I did not overclock the system. Just a bit curious but can the heat sink move after about 4 months of it working properly. And i have the bios things, i got it from the event log!!! At least thats what i think you wanted but ill definantly check the heatsink and fan and cpu. Thanks, will post back if it doesnt work.
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7026
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Mine
Description:
The following boot-start or system-start driver(s) failed to load:
i8042prt
SASDIFSV
SASKUTIL
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="49152">7026</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21320</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">
i8042prt
SASDIFSV
SASKUTIL</Data>
</EventData>
</Event>
Log Name: System
Source: EventLog
Date: 2/4/2010 10:45:02 PM
Event ID: 6008
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Mine
Description:
The previous system shutdown at 10:42:49 PM on 2/4/2010 was unexpected.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6008</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:02.000Z" />
<EventRecordID>21233</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>10:42:49 PM</Data>
<Data>2/4/2010</Data>
<Data>
</Data>
<Data>
</Data>
<Data>4998</Data>
<Data>
</Data>
<Data>
</Data>
<Binary>DA0702000400040016002A0031008A03DA0702000500050006002A0031008A03600900003C000000010000006009000000000000B00400000100000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Application Popup
Date: 2/4/2010 10:44:55 PM
Event ID: 1060
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Mine
Description:
\??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Application Popup" />
<EventID Qualifiers="49152">1060</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:55.692Z" />
<EventRecordID>21240</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>\??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS</Data>
<Binary>000000000200300000000000240400C0000000006B0300C000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: EventLog
Date: 2/4/2010 11:15:21 PM
Event ID: 6008
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Mine
Description:
The previous system shutdown at 10:59:58 PM on 2/4/2010 was unexpected.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6008</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:21.000Z" />
<EventRecordID>21355</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>10:59:58 PM</Data>
<Data>2/4/2010</Data>
<Data>
</Data>
<Data>
</Data>
<Data>919</Data>
<Data>
</Data>
<Data>
</Data>
<Binary>DA0702000400040016003B003A007201DA0702000500050006003B003A007201600900003C000000010000006009000000000000B00400000100000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7026
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Mine
Description:
The following boot-start or system-start driver(s) failed to load:
i8042prt
SASDIFSV
SASKUTIL
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="49152">7026</EventID>
<Version>0</Version>
<Level>2</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21444</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">
i8042prt
SASDIFSV
SASKUTIL</Data>
</EventData>
</Event>
Log Name: System
Source: Application Popup
Date: 2/4/2010 11:15:14 PM
Event ID: 1060
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Mine
Description:
\??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Application Popup" />
<EventID Qualifiers="49152">1060</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:14.053Z" />
<EventRecordID>21360</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>\??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys</Data>
<Binary>000000000200300000000000240400C0000000006B0300C000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Application Popup
Date: 2/4/2010 10:44:55 PM
Event ID: 1060
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Mine
Description:
\??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Application Popup" />
<EventID Qualifiers="49152">1060</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:55.614Z" />
<EventRecordID>21238</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>\??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys</Data>
<Binary>000000000200300000000000240400C0000000006B0300C000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Application Popup
Date: 2/4/2010 11:15:14 PM
Event ID: 1060
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: Mine
Description:
\??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Application Popup" />
<EventID Qualifiers="49152">1060</EventID>
<Level>2</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:14.131Z" />
<EventRecordID>21362</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>\??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS</Data>
<Binary>000000000200300000000000240400C0000000006B0300C000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The LVSrvLauncher service entered the stopped state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21296</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">LVSrvLauncher</Data>
<Data Name="param2">stopped</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Network Location Awareness service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21297</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Network Location Awareness</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Cryptographic Services service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21295</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Cryptographic Services</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Secondary Logon service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21298</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Secondary Logon</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The NVIDIA Stereoscopic 3D Driver Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21303</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">NVIDIA Stereoscopic 3D Driver Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Superfetch service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21304</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Superfetch</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Distributed Link Tracking Client service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21305</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Distributed Link Tracking Client</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The AVG8 WatchDog service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21302</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">AVG8 WatchDog</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The SeaPort service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21299</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">SeaPort</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The IPsec Policy Agent service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21300</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">IPsec Policy Agent</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The SSDP Discovery service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21301</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">SSDP Discovery</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The AVGIDSWatcher service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21284</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">AVGIDSWatcher</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Bonjour Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21285</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Bonjour Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The ReadyBoost service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21286</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">ReadyBoost</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The AVG8 Firewall service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21283</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">AVG8 Firewall</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Server service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21280</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Server</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Computer Browser service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21281</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Computer Browser</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Application Experience service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21282</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Application Experience</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Human Interface Device Access service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21287</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Human Interface Device Access</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Function Discovery Provider Host service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21292</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Function Discovery Provider Host</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Apple Mobile Device service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21293</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Apple Mobile Device</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The PnkBstrA service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21294</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">PnkBstrA</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Function Discovery Resource Publication service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21291</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Function Discovery Resource Publication</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Diagnostic Policy Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21288</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Diagnostic Policy Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The IKE and AuthIP IPsec Keying Modules service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21289</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">IKE and AuthIP IPsec Keying Modules</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Program Compatibility Assistant Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21290</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Program Compatibility Assistant Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Terminal Services service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21306</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Terminal Services</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Certificate Propagation service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21323</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Certificate Propagation</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Terminal Services Configuration service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21324</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Terminal Services Configuration</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The iPod Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21325</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">iPod Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Media Center Extender Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21319</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Media Center Extender Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Network Connections service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21321</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Network Connections</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21322</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">WinHTTP Web Proxy Auto-Discovery Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Diagnostic System Host service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21326</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Diagnostic System Host</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Telephony service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21330</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Telephony</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Remote Access Connection Manager service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21331</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Remote Access Connection Manager</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:47:26 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Background Intelligent Transfer Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:26.000Z" />
<EventRecordID>21332</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Background Intelligent Transfer Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Search service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21327</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Search</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Application Information service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21328</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Application Information</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Secure Socket Tunneling Protocol Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21329</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Secure Socket Tunneling Protocol Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Time service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21309</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Time</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Management Instrumentation service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21310</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Management Instrumentation</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Image Acquisition (WIA) service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21311</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Image Acquisition (WIA)</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Error Reporting Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21307</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Error Reporting Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The UPnP Device Host service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21308</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">UPnP Device Host</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:47:26 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Media Center Service Launcher service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:26.000Z" />
<EventRecordID>21333</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Media Center Service Launcher</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Live ID Sign-in Assistant service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21312</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Live ID Sign-in Assistant</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The PnP-X IP Bus Enumerator service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21316</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">PnP-X IP Bus Enumerator</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Yahoo! Updater service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21317</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Yahoo! Updater</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Network List Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21318</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Network List Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Portable Device Enumerator Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21313</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Portable Device Enumerator Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Search service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21314</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Search</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The IP Helper service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21315</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">IP Helper</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The WebClient service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21279</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">WebClient</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Application Popup
Date: 2/4/2010 10:44:55 PM
Event ID: 26
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Application popup: : \??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS failed to load
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Application Popup" />
<EventID Qualifiers="16384">26</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:55.692Z" />
<EventRecordID>21239</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>\??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS failed to load</Data>
<Binary>0000000002003000000000001A000040280400C06C0200C000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-FilterManager
Date: 2/4/2010 10:44:55 PM
Event ID: 6
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
File System Filter 'AvgMfx64' (6.0, 7/1/2009 12:38:25 PM) has successfully loaded and registered with Filter Manager.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-FilterManager" Guid="{f3c5e28e-63f6-49c7-a204-e48a1bc4b09d}" />
<EventID>6</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:55.739Z" />
<EventRecordID>21241</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="FinalStatus">0x0</Data>
<Data Name="DeviceVersionMajor">6</Data>
<Data Name="DeviceVersionMinor">0</Data>
<Data Name="DeviceNameLength">8</Data>
<Data Name="DeviceName">AvgMfx64</Data>
<Data Name="DeviceTime">2009-07-01T12:38:25.000Z</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-FilterManager
Date: 2/4/2010 10:45:02 PM
Event ID: 6
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
File System Filter 'luafv' (6.0, 1/18/2008 9:59:06 PM) has successfully loaded and registered with Filter Manager.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-FilterManager" Guid="{f3c5e28e-63f6-49c7-a204-e48a1bc4b09d}" />
<EventID>6</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:02.603Z" />
<EventRecordID>21242</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="60" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="FinalStatus">0x0</Data>
<Data Name="DeviceVersionMajor">6</Data>
<Data Name="DeviceVersionMinor">0</Data>
<Data Name="DeviceNameLength">5</Data>
<Data Name="DeviceName">luafv</Data>
<Data Name="DeviceTime">2008-01-18T21:59:06.000Z</Data>
</EventData>
</Event>
Log Name: System
Source: Application Popup
Date: 2/4/2010 10:44:55 PM
Event ID: 26
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Application popup: : \??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys failed to load
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Application Popup" />
<EventID Qualifiers="16384">26</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:55.614Z" />
<EventRecordID>21237</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>\??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys failed to load</Data>
<Binary>0000000002003000000000001A000040280400C06C0200C000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: EventLog
Date: 2/4/2010 10:45:02 PM
Event ID: 6009
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Microsoft (R) Windows (R) 6.00. 6002 Service Pack 2 Multiprocessor Free.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6009</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:02.000Z" />
<EventRecordID>21234</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>6.00.</Data>
<Data>6002</Data>
<Data>Service Pack 2</Data>
<Data>Multiprocessor Free</Data>
</EventData>
</Event>
Log Name: System
Source: EventLog
Date: 2/4/2010 10:45:02 PM
Event ID: 6005
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Event log service was started.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6005</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:02.000Z" />
<EventRecordID>21235</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Binary>DA0702000500050006002D00020016030000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: EventLog
Date: 2/4/2010 10:45:02 PM
Event ID: 6013
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system uptime is 23 seconds.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6013</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:02.000Z" />
<EventRecordID>21236</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>
</Data>
<Data>
</Data>
<Data>
</Data>
<Data>23</Data>
<Data>60</Data>
<Data>480 Pacific Standard Time</Data>
<Binary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inary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-DistributedCOM
Date: 2/4/2010 10:45:29 PM
Event ID: 10029
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
DCOM started the service iPod Service with arguments "" in order to run the server:
{063D34A4-BF84-4B8D-B699-E8CA06504DDE}
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
<EventID Qualifiers="49152">10029</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:29.000Z" />
<EventRecordID>21247</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">iPod Service</Data>
<Data Name="param2">
</Data>
<Data Name="param3">{063D34A4-BF84-4B8D-B699-E8CA06504DDE}</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Plug and Play service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21248</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Plug and Play</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The NVIDIA Display Driver Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21249</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">NVIDIA Display Driver Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-IPBusEnum
Date: 2/4/2010 10:45:27 PM
Event ID: 1000
Task Category: None
Level: Information
Keywords: IPBusEnum Event
User: SYSTEM
Computer: Mine
Description:
The network device Provider\Microsoft.Networking.SSDP//uuid:10000000-0000-0000-0200-001DD8AF3098 was successfully added to this computer.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-IPBusEnum" Guid="{cd032e15-15ad-4da4-afc6-03bf83516195}" />
<EventID>1000</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000010</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:27.269Z" />
<EventRecordID>21246</EventRecordID>
<Correlation />
<Execution ProcessID="200" ThreadID="3656" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<UserData>
<ErrorData xmlns:auto-ns3="http://schemas.microsoft.com/win/2004/08/events" xmlns="http://manifests.microsoft.com/win/2004/08/windows/eventlog">
<Device>Provider\Microsoft.Networking.SSDP//uuid:10000000-0000-0000-0200-001DD8AF3098</Device>
</ErrorData>
</UserData>
</Event>
Log Name: System
Source: Microsoft-Windows-Dhcp-Client
Date: 2/4/2010 10:45:08 PM
Event ID: 1103
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Your computer was successfully assigned an address from the network, and it can now connect to other computers.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Dhcp-Client" Guid="{15A7A4F8-0072-4EAB-ABAD-F98A4D666AED}" EventSourceName="Dhcp" />
<EventID Qualifiers="33007">1103</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:08.000Z" />
<EventRecordID>21243</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-ResourcePublication
Date: 2/4/2010 10:45:19 PM
Event ID: 104
Task Category: None
Level: Information
Keywords: Event originating from the fdrespub service
User: LOCAL SERVICE
Computer: Mine
Description:
The service is publishing to the network.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-ResourcePublication" Guid="{74c2135f-cc76-45c3-879a-ef3bb1eeaf86}" />
<EventID>104</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000040</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:19.921Z" />
<EventRecordID>21244</EventRecordID>
<Correlation />
<Execution ProcessID="1136" ThreadID="2284" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-19" />
</System>
<UserData>
<ErrorData xmlns:auto-ns2="http://schemas.microsoft.com/win/2004/08/events" xmlns="http://manifests.microsoft.com/win/2004/08/windows/eventlog">
<Argument>BeginPublication</Argument>
</ErrorData>
</UserData>
</Event>
Log Name: System
Source: Microsoft-Windows-DistributedCOM
Date: 2/4/2010 10:45:27 PM
Event ID: 10029
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
DCOM started the service netman with arguments "" in order to run the server:
{BA126AD1-2166-11D1-B1D0-00805FC1270E}
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
<EventID Qualifiers="49152">10029</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:45:27.000Z" />
<EventRecordID>21245</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">netman</Data>
<Data Name="param2">
</Data>
<Data Name="param3">{BA126AD1-2166-11D1-B1D0-00805FC1270E}</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 9:53:19 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T05:53:19.000Z" />
<EventRecordID>21223</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">WinHTTP Web Proxy Auto-Discovery Service</Data>
<Data Name="param2">stopped</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-FilterManager
Date: 2/4/2010 10:44:44 PM
Event ID: 6
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
File System Filter 'FileInfo' (6.0, 1/18/2008 10:05:23 PM) has successfully loaded and registered with Filter Manager.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-FilterManager" Guid="{f3c5e28e-63f6-49c7-a204-e48a1bc4b09d}" />
<EventID>6</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:44.741Z" />
<EventRecordID>21224</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="FinalStatus">0x0</Data>
<Data Name="DeviceVersionMajor">6</Data>
<Data Name="DeviceVersionMinor">0</Data>
<Data Name="DeviceNameLength">8</Data>
<Data Name="DeviceName">FileInfo</Data>
<Data Name="DeviceTime">2008-01-18T22:05:23.000Z</Data>
</EventData>
</Event>
Log Name: System
Source: Tcpip
Date: 2/4/2010 10:44:44 PM
Event ID: 4201
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system detected that network adapter Loopback Pseudo-Interface 1 was connected to the network, and has initiated normal operation.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Tcpip" />
<EventID Qualifiers="16384">4201</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:44.772Z" />
<EventRecordID>21225</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>Loopback Pseudo-Interface 1</Data>
<Binary>0000000002002C000000000069100040020000000000000000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 9:39:42 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Remote Access Connection Manager service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T05:39:42.000Z" />
<EventRecordID>21222</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Remote Access Connection Manager</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Eventlog
Date: 2/4/2010 9:37:04 PM
Event ID: 104
Task Category: Log clear
Level: Information
Keywords:
User: Mine\Sai
Computer: Mine
Description:
The System log file was cleared.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Eventlog" Guid="{fc65ddd8-d6ef-4962-83d5-6e5cfe9ce148}" />
<EventID>104</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>104</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T05:37:04.099Z" />
<EventRecordID>21219</EventRecordID>
<Correlation />
<Execution ProcessID="196" ThreadID="2500" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-21-2803091251-3216783000-798566973-1000" />
</System>
<UserData>
<LogFileCleared xmlns:auto-ns3="http://schemas.microsoft.com/win/2004/08/events" xmlns="http://manifests.microsoft.com/win/2004/08/windows/eventlog">
<SubjectUserName>Sai</SubjectUserName>
<SubjectDomainName>Mine</SubjectDomainName>
<Channel>System</Channel>
<BackupPath>
</BackupPath>
</LogFileCleared>
</UserData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 9:39:41 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Secure Socket Tunneling Protocol Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T05:39:41.000Z" />
<EventRecordID>21220</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Secure Socket Tunneling Protocol Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 9:39:41 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Telephony service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T05:39:41.000Z" />
<EventRecordID>21221</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Telephony</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Kernel-Processor-Power
Date: 2/4/2010 10:44:51 PM
Event ID: 4
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
Processor 2 exposes the following:
1 idle state(s)
2 performance state(s)
0 throttle state(s)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Processor-Power" Guid="{0f67e49f-fe51-4e9f-b490-6f2948cc6027}" />
<EventID>4</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:51.387Z" />
<EventRecordID>21230</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="72" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="Processor">2</Data>
<Data Name="IdleStateCount">1</Data>
<Data Name="PerfStateCount">2</Data>
<Data Name="ThrottleStateCount">0</Data>
<ComplexData Name="IdleState">01000000</ComplexData>
<ComplexData Name="PerfState">C309000064000000D307000050000000</ComplexData>
</EventData>
</Event>
Log Name: System
Source: Tcpip
Date: 2/4/2010 10:44:54 PM
Event ID: 4201
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system detected that network adapter Local Area Connection was connected to the network, and has initiated normal operation.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Tcpip" />
<EventID Qualifiers="16384">4201</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:54.210Z" />
<EventRecordID>21231</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>Local Area Connection</Data>
<Binary>0000000002002C000000000069100040020000000000000000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Tcpip
Date: 2/4/2010 10:44:54 PM
Event ID: 4201
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system detected that network adapter Local Area Connection was connected to the network, and has initiated normal operation.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Tcpip" />
<EventID Qualifiers="16384">4201</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:54.210Z" />
<EventRecordID>21232</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>Local Area Connection</Data>
<Binary>0000000002002C000000000069100040020000000000000000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Kernel-Processor-Power
Date: 2/4/2010 10:44:51 PM
Event ID: 4
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
Processor 1 exposes the following:
1 idle state(s)
2 performance state(s)
0 throttle state(s)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Processor-Power" Guid="{0f67e49f-fe51-4e9f-b490-6f2948cc6027}" />
<EventID>4</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:51.387Z" />
<EventRecordID>21229</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="72" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="Processor">1</Data>
<Data Name="IdleStateCount">1</Data>
<Data Name="PerfStateCount">2</Data>
<Data Name="ThrottleStateCount">0</Data>
<ComplexData Name="IdleState">01000000</ComplexData>
<ComplexData Name="PerfState">C309000064000000D307000050000000</ComplexData>
</EventData>
</Event>
Log Name: System
Source: Tcpip
Date: 2/4/2010 10:44:44 PM
Event ID: 4201
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system detected that network adapter Loopback Pseudo-Interface 1 was connected to the network, and has initiated normal operation.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Tcpip" />
<EventID Qualifiers="16384">4201</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:44.772Z" />
<EventRecordID>21226</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>Loopback Pseudo-Interface 1</Data>
<Binary>0000000002002C000000000069100040020000000000000000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Kernel-Processor-Power
Date: 2/4/2010 10:44:51 PM
Event ID: 4
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
Processor 0 exposes the following:
1 idle state(s)
2 performance state(s)
0 throttle state(s)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Processor-Power" Guid="{0f67e49f-fe51-4e9f-b490-6f2948cc6027}" />
<EventID>4</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:51.371Z" />
<EventRecordID>21227</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="72" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="Processor">0</Data>
<Data Name="IdleStateCount">1</Data>
<Data Name="PerfStateCount">2</Data>
<Data Name="ThrottleStateCount">0</Data>
<ComplexData Name="IdleState">01000000</ComplexData>
<ComplexData Name="PerfState">C309000064000000D307000050000000</ComplexData>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Kernel-Processor-Power
Date: 2/4/2010 10:44:51 PM
Event ID: 4
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
Processor 3 exposes the following:
1 idle state(s)
2 performance state(s)
0 throttle state(s)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Processor-Power" Guid="{0f67e49f-fe51-4e9f-b490-6f2948cc6027}" />
<EventID>4</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:44:51.387Z" />
<EventRecordID>21228</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="72" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="Processor">3</Data>
<Data Name="IdleStateCount">1</Data>
<Data Name="PerfStateCount">2</Data>
<Data Name="ThrottleStateCount">0</Data>
<ComplexData Name="IdleState">01000000</ComplexData>
<ComplexData Name="PerfState">C309000064000000D307000050000000</ComplexData>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The DCOM Server Process Launcher service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21250</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">DCOM Server Process Launcher</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Network Store Interface Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21269</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Network Store Interface Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The DNS Client service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21270</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">DNS Client</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The DHCP Client service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21271</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">DHCP Client</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The TCP/IP NetBIOS Helper service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21268</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">TCP/IP NetBIOS Helper</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Security Accounts Manager service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21265</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Security Accounts Manager</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Tablet PC Input Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21266</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Tablet PC Input Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21267</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Driver Foundation - User-mode Driver Framework</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Base Filtering Engine service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21276</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Base Filtering Engine</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Firewall service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21277</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Firewall</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Workstation service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21278</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Workstation</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The AVGIDSAgent service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21275</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">AVGIDSAgent</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Shell Hardware Detection service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21272</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Shell Hardware Detection</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Task Scheduler service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21273</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Task Scheduler</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Print Spooler service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21274</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Print Spooler</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Multimedia Class Scheduler service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21255</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Multimedia Class Scheduler</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Process Monitor service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21256</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Process Monitor</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Audio service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21257</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Audio</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Audio Endpoint Builder service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21254</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Audio Endpoint Builder</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Remote Procedure Call (RPC) service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21251</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Remote Procedure Call (RPC)</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Defender service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21252</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Defender</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Event Log service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21253</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Event Log</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The System Event Notification Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21262</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">System Event Notification Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Software Licensing service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21263</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Software Licensing</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Desktop Window Manager Session Manager service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21264</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Desktop Window Manager Session Manager</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The COM+ Event System service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21261</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">COM+ Event System</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The User Profile Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21258</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">User Profile Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Group Policy Client service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21259</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Group Policy Client</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:46:39 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Themes service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:46:39.000Z" />
<EventRecordID>21260</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Themes</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The IKE and AuthIP IPsec Keying Modules service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21413</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">IKE and AuthIP IPsec Keying Modules</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Function Discovery Provider Host service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21414</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Function Discovery Provider Host</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Diagnostic Policy Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21415</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Diagnostic Policy Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Program Compatibility Assistant Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21412</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Program Compatibility Assistant Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Bonjour Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21409</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Bonjour Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The ReadyBoost service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21410</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">ReadyBoost</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Human Interface Device Access service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21411</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Human Interface Device Access</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Apple Mobile Device service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21420</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Apple Mobile Device</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The LVSrvLauncher service entered the stopped state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21421</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">LVSrvLauncher</Data>
<Data Name="param2">stopped</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Secondary Logon service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21422</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Secondary Logon</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Network Location Awareness service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21419</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Network Location Awareness</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Cryptographic Services service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21416</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Cryptographic Services</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The PnkBstrA service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21417</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">PnkBstrA</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Function Discovery Resource Publication service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21418</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Function Discovery Resource Publication</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The AVGIDSAgent service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21399</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">AVGIDSAgent</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Base Filtering Engine service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21400</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Base Filtering Engine</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Firewall service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21401</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Firewall</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Print Spooler service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21398</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Print Spooler</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The DHCP Client service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21395</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">DHCP Client</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Shell Hardware Detection service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21396</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Shell Hardware Detection</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Task Scheduler service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21397</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Task Scheduler</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Application Experience service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21406</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Application Experience</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The AVG8 Firewall service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21407</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">AVG8 Firewall</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The AVGIDSWatcher service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21408</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">AVGIDSWatcher</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Computer Browser service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21405</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Computer Browser</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Workstation service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21402</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Workstation</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The WebClient service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21403</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">WebClient</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Server service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21404</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Server</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The SeaPort service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21423</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">SeaPort</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Network List Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21442</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Network List Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Media Center Extender Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21443</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Media Center Extender Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21445</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">WinHTTP Web Proxy Auto-Discovery Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Yahoo! Updater service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21441</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Yahoo! Updater</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Image Acquisition (WIA) service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21438</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Image Acquisition (WIA)</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The IP Helper service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21439</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">IP Helper</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The PnP-X IP Bus Enumerator service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21440</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">PnP-X IP Bus Enumerator</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Certificate Propagation service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21450</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Certificate Propagation</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Terminal Services Configuration service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21451</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Terminal Services Configuration</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Application Information service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21452</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Application Information</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Search service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21449</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Search</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Diagnostic System Host service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21446</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Diagnostic System Host</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Network Connections service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21447</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Network Connections</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The iPod Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21448</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">iPod Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Distributed Link Tracking Client service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21428</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Distributed Link Tracking Client</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The UPnP Device Host service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21429</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">UPnP Device Host</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Terminal Services service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21430</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Terminal Services</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Superfetch service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21427</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Superfetch</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The IPsec Policy Agent service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21424</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">IPsec Policy Agent</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The SSDP Discovery service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21425</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">SSDP Discovery</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The NVIDIA Stereoscopic 3D Driver Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21426</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">NVIDIA Stereoscopic 3D Driver Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The AVG8 WatchDog service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21435</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">AVG8 WatchDog</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Portable Device Enumerator Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21436</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Portable Device Enumerator Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Search service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21437</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Search</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Live ID Sign-in Assistant service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21434</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Live ID Sign-in Assistant</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Time service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21431</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Time</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Error Reporting Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21432</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Error Reporting Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Management Instrumentation service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21433</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Management Instrumentation</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The DNS Client service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21394</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">DNS Client</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Kernel-Processor-Power
Date: 2/4/2010 11:15:09 PM
Event ID: 4
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
Processor 1 exposes the following:
1 idle state(s)
2 performance state(s)
0 throttle state(s)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Processor-Power" Guid="{0f67e49f-fe51-4e9f-b490-6f2948cc6027}" />
<EventID>4</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:09.607Z" />
<EventRecordID>21352</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="52" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="Processor">1</Data>
<Data Name="IdleStateCount">1</Data>
<Data Name="PerfStateCount">2</Data>
<Data Name="ThrottleStateCount">0</Data>
<ComplexData Name="IdleState">01000000</ComplexData>
<ComplexData Name="PerfState">C309000064000000D307000050000000</ComplexData>
</EventData>
</Event>
Log Name: System
Source: Tcpip
Date: 2/4/2010 11:15:12 PM
Event ID: 4201
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system detected that network adapter Local Area Connection was connected to the network, and has initiated normal operation.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Tcpip" />
<EventID Qualifiers="16384">4201</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:12.430Z" />
<EventRecordID>21353</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>Local Area Connection</Data>
<Binary>0000000002002C000000000069100040020000000000000000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Tcpip
Date: 2/4/2010 11:15:12 PM
Event ID: 4201
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system detected that network adapter Local Area Connection was connected to the network, and has initiated normal operation.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Tcpip" />
<EventID Qualifiers="16384">4201</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:12.430Z" />
<EventRecordID>21354</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>Local Area Connection</Data>
<Binary>0000000002002C000000000069100040020000000000000000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Kernel-Processor-Power
Date: 2/4/2010 11:15:09 PM
Event ID: 4
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
Processor 2 exposes the following:
1 idle state(s)
2 performance state(s)
0 throttle state(s)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Processor-Power" Guid="{0f67e49f-fe51-4e9f-b490-6f2948cc6027}" />
<EventID>4</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:09.607Z" />
<EventRecordID>21351</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="52" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="Processor">2</Data>
<Data Name="IdleStateCount">1</Data>
<Data Name="PerfStateCount">2</Data>
<Data Name="ThrottleStateCount">0</Data>
<ComplexData Name="IdleState">01000000</ComplexData>
<ComplexData Name="PerfState">C309000064000000D307000050000000</ComplexData>
</EventData>
</Event>
Log Name: System
Source: Tcpip
Date: 2/4/2010 11:15:03 PM
Event ID: 4201
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system detected that network adapter Loopback Pseudo-Interface 1 was connected to the network, and has initiated normal operation.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Tcpip" />
<EventID Qualifiers="16384">4201</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:03.772Z" />
<EventRecordID>21348</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>Loopback Pseudo-Interface 1</Data>
<Binary>0000000002002C000000000069100040020000000000000000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Kernel-Processor-Power
Date: 2/4/2010 11:15:09 PM
Event ID: 4
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
Processor 0 exposes the following:
1 idle state(s)
2 performance state(s)
0 throttle state(s)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Processor-Power" Guid="{0f67e49f-fe51-4e9f-b490-6f2948cc6027}" />
<EventID>4</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:09.591Z" />
<EventRecordID>21349</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="52" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="Processor">0</Data>
<Data Name="IdleStateCount">1</Data>
<Data Name="PerfStateCount">2</Data>
<Data Name="ThrottleStateCount">0</Data>
<ComplexData Name="IdleState">01000000</ComplexData>
<ComplexData Name="PerfState">C309000064000000D307000050000000</ComplexData>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Kernel-Processor-Power
Date: 2/4/2010 11:15:09 PM
Event ID: 4
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
Processor 3 exposes the following:
1 idle state(s)
2 performance state(s)
0 throttle state(s)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Processor-Power" Guid="{0f67e49f-fe51-4e9f-b490-6f2948cc6027}" />
<EventID>4</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:09.607Z" />
<EventRecordID>21350</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="52" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="Processor">3</Data>
<Data Name="IdleStateCount">1</Data>
<Data Name="PerfStateCount">2</Data>
<Data Name="ThrottleStateCount">0</Data>
<ComplexData Name="IdleState">01000000</ComplexData>
<ComplexData Name="PerfState">C309000064000000D307000050000000</ComplexData>
</EventData>
</Event>
Log Name: System
Source: Application Popup
Date: 2/4/2010 11:15:14 PM
Event ID: 26
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Application popup: : \??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS failed to load
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Application Popup" />
<EventID Qualifiers="16384">26</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:14.115Z" />
<EventRecordID>21361</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>\??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS failed to load</Data>
<Binary>0000000002003000000000001A000040280400C06C0200C000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-FilterManager
Date: 2/4/2010 11:15:14 PM
Event ID: 6
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
File System Filter 'AvgMfx64' (6.0, 7/1/2009 12:38:25 PM) has successfully loaded and registered with Filter Manager.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-FilterManager" Guid="{f3c5e28e-63f6-49c7-a204-e48a1bc4b09d}" />
<EventID>6</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:14.162Z" />
<EventRecordID>21363</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="FinalStatus">0x0</Data>
<Data Name="DeviceVersionMajor">6</Data>
<Data Name="DeviceVersionMinor">0</Data>
<Data Name="DeviceNameLength">8</Data>
<Data Name="DeviceName">AvgMfx64</Data>
<Data Name="DeviceTime">2009-07-01T12:38:25.000Z</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-FilterManager
Date: 2/4/2010 11:15:21 PM
Event ID: 6
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
File System Filter 'luafv' (6.0, 1/18/2008 9:59:06 PM) has successfully loaded and registered with Filter Manager.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-FilterManager" Guid="{f3c5e28e-63f6-49c7-a204-e48a1bc4b09d}" />
<EventID>6</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:21.010Z" />
<EventRecordID>21364</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="64" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="FinalStatus">0x0</Data>
<Data Name="DeviceVersionMajor">6</Data>
<Data Name="DeviceVersionMinor">0</Data>
<Data Name="DeviceNameLength">5</Data>
<Data Name="DeviceName">luafv</Data>
<Data Name="DeviceTime">2008-01-18T21:59:06.000Z</Data>
</EventData>
</Event>
Log Name: System
Source: Application Popup
Date: 2/4/2010 11:15:14 PM
Event ID: 26
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Application popup: : \??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys failed to load
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Application Popup" />
<EventID Qualifiers="16384">26</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:14.053Z" />
<EventRecordID>21359</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>\??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys failed to load</Data>
<Binary>0000000002003000000000001A000040280400C06C0200C000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: EventLog
Date: 2/4/2010 11:15:21 PM
Event ID: 6009
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Microsoft (R) Windows (R) 6.00. 6002 Service Pack 2 Multiprocessor Free.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6009</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:21.000Z" />
<EventRecordID>21356</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>6.00.</Data>
<Data>6002</Data>
<Data>Service Pack 2</Data>
<Data>Multiprocessor Free</Data>
</EventData>
</Event>
Log Name: System
Source: EventLog
Date: 2/4/2010 11:15:21 PM
Event ID: 6005
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Event log service was started.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6005</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:21.000Z" />
<EventRecordID>21357</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Binary>DA0702000500050007000F00150045030000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: EventLog
Date: 2/4/2010 11:15:21 PM
Event ID: 6013
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system uptime is 23 seconds.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="EventLog" />
<EventID Qualifiers="32768">6013</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:21.000Z" />
<EventRecordID>21358</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>
</Data>
<Data>
</Data>
<Data>
</Data>
<Data>23</Data>
<Data>60</Data>
<Data>480 Pacific Standard Time</Data>
<Binary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inary>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-TBS
Date: 2/4/2010 10:47:27 PM
Event ID: 537
Task Category: None
Level: Information
Keywords:
User: LOCAL SERVICE
Computer: Mine
Description:
A compatible Trusted Platform Module (TPM) Security Device cannot be found on this computer. TBS could not be started.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-TBS" Guid="{51480c1a-90aa-416e-98fd-4c11f735349b}" />
<EventID>537</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:27.087Z" />
<EventRecordID>21338</EventRecordID>
<Correlation />
<Execution ProcessID="1136" ThreadID="4048" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-19" />
</System>
<EventData>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:47:29 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Security Center service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:29.000Z" />
<EventRecordID>21339</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Security Center</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:47:29 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Media Center Service Launcher service entered the stopped state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:29.000Z" />
<EventRecordID>21340</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Media Center Service Launcher</Data>
<Data Name="param2">stopped</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:47:28 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Media Player Network Sharing Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:28.000Z" />
<EventRecordID>21337</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Media Player Network Sharing Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:47:27 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The KtmRm for Distributed Transaction Coordinator service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:27.000Z" />
<EventRecordID>21334</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">KtmRm for Distributed Transaction Coordinator</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:47:27 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The TPM Base Services service entered the stopped state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:27.000Z" />
<EventRecordID>21335</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">TPM Base Services</Data>
<Data Name="param2">stopped</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-WMPNSS-Service
Date: 2/4/2010 10:47:28 PM
Event ID: 14204
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Service 'WMPNetworkSvc' started.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-WMPNSS-Service" Guid="{6A2DC7C1-930A-4FB5-BB44-80B30AEBED6C}" EventSourceName="WMPNetworkSvc" />
<EventID Qualifiers="16397">14204</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:28.000Z" />
<EventRecordID>21336</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="ServiceName">WMPNetworkSvc</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:58:07 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Problem Reports and Solutions Control Panel Support service entered the stopped state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:58:07.000Z" />
<EventRecordID>21345</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Problem Reports and Solutions Control Panel Support</Data>
<Data Name="param2">stopped</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-FilterManager
Date: 2/4/2010 11:15:03 PM
Event ID: 6
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
File System Filter 'FileInfo' (6.0, 1/18/2008 10:05:23 PM) has successfully loaded and registered with Filter Manager.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-FilterManager" Guid="{f3c5e28e-63f6-49c7-a204-e48a1bc4b09d}" />
<EventID>6</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:03.741Z" />
<EventRecordID>21346</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="FinalStatus">0x0</Data>
<Data Name="DeviceVersionMajor">6</Data>
<Data Name="DeviceVersionMinor">0</Data>
<Data Name="DeviceNameLength">8</Data>
<Data Name="DeviceName">FileInfo</Data>
<Data Name="DeviceTime">2008-01-18T22:05:23.000Z</Data>
</EventData>
</Event>
Log Name: System
Source: Tcpip
Date: 2/4/2010 11:15:03 PM
Event ID: 4201
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The system detected that network adapter Loopback Pseudo-Interface 1 was connected to the network, and has initiated normal operation.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Tcpip" />
<EventID Qualifiers="16384">4201</EventID>
<Level>4</Level>
<Task>0</Task>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:03.772Z" />
<EventRecordID>21347</EventRecordID>
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data>
</Data>
<Data>Loopback Pseudo-Interface 1</Data>
<Binary>0000000002002C000000000069100040020000000000000000000000000000000000000000000000</Binary>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:58:07 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Problem Reports and Solutions Control Panel Support service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:58:07.000Z" />
<EventRecordID>21344</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Problem Reports and Solutions Control Panel Support</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-WMPNSS-Service
Date: 2/4/2010 10:47:29 PM
Event ID: 14206
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Media server 'MINE: Sai:' was successfully initialized and is sharing media with network media devices.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-WMPNSS-Service" Guid="{6A2DC7C1-930A-4FB5-BB44-80B30AEBED6C}" EventSourceName="WMPNetworkSvc" />
<EventID Qualifiers="16397">14206</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:29.000Z" />
<EventRecordID>21341</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="FriendlyName">MINE: Sai:</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 10:47:32 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Update service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:47:32.000Z" />
<EventRecordID>21342</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Update</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-DistributedCOM
Date: 2/4/2010 10:58:07 PM
Event ID: 10029
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
DCOM started the service wercplsupport with arguments "" in order to run the server:
{0E9A7BB5-F699-4D66-8A47-B919F5B6A1DB}
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
<EventID Qualifiers="49152">10029</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T06:58:07.000Z" />
<EventRecordID>21343</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">wercplsupport</Data>
<Data Name="param2">
</Data>
<Data Name="param3">{0E9A7BB5-F699-4D66-8A47-B919F5B6A1DB}</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-Dhcp-Client
Date: 2/4/2010 11:15:25 PM
Event ID: 1103
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
Your computer was successfully assigned an address from the network, and it can now connect to other computers.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Dhcp-Client" Guid="{15A7A4F8-0072-4EAB-ABAD-F98A4D666AED}" EventSourceName="Dhcp" />
<EventID Qualifiers="33007">1103</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:25.000Z" />
<EventRecordID>21365</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Themes service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21384</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Themes</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The COM+ Event System service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21385</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">COM+ Event System</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The System Event Notification Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21386</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">System Event Notification Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Group Policy Client service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21383</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Group Policy Client</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Audio Endpoint Builder service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21380</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Audio Endpoint Builder</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Audio service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21381</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Audio</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The User Profile Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21382</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">User Profile Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21391</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Driver Foundation - User-mode Driver Framework</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The TCP/IP NetBIOS Helper service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21392</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">TCP/IP NetBIOS Helper</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Network Store Interface Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21393</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Network Store Interface Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Tablet PC Input Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21390</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Tablet PC Input Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Software Licensing service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21387</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Software Licensing</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Desktop Window Manager Session Manager service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21388</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Desktop Window Manager Session Manager</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Security Accounts Manager service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21389</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Security Accounts Manager</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-DistributedCOM
Date: 2/4/2010 11:15:40 PM
Event ID: 10029
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
DCOM started the service netman with arguments "" in order to run the server:
{BA126AD1-2166-11D1-B1D0-00805FC1270E}
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
<EventID Qualifiers="49152">10029</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:40.000Z" />
<EventRecordID>21370</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">netman</Data>
<Data Name="param2">
</Data>
<Data Name="param3">{BA126AD1-2166-11D1-B1D0-00805FC1270E}</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-IPBusEnum
Date: 2/4/2010 11:15:40 PM
Event ID: 1000
Task Category: None
Level: Information
Keywords: IPBusEnum Event
User: SYSTEM
Computer: Mine
Description:
The network device Provider\Microsoft.Networking.SSDP//uuid:10000000-0000-0000-0200-001DD8AF3098 was successfully added to this computer.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-IPBusEnum" Guid="{cd032e15-15ad-4da4-afc6-03bf83516195}" />
<EventID>1000</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000010</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:40.934Z" />
<EventRecordID>21371</EventRecordID>
<Correlation />
<Execution ProcessID="296" ThreadID="3584" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<UserData>
<ErrorData xmlns:auto-ns3="http://schemas.microsoft.com/win/2004/08/events" xmlns="http://manifests.microsoft.com/win/2004/08/windows/eventlog">
<Device>Provider\Microsoft.Networking.SSDP//uuid:10000000-0000-0000-0200-001DD8AF3098</Device>
</ErrorData>
</UserData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Plug and Play service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21372</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Plug and Play</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-DistributedCOM
Date: 2/4/2010 11:15:40 PM
Event ID: 10029
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
DCOM started the service iPod Service with arguments "" in order to run the server:
{063D34A4-BF84-4B8D-B699-E8CA06504DDE}
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
<EventID Qualifiers="49152">10029</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:40.000Z" />
<EventRecordID>21369</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">iPod Service</Data>
<Data Name="param2">
</Data>
<Data Name="param3">{063D34A4-BF84-4B8D-B699-E8CA06504DDE}</Data>
</EventData>
</Event>
Log Name: System
Source: Microsoft-Windows-ResourcePublication
Date: 2/4/2010 11:15:36 PM
Event ID: 104
Task Category: None
Level: Information
Keywords: Event originating from the fdrespub service
User: LOCAL SERVICE
Computer: Mine
Description:
The service is publishing to the network.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-ResourcePublication" Guid="{74c2135f-cc76-45c3-879a-ef3bb1eeaf86}" />
<EventID>104</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000040</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:36.379Z" />
<EventRecordID>21366</EventRecordID>
<Correlation />
<Execution ProcessID="1132" ThreadID="2244" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-19" />
</System>
<UserData>
<ErrorData xmlns:auto-ns2="http://schemas.microsoft.com/win/2004/08/events" xmlns="http://manifests.microsoft.com/win/2004/08/windows/eventlog">
<Argument>BeginPublication</Argument>
</ErrorData>
</UserData>
</Event>
Log Name: System
Source: Microsoft-Windows-MemoryDiagnostics-Results
Date: 2/4/2010 11:15:37 PM
Event ID: 1101
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
The Windows Memory Diagnostics Tool tested the computer's memory and detected no errors
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-MemoryDiagnostics-Results" Guid="{5f92bc59-248f-4111-86a9-e393e12c6139}" />
<EventID>1101</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:37.019Z" />
<EventRecordID>21367</EventRecordID>
<Correlation />
<Execution ProcessID="3084" ThreadID="3088" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<UserData>
<Results xmlns:auto-ns2="http://schemas.microsoft.com/win/2004/08/events" xmlns="http://manifests.microsoft.com/win/2005/08/windows/Reliability/Postboot/Events">
<LaunchType>BootManager</LaunchType>
<CompletionType>Pass</CompletionType>
<MemorySize>8189</MemorySize>
<TestType>10</TestType>
<TestDuration>760</TestDuration>
<TestCount>12</TestCount>
<NumPagesTested>2095445</NumPagesTested>
<NumPagesUnTested>1896</NumPagesUnTested>
<NumBadPages>0</NumBadPages>
<T1NumBadPages>0</T1NumBadPages>
<T2NumBadPages>0</T2NumBadPages>
<T3NumBadPages>0</T3NumBadPages>
<T4NumBadPages>0</T4NumBadPages>
<T5NumBadPages>0</T5NumBadPages>
<T6NumBadPages>0</T6NumBadPages>
<T7NumBadPages>0</T7NumBadPages>
<T8NumBadPages>0</T8NumBadPages>
<T9NumBadPages>0</T9NumBadPages>
<T10NumBadPages>0</T10NumBadPages>
<T11NumBadPages>0</T11NumBadPages>
<T12NumBadPages>0</T12NumBadPages>
<T13NumBadPages>0</T13NumBadPages>
<T14NumBadPages>0</T14NumBadPages>
<T15NumBadPages>0</T15NumBadPages>
<T16NumBadPages>0</T16NumBadPages>
</Results>
</UserData>
</Event>
Log Name: System
Source: Microsoft-Windows-MemoryDiagnostics-Results
Date: 2/4/2010 11:15:37 PM
Event ID: 1201
Task Category: None
Level: Information
Keywords:
User: SYSTEM
Computer: Mine
Description:
The Windows Memory Diagnostics Tool tested the computer's memory and detected no errors
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-MemoryDiagnostics-Results" Guid="{5f92bc59-248f-4111-86a9-e393e12c6139}" />
<EventID>1201</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x8000000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:15:37.019Z" />
<EventRecordID>21368</EventRecordID>
<Correlation />
<Execution ProcessID="3084" ThreadID="3088" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security UserID="S-1-5-18" />
</System>
<UserData>
<Results xmlns:auto-ns2="http://schemas.microsoft.com/win/2004/08/events" xmlns="http://manifests.microsoft.com/win/2005/08/windows/Reliability/Postboot/Events">
<CompletionType>Pass</CompletionType>
</Results>
</UserData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Event Log service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21377</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Event Log</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Multimedia Class Scheduler service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21378</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Multimedia Class Scheduler</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Process Monitor service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21379</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Process Monitor</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Windows Defender service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21376</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Windows Defender</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The NVIDIA Display Driver Service service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21373</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">NVIDIA Display Driver Service</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The DCOM Server Process Launcher service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21374</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">DCOM Server Process Launcher</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>
Log Name: System
Source: Service Control Manager
Date: 2/4/2010 11:16:58 PM
Event ID: 7036
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Mine
Description:
The Remote Procedure Call (RPC) service entered the running state.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Service Control Manager" Guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" EventSourceName="Service Control Manager" />
<EventID Qualifiers="16384">7036</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2010-02-05T07:16:58.000Z" />
<EventRecordID>21375</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>System</Channel>
<Computer>Mine</Computer>
<Security />
</System>
<EventData>
<Data Name="param1">Remote Procedure Call (RPC)</Data>
<Data Name="param2">running</Data>
</EventData>
</Event>