_STREAM_WRITE
18:15:03,3983416 svchost.exe 2848 IRP_MJ_DIRECTORY_CONTROL C:\Windows\System32\inetsrv\Config SUCCESS Type: NotifyChangeDirectory, Filter: FILE_NOTIFY_CHANGE_FILE_NAME, FILE_NOTIFY_CHANGE_DIR_NAME, FILE_NOTIFY_CHANGE_SIZE, FILE_NOTIFY_CHANGE_LAST_WRITE, FILE_NOTIFY_CHANGE_CREATION, FILE_NOTIFY_CHANGE_EA, FILE_NOTIFY_CHANGE_SECURITY, FILE_NOTIFY_CHANGE_STREAM_NAME, FILE_NOTIFY_CHANGE_STREAM_SIZE, FILE_NOTIFY_CHANGE_STREAM_WRITE
18:15:03,4167740 csrss.exe 452 IRP_MJ_CREATE C:\Windows\System32\cmd.exe.Config NAME NOT FOUND Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: AUTORIDADE NT\SISTEMA
18:15:03,4259260 System 4 IRP_MJ_CREATE C:\Windows\System32\inetsrv\iissetup.exe SUCCESS Desired Access: Read Data/List Directory, Execute/Traverse, Read Attributes, Disposition: Open, Options: Non-Directory File, Complete If Oplocked, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
18:15:03,4260443 System 4 IRP_MJ_SET_INFORMATION C:\Windows\System32\inetsrv\iissetup.exe SUCCESS Type: SetBasicInformationFile, CreationTime: -1, LastAccessTime: -1, LastWriteTime: -1, ChangeTime: -1, FileAttributes: n/a
18:15:03,4260568 System 4 IRP_MJ_QUERY_INFORMATION C:\Windows\System32\inetsrv\iissetup.exe SUCCESS Type: QueryAttributeTagFile, Attributes: A, ReparseTag: 0x0
18:15:03,4260658 System 4 IRP_MJ_QUERY_INFORMATION C:\Windows\Sys
我该如何解决这个问题?
答案 0 :(得分:3)
我的IIS和Windows进程激活服务正在运行。我刚刚测试了我的应用程序,也很好。
我如何修复:
1)备份IIS
说明:
https://brainstorage.wordpress.com/2014/07/24/backuprestore-iis-8-configuration/ http://tritoneco.com/2015/09/02/backup-and-restore-iis-to-another-server/
2)卸载IIS和WAS
说明:
http://eddiejackson.net/wp/?p=14378
3)安装IIS和WAS
4)恢复IIS
在继续此修复之前,请阅读列出的来源,因为它们包含一些有关可能适用于您的应用程序的软件版本,证书和登录的重要说明。
亲切的问候, 安德烈
答案 1 :(得分:3)
失败似乎是由于WAS无法访问旧操作系统遗留的机器密钥造成的。这些机器密钥用于加密applicationHost.config或web.config中的敏感信息(例如用户密码或连接字符串)。删除这些键并让WAS重新生成它们可以解决副作用问题:
以前加密的配置(在操作系统升级之前),如果有的话,需要重新配置并重新加密,因为WAS无法使用旧密钥解密原始密钥(由旧密钥加密)新钥匙。
以下是删除旧机器密钥的步骤:
转到RSA计算机密钥文件夹:C:\ Users \ All Users \ Application Data \ Microsoft \ Crypto \ RSA \ MachineKeys
查找名称以d6d986f09a1ee04e24c949879fdb506c_ *开头的机器密钥(文件)。如果您使用记事本打开它,您应该看到纯文本&#34; NetFrameworkConfigurationKey&#34;。
将此文件备份到其他文件夹。
删除此文件。
按照与2-4相同的步骤备份和删除iisWasKey:76944fb33636aeddb9590521c2e8815a _ *
按照与2-4相同的步骤备份和删除iisConfigurationKey:6de9cb26d2b98c01ec4e9e8b34824aa2 _ *
手动启动WAS
答案 2 :(得分:0)
我的问题是一个使用IIS和浏览器配置硬件现场设备的应用程序。卸载应用程序并关闭IIS,然后修复IIS,为我解决了此问题。然后重新激活IIS并再次安装该应用程序。现在可以工作。
答案 3 :(得分:0)
闫冰冰的回答很好。 我发现(在此:https://turbo.net/containers/rorymon@gmail.com/a14c597b11c74b37be92934ee1fc83a6)(根据他的回答)此脚本非常有用。使用管理员权限在CMD上运行此命令:
if exist "C:\Windows\system32\inetsrv\inetmgr.exe" (
rem clear out old keys
del
"C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\76944fb33636aeddb9590521c2e8815a*" /Q/A
del "C:\ProgramData\microsoft\Crypto\RSA\MachineKeys\6de9cb26d2b98c01ec4e9e8b34824aa2*" /Q/A
del "C:\ProgramData\microsoft\Crypto\RSA\MachineKeys\7a436fe806e483969f48a894af2fe9a1*" /Q/A
del "C:\ProgramData\microsoft\Crypto\RSA\MachineKeys\bedbf0b4da5f8061b6444baedf4c00b1*" /Q/A
del "C:\ProgramData\microsoft\Crypto\RSA\MachineKeys\c2319c42033a5ca7f44e731bfd3fa2b5*" /Q/A
del "C:\ProgramData\microsoft\Crypto\RSA\MachineKeys\d6d986f09a1ee04e24c949879fdb506c*" /Q/A
rem import new keys
if exist "C:\Windows\microsoft.net\framework64\v2.0.50727\aspnet_regiis.exe" (pushd "C:\Windows\microsoft.net\framework64\v2.0.50727" ) else (if exist "C:\Windows\microsoft.net\framework\v2.0.50727\aspnet_regiis.exe" (pushd "C:\Windows\microsoft.net\framework\v2.0.50727" ) else (if exist "C:\Windows\microsoft.net\framework64\v4.0.30319\aspnet_regiis.exe" (pushd "C:\Windows\microsoft.net\framework64\v4.0.30319" ) else (if exist "C:\Windows\microsoft.net\framework\v4.0.30319\aspnet_regiis.exe" (pushd "C:\Windows\microsoft.net\framework\v4.0.30319" ) else (
echo ERROR: cannot find .NET Framework
exit /b 1
) ) ) )
aspnet_regiis.exe -pi "iisConfigurationKey" "c:\iis-init\iisConfigurationKey.xml"
aspnet_regiis.exe -pi "iisWasKey" "c:\iis-init\iisWasKey.xml"
aspnet_regiis.exe -pi "MS IIS DCOM Server" "c:\iis-init\MSIISDCOMServer.xml"
aspnet_regiis.exe -pi "WMSvc Certificate Key Container" "C:\init\WMSvcCertificateKeyContainer.xml"
aspnet_regiis.exe -pi "Microsoft Internet Information Server" "c:\iis-init\MicrosoftInternetInformationServer.xml"
aspnet_regiis.exe -pi "NetFrameworkConfigurationKey" "c:\iis-init\NetFrameworkConfigurationKey.xml"
popd
rem start iis
net start w3svc
) else (
echo ERROR: cannot find C:\Windows\system32\inetsrv\inetmgr.exe
exit /b 1
)
答案 4 :(得分:0)
不确定这是否是Windows更新引起的,但是它是在我从电源故障重启后立即发生的(Windows 10版本1909-操作系统内部版本18363.836)。
在事件查看器中,我看到了此错误:
The Windows Process Activation Service (WAS) encountered an error
while handling key generation. This will prevent WAS from starting
corrently. The data field contains the error number.
,然后在文件c:\ Windows \ iis.log中,最后出现了此错误,该错误更清楚了:
[06/09/2020 17:22:08] [ ***** IIS 10.0 Component Based Setup ***** ]
[06/09/2020 17:22:08] .\inetsrv\iissetup.exe /keygen
[06/09/2020 17:22:08] < !!FAIL!! > Failed to create the NetFrameworkConfigurationKey key container (result=0x8009000f)
[06/09/2020 17:22:08] < !!FAIL!! > Key Generation result=0x8009000f
[06/09/2020 17:22:08] [ End of IIS 10.0 Component Based Setup ]
我向文件夹C:\ Users \ All Users \ Application Data \ Microsoft \ Crypto \ RSA \ MachineKeys的Administrators组授予了完全权限(忽略访问被拒绝的错误),然后在命令提示符中运行了这些命令(运行以管理员身份)进行修复:
C:\WINDOWS\system32>cd inetsrv
C:\Windows\System32\inetsrv>iissetup.exe /keygen
Success!
C:\Windows\System32\inetsrv>iisreset
Attempting stop...
Internet services successfully stopped
Attempting start...
Internet services successfully restarted