Advertisement
Guest User

Untitled

a guest
May 28th, 2016
346
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 9.99 KB | None | 0 0
  1. Log Name: System
  2. Source: Microsoft-Windows-Power-Troubleshooter
  3. Date: 5/28/2016 3:29:40 AM
  4. Event ID: 1
  5. Task Category: None
  6. Level: Information
  7. Keywords:
  8. User: LOCAL SERVICE
  9. Computer: Eric-Desktop
  10. Description:
  11. The system has returned from a low power state.
  12.  
  13. Sleep Time: ‎2016‎-‎05‎-‎28T04:27:23.250520800Z
  14. Wake Time: ‎2016‎-‎05‎-‎28T08:29:32.029485100Z
  15.  
  16. Wake Source: Unknown
  17. Event Xml:
  18. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  19. <System>
  20. <Provider Name="Microsoft-Windows-Power-Troubleshooter" Guid="{CDC05E28-C449-49C6-B9D2-88CF761644DF}" />
  21. <EventID>1</EventID>
  22. <Version>2</Version>
  23. <Level>4</Level>
  24. <Task>0</Task>
  25. <Opcode>0</Opcode>
  26. <Keywords>0x8000000000000000</Keywords>
  27. <TimeCreated SystemTime="2016-05-28T08:29:40.244918800Z" />
  28. <EventRecordID>891</EventRecordID>
  29. <Correlation ActivityID="{CE1ECDF6-8CB1-425B-A30A-C2CBDC05D740}" />
  30. <Execution ProcessID="1352" ThreadID="6512" />
  31. <Channel>System</Channel>
  32. <Computer>Eric-Desktop</Computer>
  33. <Security UserID="S-1-5-19" />
  34. </System>
  35. <EventData>
  36. <Data Name="SleepTime">2016-05-28T04:27:23.250520800Z</Data>
  37. <Data Name="WakeTime">2016-05-28T08:29:32.029485100Z</Data>
  38. <Data Name="SleepDuration">745</Data>
  39. <Data Name="WakeDuration">533</Data>
  40. <Data Name="DriverInitDuration">480</Data>
  41. <Data Name="BiosInitDuration">1613</Data>
  42. <Data Name="HiberWriteDuration">2378</Data>
  43. <Data Name="HiberReadDuration">0</Data>
  44. <Data Name="HiberPagesWritten">250560</Data>
  45. <Data Name="Attributes">16641</Data>
  46. <Data Name="TargetState">4</Data>
  47. <Data Name="EffectiveState">5</Data>
  48. <Data Name="WakeSourceType">0</Data>
  49. <Data Name="WakeSourceTextLength">0</Data>
  50. <Data Name="WakeSourceText">
  51. </Data>
  52. <Data Name="WakeTimerOwnerLength">0</Data>
  53. <Data Name="WakeTimerContextLength">0</Data>
  54. <Data Name="NoMultiStageResumeReason">0</Data>
  55. <Data Name="WakeTimerOwner">
  56. </Data>
  57. <Data Name="WakeTimerContext">
  58. </Data>
  59. </EventData>
  60. </Event>
  61.  
  62. Log Name: System
  63. Source: e1dexpress
  64. Date: 5/28/2016 3:29:35 AM
  65. Event ID: 32
  66. Task Category: None
  67. Level: Information
  68. Keywords: Classic
  69. User: N/A
  70. Computer: Eric-Desktop
  71. Description:
  72. Intel(R) Ethernet Connection (2) I219-V
  73. Network link has been established at 1Gbps full duplex.
  74.  
  75. Event Xml:
  76. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  77. <System>
  78. <Provider Name="e1dexpress" />
  79. <EventID Qualifiers="24580">32</EventID>
  80. <Level>4</Level>
  81. <Task>0</Task>
  82. <Keywords>0x80000000000000</Keywords>
  83. <TimeCreated SystemTime="2016-05-28T08:29:35.111437900Z" />
  84. <EventRecordID>890</EventRecordID>
  85. <Channel>System</Channel>
  86. <Computer>Eric-Desktop</Computer>
  87. <Security />
  88. </System>
  89. <EventData>
  90. <Data>
  91. </Data>
  92. <Data>Intel(R) Ethernet Connection (2) I219-V</Data>
  93. <Binary>0000040002003000000000002000046000000000000000000000000000000000000000000000000020000460</Binary>
  94. </EventData>
  95. </Event>
  96.  
  97. Log Name: System
  98. Source: Microsoft-Windows-Kernel-Power
  99. Date: 5/28/2016 3:29:32 AM
  100. Event ID: 131
  101. Task Category: (33)
  102. Level: Information
  103. Keywords: (4)
  104. User: N/A
  105. Computer: Eric-Desktop
  106. Description:
  107. Firmware S3 times. ResumeCount: 1, FullResume: 1574, AverageResume: 1574
  108. Event Xml:
  109. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  110. <System>
  111. <Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
  112. <EventID>131</EventID>
  113. <Version>0</Version>
  114. <Level>4</Level>
  115. <Task>33</Task>
  116. <Opcode>0</Opcode>
  117. <Keywords>0x8000000000000004</Keywords>
  118. <TimeCreated SystemTime="2016-05-28T08:29:32.000768800Z" />
  119. <EventRecordID>889</EventRecordID>
  120. <Correlation />
  121. <Execution ProcessID="4" ThreadID="3408" />
  122. <Channel>System</Channel>
  123. <Computer>Eric-Desktop</Computer>
  124. <Security />
  125. </System>
  126. <EventData>
  127. <Data Name="ResumeCount">1</Data>
  128. <Data Name="FullResume">1574</Data>
  129. <Data Name="AverageResume">1574</Data>
  130. </EventData>
  131. </Event>
  132.  
  133. Log Name: System
  134. Source: Microsoft-Windows-Kernel-General
  135. Date: 5/28/2016 3:29:31 AM
  136. Event ID: 1
  137. Task Category: None
  138. Level: Information
  139. Keywords: Time
  140. User: N/A
  141. Computer: Eric-Desktop
  142. Description:
  143. The system time has changed to ‎2016‎-‎05‎-‎28T08:29:31.500000000Z from ‎2016‎-‎05‎-‎28T04:27:25.256022200Z.
  144.  
  145. Change Reason: System time synchronized with the hardware clock.
  146. Event Xml:
  147. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  148. <System>
  149. <Provider Name="Microsoft-Windows-Kernel-General" Guid="{A68CA8B7-004F-D7B6-A698-07E2DE0F1F5D}" />
  150. <EventID>1</EventID>
  151. <Version>1</Version>
  152. <Level>4</Level>
  153. <Task>0</Task>
  154. <Opcode>0</Opcode>
  155. <Keywords>0x8000000000000010</Keywords>
  156. <TimeCreated SystemTime="2016-05-28T08:29:31.499948300Z" />
  157. <EventRecordID>888</EventRecordID>
  158. <Correlation />
  159. <Execution ProcessID="4" ThreadID="3408" />
  160. <Channel>System</Channel>
  161. <Computer>Eric-Desktop</Computer>
  162. <Security />
  163. </System>
  164. <EventData>
  165. <Data Name="NewTime">2016-05-28T08:29:31.500000000Z</Data>
  166. <Data Name="OldTime">2016-05-28T04:27:25.256022200Z</Data>
  167. <Data Name="Reason">2</Data>
  168. </EventData>
  169. </Event>
  170.  
  171. Log Name: System
  172. Source: Microsoft-Windows-Kernel-Power
  173. Date: 5/27/2016 11:27:25 PM
  174. Event ID: 107
  175. Task Category: (102)
  176. Level: Information
  177. Keywords: (70368744177664),(64),(4)
  178. User: N/A
  179. Computer: Eric-Desktop
  180. Description:
  181. The system has resumed from sleep.
  182. Event Xml:
  183. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  184. <System>
  185. <Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
  186. <EventID>107</EventID>
  187. <Version>1</Version>
  188. <Level>4</Level>
  189. <Task>102</Task>
  190. <Opcode>0</Opcode>
  191. <Keywords>0x8000400000000044</Keywords>
  192. <TimeCreated SystemTime="2016-05-28T04:27:25.255914100Z" />
  193. <EventRecordID>887</EventRecordID>
  194. <Correlation />
  195. <Execution ProcessID="4" ThreadID="3408" />
  196. <Channel>System</Channel>
  197. <Computer>Eric-Desktop</Computer>
  198. <Security />
  199. </System>
  200. <EventData>
  201. <Data Name="TargetState">4</Data>
  202. <Data Name="EffectiveState">5</Data>
  203. <Data Name="WakeFromState">4</Data>
  204. <Data Name="ProgrammedWakeTimeAc">1601-01-01T00:00:00.000000000Z</Data>
  205. <Data Name="ProgrammedWakeTimeDc">2016-05-28T03:29:30.000000100Z</Data>
  206. <Data Name="WakeRequesterTypeAc">0</Data>
  207. <Data Name="WakeRequesterTypeDc">2</Data>
  208. </EventData>
  209. </Event>
  210.  
  211. Log Name: System
  212. Source: Microsoft-Windows-Kernel-Power
  213. Date: 5/27/2016 11:27:23 PM
  214. Event ID: 42
  215. Task Category: (64)
  216. Level: Information
  217. Keywords: (70368744177664),(4)
  218. User: N/A
  219. Computer: Eric-Desktop
  220. Description:
  221. The system is entering sleep.
  222.  
  223. Sleep Reason: Application API
  224. Event Xml:
  225. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  226. <System>
  227. <Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
  228. <EventID>42</EventID>
  229. <Version>2</Version>
  230. <Level>4</Level>
  231. <Task>64</Task>
  232. <Opcode>0</Opcode>
  233. <Keywords>0x8000400000000004</Keywords>
  234. <TimeCreated SystemTime="2016-05-28T04:27:23.845309900Z" />
  235. <EventRecordID>886</EventRecordID>
  236. <Correlation />
  237. <Execution ProcessID="4" ThreadID="3408" />
  238. <Channel>System</Channel>
  239. <Computer>Eric-Desktop</Computer>
  240. <Security />
  241. </System>
  242. <EventData>
  243. <Data Name="TargetState">4</Data>
  244. <Data Name="EffectiveState">5</Data>
  245. <Data Name="Reason">4</Data>
  246. <Data Name="Flags">0</Data>
  247. </EventData>
  248. </Event>
  249.  
  250. Log Name: System
  251. Source: Microsoft-Windows-DistributedCOM
  252. Date: 5/27/2016 11:27:23 PM
  253. Event ID: 10016
  254. Task Category: None
  255. Level: Error
  256. Keywords: Classic
  257. User: SYSTEM
  258. Computer: Eric-Desktop
  259. Description:
  260. The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
  261. {D63B10C5-BB46-4990-A94F-E40B9D520160}
  262. and APPID
  263. {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
  264. to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
  265. Event Xml:
  266. <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  267. <System>
  268. <Provider Name="Microsoft-Windows-DistributedCOM" Guid="{1B562E86-B7AA-4131-BADC-B6F3A001407E}" EventSourceName="DCOM" />
  269. <EventID Qualifiers="0">10016</EventID>
  270. <Version>0</Version>
  271. <Level>2</Level>
  272. <Task>0</Task>
  273. <Opcode>0</Opcode>
  274. <Keywords>0x8080000000000000</Keywords>
  275. <TimeCreated SystemTime="2016-05-28T04:27:23.584795100Z" />
  276. <EventRecordID>885</EventRecordID>
  277. <Correlation />
  278. <Execution ProcessID="916" ThreadID="6096" />
  279. <Channel>System</Channel>
  280. <Computer>Eric-Desktop</Computer>
  281. <Security UserID="S-1-5-18" />
  282. </System>
  283. <EventData>
  284. <Data Name="param1">application-specific</Data>
  285. <Data Name="param2">Local</Data>
  286. <Data Name="param3">Activation</Data>
  287. <Data Name="param4">{D63B10C5-BB46-4990-A94F-E40B9D520160}</Data>
  288. <Data Name="param5">{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}</Data>
  289. <Data Name="param6">NT AUTHORITY</Data>
  290. <Data Name="param7">SYSTEM</Data>
  291. <Data Name="param8">S-1-5-18</Data>
  292. <Data Name="param9">LocalHost (Using LRPC)</Data>
  293. <Data Name="param10">Unavailable</Data>
  294. <Data Name="param11">Unavailable</Data>
  295. </EventData>
  296. </Event>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement