Windows 10 crash after waking up from sleep?

Status
Not open for further replies.

Zixith

Honorable
Oct 1, 2016
34
0
10,530
So I've been having this problem with my newly purchased HP Zbook G3 laptop whereby sometimes (but not always) when waking the laptop from sleep would result in Windows 10 just completely freezing up at the lockscreen and then me having to force shut down using the power button.

I've attached system events and application events exported from Windows' Event viewer and would be greatly appreciative if someone could help me decipher what could be the cause of this system freeze.

System Events:
Level Date and Time Source Event ID Task Category
Error 08/11/2018 22:48:11 Microsoft-Windows-DistributedCOM 10016 None "The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool."
Information 08/11/2018 22:48:09 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:48:01 Microsoft-Windows-Kernel-General 16 None The access history in hive \??\C:\Users\Yaseen Ahammed\AppData\Local\Packages\Microsoft.OneConnect_8wekyb3d8bbwe\Settings\settings.dat was cleared updating 3 keys and creating 1 modified pages.
Information 08/11/2018 22:47:49 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:42 Netwtw06 7023 None 7023 - Intel proprietary
Error 08/11/2018 22:47:42 Microsoft-Windows-DistributedCOM 10016 None "The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool."
Error 08/11/2018 22:47:42 Microsoft-Windows-DistributedCOM 10016 None "The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool."
Information 08/11/2018 22:47:41 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:41 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:40 Microsoft-Windows-TPM-WMI 1025 None The TPM was successfully provisioned and is now ready for use.
Information 08/11/2018 22:47:40 Microsoft-Windows-Winlogon 7001 (1101) User Logon Notification for Customer Experience Improvement Program
Information 08/11/2018 22:47:39 Microsoft-Windows-TPM-WMI 1025 None The TPM was successfully provisioned and is now ready for use.
Information 08/11/2018 22:47:37 TPM 18 None This event triggers the Trusted Platform Module (TPM) provisioning/status check to run.
Information 08/11/2018 22:47:37 Service Control Manager 7026 None "The following boot-start or system-start driver(s) did not load:
dam"
Information 08/11/2018 22:47:37 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:37 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:36 Netwtw06 7021 None 7021 - Connection telemetry fields and analysis usage
Information 08/11/2018 22:47:36 Netwtw06 7021 None 7021 - Connection telemetry fields and analysis usage
Information 08/11/2018 22:47:36 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:36 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:36 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:35 Service Control Manager 7045 None "A service was installed in the system.

Service Name: MBAMSwissArmy
Service File Name: \SystemRoot\system32\DRIVERS\mbamswissarmy.sys
Service Type: kernel mode driver
Service Start Type: demand start
Service Account: "
Information 08/11/2018 22:47:33 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:33 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:32 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:31 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:31 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:31 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 22:47:31 Microsoft-Windows-WLAN-AutoConfig 10001 None "WLAN Extensibility Module has successfully started.

Module Path: C:\Windows\System32\IWMSSvc.dll
"
Error 08/11/2018 22:47:31 Service Control Manager 7024 None "The IntelAudioService service terminated with the following service-specific error:
The operation completed successfully."
Error 08/11/2018 22:47:30 Service Control Manager 7000 None "The UIUService2 service failed to start due to the following error:
The system cannot find the file specified."
Error 08/11/2018 22:47:30 Service Control Manager 7000 None "The AdobeUpdateService service failed to start due to the following error:
The system cannot find the file specified."
Information 08/11/2018 22:47:30 Microsoft-Windows-WLAN-AutoConfig 4000 None "WLAN AutoConfig service has successfully started.
"
Information 08/11/2018 22:47:29 Win32k 267 None Touch/Touchpad Hardware Quality Assurance verification succeeded.
Information 08/11/2018 22:47:28 Microsoft-Windows-DHCPv6-Client 51046 Service State Event DHCPv6 client service is started
Information 08/11/2018 22:47:28 Microsoft-Windows-Dhcp-Client 50103 Service State Event DHCPv4 client registered for shutdown notification
Information 08/11/2018 22:47:28 Microsoft-Windows-Dhcp-Client 50036 Service State Event DHCPv4 client service is started
Information 08/11/2018 22:47:28 Microsoft-Windows-FilterManager 6 None File System Filter 'storqosflt' (10.0, ‎2011‎-‎01‎-‎05T17:54:03.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:28 Microsoft-Windows-FilterManager 6 None File System Filter 'CldFlt' (10.0, ‎2046‎-‎11‎-‎06T15:33:22.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:28 Microsoft-Windows-FilterManager 1 None File System Filter 'CldFlt' (Version 10.0, ‎2046‎-‎11‎-‎06T15:33:22.000000000Z) unloaded successfully.
Information 08/11/2018 22:47:28 Microsoft-Windows-FilterManager 6 None File System Filter 'CldFlt' (10.0, ‎2046‎-‎11‎-‎06T15:33:22.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:28 Microsoft-Windows-FilterManager 6 None File System Filter 'luafv' (10.0, ‎2043‎-‎06‎-‎20T19:30:28.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:28 Microsoft-Windows-FilterManager 6 None File System Filter 'wcifs' (10.0, ‎2024‎-‎12‎-‎17T01:40:30.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:28 Win32k 267 None Touch/Touchpad Hardware Quality Assurance verification succeeded.
Information 08/11/2018 22:47:27 Microsoft-Windows-Directory-Services-SAM 16962 None "Remote calls to the SAM database are being restricted using the default security descriptor: O:SYG:SYD:(A;;RC;;;BA).
For more information please see http://go.microsoft.com/fwlink/?LinkId=787651."
Information 08/11/2018 22:47:27 Microsoft-Windows-Wininit 13 None Credential Guard (LsaIso.exe) was started and will protect LSA credentials.
Information 08/11/2018 22:47:27 Microsoft-Windows-IsolatedUserMode 1 None Secure Trustlet \??\C:\Windows\system32\lsaiso.exe Id 1 and Pid 848 started with status STATUS_SUCCESS.
Information 08/11/2018 22:47:27 Microsoft-Windows-Wininit 14 None Credential Guard (LsaIso.exe) configuration: 0x0, 0
Information 08/11/2018 22:47:26 Microsoft-Windows-Ntfs 98 None Volume E: (\Device\HarddiskVolume6) is healthy. No action is needed.
Warning 08/11/2018 22:47:26 e1dexpress 27 None "Intel(R) Ethernet Connection (2) I219-LM
Network link is disconnected.
"
Information 08/11/2018 22:47:25 BTHUSB 18 None Windows cannot store Bluetooth authentication codes (link keys) on the local adapter. Bluetooth keyboards might not work in the system BIOS during startup.
Warning 08/11/2018 22:47:21 Microsoft-Windows-Kernel-PnP 219 (212) The driver \Driver\WUDFRd failed to load for the device USB\VID_138A&PID_003F\0030ec09ec99.
Information 08/11/2018 22:47:21 Microsoft-Windows-DriverFrameworks-UserMode 10118 Startup of the UMDF reflector UMDF reflector is unable to connect to service control manager (SCM). This is expected during boot, when SCM has not started yet. Will retry when it starts.
Information 08/11/2018 22:47:20 Netwtw06 7017 None 7017 - secure boot (SB) configuration
Information 08/11/2018 22:47:20 Netwtw06 7010 None 7010 - driver enabled (miniport init)
Information 08/11/2018 22:47:20 Netwtw06 7005 None 7005 - SAR value max TX power (WRDS)
Information 08/11/2018 22:47:20 Netwtw06 7036 None The \Device\NDMP2 service entered the Intel(R) Dual Band Wireless-AC 8260 state.
Information 08/11/2018 22:47:20 MEIx64 2 None Intel(R) Management Engine Interface driver has started successfully.
Information 08/11/2018 22:47:20 Microsoft-Windows-Kernel-Power 521 (220) Active battery count change.
Information 08/11/2018 22:47:20 Microsoft-Windows-Kernel-Power 105 (100) Power source change.
Information 08/11/2018 22:47:19 Microsoft-Windows-Kernel-Power 521 (220) Active battery count change.
Information 08/11/2018 22:47:19 Microsoft-Windows-Kernel-Processor-Power 55 (47) "Processor 7 in group 0 exposes the following power management capabilities:

Idle state type: ACPI Idle (C) States (3 state(s))

Performance state type: ACPI Collaborative Processor Performance Control
Nominal Frequency (MHz): 2712
Maximum performance percentage: 133
Minimum performance percentage: 44
Minimum throttle percentage: 3"
Information 08/11/2018 22:47:19 Microsoft-Windows-Kernel-Processor-Power 55 (47) "Processor 5 in group 0 exposes the following power management capabilities:

Idle state type: ACPI Idle (C) States (3 state(s))

Performance state type: ACPI Collaborative Processor Performance Control
Nominal Frequency (MHz): 2712
Maximum performance percentage: 133
Minimum performance percentage: 44
Minimum throttle percentage: 3"
Information 08/11/2018 22:47:19 Microsoft-Windows-Kernel-Processor-Power 55 (47) "Processor 3 in group 0 exposes the following power management capabilities:

Idle state type: ACPI Idle (C) States (3 state(s))

Performance state type: ACPI Collaborative Processor Performance Control
Nominal Frequency (MHz): 2712
Maximum performance percentage: 133
Minimum performance percentage: 44
Minimum throttle percentage: 3"
Information 08/11/2018 22:47:19 Microsoft-Windows-Kernel-Processor-Power 55 (47) "Processor 1 in group 0 exposes the following power management capabilities:

Idle state type: ACPI Idle (C) States (3 state(s))

Performance state type: ACPI Collaborative Processor Performance Control
Nominal Frequency (MHz): 2712
Maximum performance percentage: 133
Minimum performance percentage: 44
Minimum throttle percentage: 3"
Information 08/11/2018 22:47:19 Microsoft-Windows-Kernel-Processor-Power 55 (47) "Processor 6 in group 0 exposes the following power management capabilities:

Idle state type: ACPI Idle (C) States (3 state(s))

Performance state type: ACPI Collaborative Processor Performance Control
Nominal Frequency (MHz): 2712
Maximum performance percentage: 133
Minimum performance percentage: 44
Minimum throttle percentage: 3"
Information 08/11/2018 22:47:19 Microsoft-Windows-Kernel-Processor-Power 55 (47) "Processor 4 in group 0 exposes the following power management capabilities:

Idle state type: ACPI Idle (C) States (3 state(s))

Performance state type: ACPI Collaborative Processor Performance Control
Nominal Frequency (MHz): 2712
Maximum performance percentage: 133
Minimum performance percentage: 40
Minimum throttle percentage: 3"
Information 08/11/2018 22:47:19 Microsoft-Windows-Kernel-Processor-Power 55 (47) "Processor 2 in group 0 exposes the following power management capabilities:

Idle state type: ACPI Idle (C) States (3 state(s))

Performance state type: ACPI Collaborative Processor Performance Control
Nominal Frequency (MHz): 2712
Maximum performance percentage: 133
Minimum performance percentage: 44
Minimum throttle percentage: 3"
Information 08/11/2018 22:47:19 Microsoft-Windows-Kernel-Processor-Power 55 (47) "Processor 0 in group 0 exposes the following power management capabilities:

Idle state type: ACPI Idle (C) States (3 state(s))

Performance state type: ACPI Collaborative Processor Performance Control
Nominal Frequency (MHz): 2712
Maximum performance percentage: 133
Minimum performance percentage: 29
Minimum throttle percentage: 3"
Warning 08/11/2018 22:47:19 Microsoft-Windows-Kernel-PnP 219 (212) The driver \Driver\WudfRd failed to load for the device ROOT\WPD\0000.
Information 08/11/2018 22:47:19 Microsoft-Windows-DriverFrameworks-UserMode 10118 Startup of the UMDF reflector UMDF reflector is unable to connect to service control manager (SCM). This is expected during boot, when SCM has not started yet. Will retry when it starts.
Information 08/11/2018 22:47:18 Microsoft-Windows-Ntfs 98 None Volume \\?\Volume{ef6c4b33-2d9f-4187-9440-658c7be5b20c} (\Device\HarddiskVolume2) is healthy. No action is needed.
Information 08/11/2018 22:47:17 Microsoft-Windows-Kernel-Power 172 (203) Connectivity state in standby: Disconnected, Reason: NIC compliance
Critical 08/11/2018 22:47:17 Microsoft-Windows-Kernel-Power 41 (63) The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.
Information 08/11/2018 22:47:17 Microsoft-Windows-FilterManager 6 None File System Filter 'npsvctrig' (10.0, ‎2094‎-‎02‎-‎20T10:14:30.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:17 Microsoft-Windows-FilterManager 6 None File System Filter 'FileCrypt' (10.0, ‎2070‎-‎12‎-‎15T23:13:56.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:17 Microsoft-Windows-Ntfs 98 None Volume D: (\Device\HarddiskVolume1) is healthy. No action is needed.
Information 08/11/2018 22:47:17 Microsoft-Windows-Ntfs 98 None Volume C: (\Device\HarddiskVolume5) is healthy. No action is needed.
Information 08/11/2018 22:47:16 hpdskflt 1001 None An unsupported disk adapter was found.
Information 08/11/2018 22:47:16 Microsoft-Windows-FilterManager 6 None File System Filter 'WdFilter' (10.0, ‎1995‎-‎01‎-‎03T13:38:17.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:16 Microsoft-Windows-FilterManager 6 None File System Filter 'Wof' (10.0, ‎2036‎-‎09‎-‎29T13:47:10.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:16 Microsoft-Windows-FilterManager 6 None File System Filter 'FileInfo' (10.0, ‎2083‎-‎04‎-‎08T15:57:41.000000000Z) has successfully loaded and registered with Filter Manager.
Information 08/11/2018 22:47:15 Microsoft-Windows-IsolatedUserMode 3 None Secure Kernel started with status STATUS_SUCCESS and flags HvciEnabled,HvciStrictMode.
Information 08/11/2018 22:47:15 Microsoft-Windows-Hyper-V-Hypervisor 156 None "Hypervisor configured mitigations for CVE-2018-3646 for virtual machines.

Processor not affected: false
Processor family not affected: false
Processor supports cache flush: true
HyperThreading enabled: true
Parent hypervisor applies mitigations: false
Mitigations disabled by bcdedit: false
Mitigations enabled: true
Cache flush needed: true
"
Information 08/11/2018 22:47:15 Microsoft-Windows-Hyper-V-Hypervisor 129 None "Hypervisor initialized I/O remapping.

Hardware present: false
Hardware enabled: false
Policy: 0x0
Enabled features: 0x0
Internal information: 0x0
Problems: 0x0
Additional information: 0x0"
Information 08/11/2018 22:47:15 Microsoft-Windows-Hyper-V-Hypervisor 2 None Hypervisor scheduler type is 0x3.
Information 08/11/2018 22:47:15 Microsoft-Windows-Hyper-V-Hypervisor 1 None Hypervisor successfully started.
Information 08/11/2018 22:47:15 Microsoft-Windows-Kernel-Boot 30 (21) The firmware reported boot metrics.
Information 08/11/2018 22:47:15 Microsoft-Windows-Kernel-Boot 25 (32) The boot menu policy was 0x1.
Information 08/11/2018 22:47:15 Microsoft-Windows-Kernel-Boot 27 (33) The boot type was 0x0.
Information 08/11/2018 22:47:15 Microsoft-Windows-Kernel-Boot 20 (31) The last shutdown's success status was false. The last boot's success status was true.
Information 08/11/2018 22:47:15 Microsoft-Windows-Kernel-Boot 32 (58) The bootmgr spent 0 ms waiting for user input.
Information 08/11/2018 22:47:15 Microsoft-Windows-Kernel-Boot 18 (57) There are 0x1 boot options on this system.
Information 08/11/2018 22:47:15 Microsoft-Windows-Kernel-Boot 153 (62) Virtualization-based security (policies: VBS Enabled,VSM Required,Hvci,Boot Chain Signer Soft Enforced) is disabled.
Information 08/11/2018 22:47:28 EventLog 6013 None The system uptime is 12 seconds.
Information 08/11/2018 22:47:28 EventLog 6005 None The Event log service was started.
Information 08/11/2018 22:47:28 EventLog 6009 None Microsoft (R) Windows (R) 10.00. 17134 Multiprocessor Free.
Error 08/11/2018 22:47:28 EventLog 6008 None The previous system shutdown at 18:02:03 on ‎08/‎11/‎2018 was unexpected.
Information 08/11/2018 22:47:15 Microsoft-Windows-Kernel-General 12 (1) The operating system started at system time ‎2018‎-‎11‎-‎08T22:47:15.500000000Z.
Information 08/11/2018 18:16:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:15:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:14:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:13:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:12:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:11:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:10:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:09:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:08:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:07:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:06:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:05:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:04:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:03:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:02:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:01:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 18:00:50 Netwtw06 7023 None 7023 - Intel proprietary
Information 08/11/2018 17:59:50 Netwtw06 7023 None 7023 - Intel proprietary



Application events[/u][/b]

Level Date and Time Source Event ID Task Category
Information 08/11/2018 22:49:37 dbupdate 0 None "The description for Event ID 0 from source dbupdate cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Service stopped
"
Information 08/11/2018 22:48:57 NVWMI 3 (1) NVWMI - Windows System Process [c:/windows/system32/taskmgr.exe] was launched and [Windows System Process] profile was applied

Information 08/11/2018 22:48:57 NVWMI 3 (1) empty map of active profiles

Information 08/11/2018 22:48:37 Microsoft-Windows-Security-SPP 903 None "The Software Protection service has stopped.
"
Information 08/11/2018 22:48:37 Microsoft-Windows-Security-SPP 16384 None Successfully scheduled Software Protection service for re-start at 2018-11-09T22:47:37Z. Reason: RulesEngine.
Information 08/11/2018 22:48:35 ESENT 916 General svchost (18296,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:48:24 ESENT 916 General SettingSyncHost (11640,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:48:02 HPRadioMgr 0 None "The description for Event ID 0 from source HPRadioMgr cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

RadioDevice added: Bluetooth
"
Information 08/11/2018 22:48:02 HPRadioMgr 0 None "The description for Event ID 0 from source HPRadioMgr cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

RadioDevice added: Bluetooth
"
Information 08/11/2018 22:48:02 HPRadioMgr 0 None "The description for Event ID 0 from source HPRadioMgr cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

RadioDevice added: Bluetooth
"
Information 08/11/2018 22:48:02 HPRadioMgr 0 None "The description for Event ID 0 from source HPRadioMgr cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

RadioDevice added: Wi-Fi
"
Information 08/11/2018 22:48:00 DbxSvc 320 (3) Failed to connect to the driver: (-2147024894) The system cannot find the file specified. , retrying...
Information 08/11/2018 22:47:57 dbupdate 0 None "The description for Event ID 0 from source dbupdate cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Service stopped
"
Information 08/11/2018 22:47:56 dbupdate 0 None "The description for Event ID 0 from source dbupdate cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Service started
"
Information 08/11/2018 22:47:55 Microsoft-Windows-Security-SPP 8197 None "SLUI.exe was launched with the following command-line parameters:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=NotifyUser;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=UserLogon;SessionId=1"
Information 08/11/2018 22:47:55 Microsoft-Windows-Security-SPP 8197 None "SLUI.exe was launched with the following command-line parameters:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=NotifyUser;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=NetworkAvailable"
Information 08/11/2018 22:47:54 Microsoft-Windows-Security-SPP 8230 None "The rules engine successfully re-evaluated the schedule.
Kernel policies:
Security-SPP-Action-StateData (REG_SZ) =AppId=55c92734-d682-4d71-983e-d6ec3f16059f;LastConsumptionReason=0xc004f034;LastNotificationId=NeverActivated;LicenseState=SL_LICENSING_STATUS_NOTIFICATION;PartialProductKey=3V66T;ProductKeyType=Retail;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;ruleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;uxDifferentiator=RETAIL"
Information 08/11/2018 22:47:52 Microsoft-Windows-Security-SPP 8197 None "SLUI.exe was launched with the following command-line parameters:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=NotifyUser;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=NetworkAvailable"
Information 08/11/2018 22:47:51 Microsoft-Windows-Security-SPP 8230 None "The rules engine successfully re-evaluated the schedule.
Kernel policies:
Security-SPP-Action-StateData (REG_SZ) =AppId=55c92734-d682-4d71-983e-d6ec3f16059f;LastConsumptionReason=0xc004f034;LastNotificationId=NeverActivated;LicenseState=SL_LICENSING_STATUS_NOTIFICATION;PartialProductKey=3V66T;ProductKeyType=Retail;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;ruleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;uxDifferentiator=RETAIL"
Information 08/11/2018 22:47:50 ESENT 916 General RemindersServer (10872,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:47:50 CodeMeter Runtime Server 516 None Service is initializing.
Information 08/11/2018 22:47:50 CodeMeter Runtime Server 516 None Service is initializing.
Information 08/11/2018 22:47:50 CodeMeter Runtime Server 516 None Service is initializing.
Information 08/11/2018 22:47:50 CodeMeter Runtime Server 516 None Service is initializing.
Information 08/11/2018 22:47:50 CodeMeter Runtime Server 516 None Service is initializing.
Information 08/11/2018 22:47:48 Microsoft-Windows-Search 1003 Search service The Windows Search Service started.

Information 08/11/2018 22:47:48 ESENT 916 General svchost (12168,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:47:48 ESENT 326 General "SearchIndexer (11516,D,50) Windows: The database engine attached a database (1, C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb). (Time=0 seconds)

Saved Cache: 0 0
Additional Data: lgposAttach = 000008C8:0043:0268

Internal Timing Sequence:
[1] 0.000010 +J(0)
[2] 0.001213 +J(0) +M(C:0K, Fs:24, WS:32K # 0K, PF:32K # 0K, P:32K)
[3] 0.011828 +J(CM:0, PgRf:0, Rd:0/0, Dy:0/0, Lg:3480/2) +M(C:0K, Fs:17, WS:36K # 0K, PF:36K # 0K, P:36K)
[4] 0.001093 +J(0)
[5] -
[6] -
[7] 0.017005 -0.000697 (2) CM +J(CM:2, PgRf:2, Rd:16/2, Dy:0/0, Lg:0/0) +M(C:0K, Fs:22, WS:88K # 0K, PF:512K # 0K, P:512K)
[8] 0.000938 -0.000499 (5) CM +J(CM:5, PgRf:23, Rd:0/5, Dy:0/0, Lg:0/0) +M(C:0K, Fs:62, WS:248K # 0K, PF:256K # 0K, P:256K)
[9] 0.000285 -0.000155 (1) CM +J(CM:1, PgRf:40, Rd:0/1, Dy:0/0, Lg:0/0) +M(C:0K, Fs:10, WS:40K # 0K, PF:32K # 0K, P:32K)
[10] 0.000028 +J(CM:0, PgRf:1, Rd:0/0, Dy:0/0, Lg:0/0) +M(C:0K, Fs:1, WS:4K # 0K, PF:0K # 0K, P:0K)
[11] 0.000071 +J(CM:0, PgRf:42, Rd:0/0, Dy:0/0, Lg:0/0) +M(C:0K, Fs:4, WS:16K # 0K, PF:0K # 0K, P:0K)
[12] 0.000008 +J(0)
[13] 0.000007 +J(0)
[14] 0.000015 +J(CM:0, PgRf:1, Rd:0/0, Dy:0/0, Lg:0/0)."
Information 08/11/2018 22:47:48 ESENT 105 General "SearchIndexer (11516,D,0) Windows: The database engine started a new instance (0). (Time=0 seconds)

Additional Data:
lgposV2[] = 000008C6:0052:0000 - 000008C7:0001:0000 - 000008C8:0041:0000 - 000008C8:0041:0000 (00000000:0000:0000)
cReInits = 1


Internal Timing Sequence:
[1] 0.004226 +J(0) +M(C:0K, Fs:270, WS:1056K # 1056K, PF:5236K # 5236K, P:5236K)
[2] 0.000814 +J(0) +M(C:0K, Fs:108, WS:432K # 432K, PF:408K # 408K, P:408K)
[3] 0.000843 +J(0) +M(C:0K, Fs:9, WS:28K # 28K, PF:72K # 72K, P:72K)
[4] 0.000325 +J(0) +M(C:0K, Fs:28, WS:112K # 112K, PF:228K # 228K, P:228K)
[5] 0.001256 +J(0) +M(C:0K, Fs:12, WS:48K # 48K, PF:32K # 32K, P:32K)
[6] 0.058498 +J(0) +M(C:0K, Fs:120, WS:468K # 468K, PF:68K # 68K, P:68K)
[7] 0.074570 +J(0) +M(C:0K, Fs:271, WS:1084K # 1084K, PF:1036K # 1036K, P:1036K)
[8] 0.251044 -0.009654 (36) CM +J(CM:36, PgRf:3238, Rd:13/36, Dy:0/0, Lg:694137/8622) +M(C:0K, Fs:969, WS:2980K # 2980K, PF:3168K # 3168K, P:3168K) + 1 lgens
[9] 0.157687 -0.005811 (96) CM +J(CM:96, PgRf:3583, Rd:82/96, Dy:67/5336, Lg:1283521/11372) +M(C:0K, Fs:928, WS:3600K # 3600K, PF:2976K # 2976K, P:2976K) + 1 lgens
[10] 0.001125 +J(0) +M(C:0K, Fs:1, WS:-1016K # 0K, PF:-1020K # 0K, P:-1020K)
[11] 0.000334 +J(CM:0, PgRf:0, Rd:0/0, Dy:0/0, Lg:49/1) +M(C:0K, Fs:6, WS:-116K # 0K, PF:-156K # 0K, P:-156K)
[12] 0.071798 +J(CM:67, PgRf:0, Rd:0/67, Dy:0/0, Lg:0/0) +M(C:0K, Fs:535, WS:24K # 0K, PF:12K # 0K, P:12K)
[13] 0.070537 -0.000485 (2) CM +J(CM:2, PgRf:2, Rd:0/2, Dy:0/0, Lg:8759/5) +M(C:0K, Fs:308, WS:-5008K # 0K, PF:-4304K # 0K, P:-4304K)
[14] 0.000038 +J(0)
[15] 0.000025 +J(0)
[16] 0.000630 +J(0) +M(C:0K, Fs:2, WS:0K # 0K, PF:0K # 0K, P:0K)."
Information 08/11/2018 22:47:48 ESENT 302 Logging/Recovery SearchIndexer (11516,U,98) Windows: The database engine has successfully completed recovery steps.
Information 08/11/2018 22:47:48 ESENT 301 Logging/Recovery "SearchIndexer (11516,R,98) Windows: The database engine has begun replaying logfile C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb.jtx.

Previous Log Processing Stats:
[1] 0.129638 -0.005810 (83) CM +J(CM:83, PgRf:2710, Rd:81/83, Dy:51/3467, Lg:1024475/8557) +M(C:0K, Fs:798, WS:3112K # 3132K, PF:2936K # 2936K, P:2936K)."
Information 08/11/2018 22:47:47 ESENT 301 Logging/Recovery "SearchIndexer (11516,R,98) Windows: The database engine has begun replaying logfile C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb008C7.jtx.

Previous Log Processing Stats:
[1] 0.206726 -0.009654 (36) CM +J(CM:36, PgRf:3238, Rd:13/36, Dy:0/0, Lg:694137/8622) +M(C:0K, Fs:736, WS:2060K # 2060K, PF:2340K # 2340K, P:2340K)."
Information 08/11/2018 22:47:47 ESENT 301 Logging/Recovery "SearchIndexer (11516,R,98) Windows: The database engine has begun replaying logfile C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb008C6.jtx.

Previous Log Processing Stats: "
Information 08/11/2018 22:47:47 ESENT 300 Logging/Recovery SearchIndexer (11516,R,98) Windows: The database engine is initiating recovery steps.
Information 08/11/2018 22:47:47 ESENT 916 General SearchIndexer (11516,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:47:47 ESENT 102 General SearchIndexer (11516,P,98) Windows: The database engine (10.00.17134.0000) is starting a new instance (0).
Information 08/11/2018 22:47:45 ESENT 916 General taskhostw (9268,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:47:45 CodeMeter Runtime Server 516 None Service is initializing.
Information 08/11/2018 22:47:42 SynTPEnhService 0 None "The description for Event ID 0 from source SynTPEnhService cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

SynTPEnhService
CEnhanceCallerService::Update: SessionID: 1
"
Information 08/11/2018 22:47:42 SynTPEnhService 0 None "The description for Event ID 0 from source SynTPEnhService cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

SynTPEnhService
CEnhanceCallerService::Update: Message1: 26, Message2:28
"
Information 08/11/2018 22:47:42 ESENT 916 General taskhostw (9268,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:47:41 NVWMI 3 (1) Event provider registration succeeded

Information 08/11/2018 22:47:41 igfxCUIService2.0.0.0 0 None "The description for Event ID 0 from source igfxCUIService2.0.0.0 cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Received Post Shell Event 1

"
Information 08/11/2018 22:47:41 NVWMI 3 (1) Instance provider registered successfully

Information 08/11/2018 22:47:41 igfxCUIService2.0.0.0 0 None "The description for Event ID 0 from source igfxCUIService2.0.0.0 cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Logon: 1

"
Information 08/11/2018 22:47:41 igfxCUIService2.0.0.0 0 None "The description for Event ID 0 from source igfxCUIService2.0.0.0 cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Log on event received User1

"
Information 08/11/2018 22:47:40 NVWMI 3 (1) created proccess pid=4964, old pid=0 on desktop WinSta0\Default , session=1 cmd=C:\Windows\system32\nvwmi64.exe -spawnprovider

Information 08/11/2018 22:47:40 SynTPEnhService 0 None "The description for Event ID 0 from source SynTPEnhService cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

SynTPEnhService
Log on New Session:1 Launch Enh
"
Information 08/11/2018 22:47:40 SynTPEnhService 0 None "The description for Event ID 0 from source SynTPEnhService cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

SynTPEnhService
Session Changed User Log on
"
Information 08/11/2018 22:47:40 NVWMI 3 (1) creating proccess on desktop WinSta0\Default , session=1 cmd=C:\Windows\system32\nvwmi64.exe -spawnprovider

Information 08/11/2018 22:47:40 NVWMI 3 (1) About to spawn provider, session=1, eventType=0x5

Information 08/11/2018 22:47:40 NVWMI 3 (1) SERVICE_CONTROL_SESSIONCHANGE

Information 08/11/2018 22:47:38 Microsoft-Windows-Security-SPP 1040 None "Hardware has changed from previous boot.
AppId=0ff1ce15-a989-479d-af46-f275c6370663, SkuId=d450596f-894d-49e0-966a-fd39ed4c4c64."
Information 08/11/2018 22:47:38 Microsoft-Windows-Security-SPP 902 None "The Software Protection service has started.
10.0.17134.254"
Information 08/11/2018 22:47:38 Microsoft-Windows-Security-SPP 1003 None "The Software Protection service has completed licensing status check.
Application Id=55c92734-d682-4d71-983e-d6ec3f16059f
Licensing Status=
1: 040fa323-92b1-4baf-97a2-5b67feaefddb, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
2: 0724cb7d-3437-4cb7-93cb-830375d0079d, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
3: 0ad2ac98-7bb9-4201-8d92-312299201369, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
4: 1a9a717a-cf13-4ba5-83c3-0fe25fa868d5, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
5: 221a02da-e2a1-4b75-864c-0a4410a33fdf, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
6: 291ece0e-9c38-40ca-a9e1-32cc7ec19507, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
7: 2936d1d2-913a-4542-b54e-ce5a602a2a38, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
8: 2c293c26-a45a-4a2a-a350-c69a67097529, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
9: 2de67392-b7a7-462a-b1ca-108dd189f588, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
10: 2ffd8952-423e-4903-b993-72a1aa44cf82, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
11: 30a42c86-b7a0-4a34-8c90-ff177cb2acb7, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
12: 345a5db0-d94f-4e3b-a0c0-7c42f7bc3ebf, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
13: 3502365a-f88a-4ba4-822a-5769d3073b65, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
14: 377333b1-8b5d-48d6-9679-1225c872d37c, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
15: 3df374ef-d444-4494-a5a1-4b0d9fd0e203, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
16: 3f1afc82-f8ac-4f6c-8005-1d233e606eee, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
17: 49cd895b-53b2-4dc4-a5f7-b18aa019ad37, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
18: 4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c, 1, 1 [(0 )(1 )(2 [0xC004E003, 0, 0], [( 1 0xC004F034)( 1 0xC004F034)(?)(?)(?)(?)(?)(?)])(3 [0x00000000, 0, 0], [( 6 0xC004F009 0 0)( 1 0x00000000)( 6 0xC004F009 0 0)(?)(?)(?)( 10 0x00000000 msft:rm/algorithm/flags/1.0)( 11 0x00000000 0xC004F034)])]
19: 4f3da0d2-271d-4508-ae81-626b60809a38, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
20: 60b3ec1b-9545-4921-821f-311b129dd6f6, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
21: 613d217f-7f13-4268-9907-1662339531cd, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
22: 62f0c100-9c53-4e02-b886-a3528ddfe7f6, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
23: 6365275e-368d-46ca-a0ef-fc0404119333, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
24: 721f9237-9341-4453-a661-09e8baa6cca5, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
25: 73111121-5638-40f6-bc11-f1d7b0d64300, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
26: 7a802526-4c94-4bd1-ba14-835a1aca2120, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
27: 7cb546c0-c7d5-44d8-9a5c-69ecdd782b69, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
28: 82bbc092-bc50-4e16-8e18-b74fc486aec3, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
29: 8b351c9c-f398-4515-9900-09df49427262, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
30: 90da7373-1c51-430b-bf26-c97e9c5cdc31, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
31: 95dca82f-385d-4d39-b85b-5c73fa285d6f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
32: a48938aa-62fa-4966-9d44-9f04da3f72f2, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
33: b0773a15-df3a-4312-9ad2-83d69648e356, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
34: b4bfe195-541e-4e64-ad23-6177f19e395e, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
35: bd3762d7-270d-4760-8fb3-d829ca45278a, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
36: c86d5194-4840-4dae-9c1c-0301003a5ab0, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
37: d552befb-48cc-4327-8f39-47d2d94f987c, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
38: d6eadb3b-5ca8-4a6b-986e-35b550756111, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
39: df96023b-dcd9-4be2-afa0-c6c871159ebe, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
40: e0c42288-980c-4788-a014-c080d2e1926e, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
41: e4db50ea-bda1-4566-b047-0ca50abc6f07, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
42: e558417a-5123-4f6f-91e7-385c1c7ca9d4, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
43: e7a950a2-e548-4f10-bf16-02ec848e0643, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
44: eb6d346f-1c60-4643-b960-40ec31596c45, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
45: ef51e000-2659-4f25-8345-3de70a9cf4c4, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
46: f7af7d09-40e4-419c-a49b-eae366689ebd, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
47: fa755fe6-6739-40b9-8d84-6d0ea3b6d1ab, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
48: fe74f55b-0338-41d6-b267-4a201abe7285, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]

"
Information 08/11/2018 22:47:38 Microsoft-Windows-Security-SPP 1066 None "Initialization status for service objects.
C:\Windows\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/inherited/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/pkey/detect, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/ActionScheduler/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/statecollector/pkey, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/activationinfo/1.0, 0x00000000, 0x00000000
"
Information 08/11/2018 22:47:38 Microsoft-Windows-Security-SPP 16394 None Offline downlevel migration succeeded.
Information 08/11/2018 22:47:37 Microsoft-Windows-Security-SPP 900 None "The Software Protection service is starting.
Parameters:TriggerStarted:6"
Information 08/11/2018 22:47:35 ESENT 916 General svchost (4496,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:47:30 Microsoft-Windows-WMI 5617 None Windows Management Instrumentation Service subsystems initialized successfully
Information 08/11/2018 22:47:31 ESENT 916 General svchost (4504,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:47:31 hpqcaslwmiex 0 None "The description for Event ID 0 from source hpqcaslwmiex cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Service started/resumed
"
Information 08/11/2018 22:47:29 Microsoft-Windows-WMI 5615 None Windows Management Instrumentation Service started sucessfully
Information 08/11/2018 22:47:30 CodeMeter Runtime Server 512 None Service has been successfully started.
Information 08/11/2018 22:47:30 VNC Server 256 Service Mode ServerManager: Server started
Information 08/11/2018 22:47:30 SynTPEnhService 0 None "The description for Event ID 0 from source SynTPEnhService cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

SynTPEnhService
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
"
Information 08/11/2018 22:47:30 CxUtilSvc 0 None "The description for Event ID 0 from source CxUtilSvc cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Service started/resumed
"
Information 08/11/2018 22:47:30 AdobeARMservice 0 None "The description for Event ID 0 from source AdobeARMservice cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Service started
"
Information 08/11/2018 22:47:30 AGMService 0 None "The description for Event ID 0 from source AGMService cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

AGMService
CppWindowsService in OnStart
"
Information 08/11/2018 22:47:30 SynTPEnhService 0 None "The description for Event ID 0 from source SynTPEnhService cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

SynTPEnhService
SynTPEnhService in OnStart
"
Information 08/11/2018 22:47:30 LanWlanSwitchingService 0 None "The description for Event ID 0 from source LanWlanSwitchingService cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

LanWlanSwitchingService
LAN/WLAN | LAN/WWAN Switching Service in OnStart
"
Information 08/11/2018 22:47:30 DbxSvc 320 (3) Failed to connect to the driver: (-2147024894) The system cannot find the file specified. , retrying...
Information 08/11/2018 22:47:30 DbxSvc 258 (2) Pipe server thread started.
Information 08/11/2018 22:47:30 DbxSvc 336 (1) Service started (1.0.24.0).
Information 08/11/2018 22:47:29 ESENT 916 General svchost (3924,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
Information 08/11/2018 22:47:29 HPService 100 None "The description for Event ID 100 from source HPService cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

"
Information 08/11/2018 22:47:28 Microsoft-Windows-User Profiles Service 1531 None "The User Profile Service has started successfully.

"
Information 08/11/2018 22:47:28 Desktop Window Manager 9027 None The Desktop Window Manager has registered the session port.
Information 08/11/2018 22:47:28 igfxCUIService2.0.0.0 0 None "The description for Event ID 0 from source igfxCUIService2.0.0.0 cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Service started/resumed
"
Information 08/11/2018 18:08:35 ESENT 916 General svchost (3540,G,98) The beta feature EseDiskFlushConsistency is enabled in ESENT due to the beta site mode settings 0x800000.
 
Status
Not open for further replies.