iFestor

Application Events

May 2nd, 2017
66
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 29.99 KB | None | 0 0
  1. Level Date and Time Source Event ID Task Category
  2. Information 5/2/2017 7:55:29 PM Windows Error Reporting 1001 None "Fault bucket BAD_DUMPFILE, type 0
  3. Event Name: LiveKernelEvent
  4. Response: Not available
  5. Cab Id: 93611cfb-8fa5-43ac-8dac-e19e49fd915c
  6.  
  7. Problem signature:
  8. P1: 141
  9. P2: ffffd2803adb6010
  10. P3: fffff80ad5047880
  11. P4: 0
  12. P5: 1c08
  13. P6: 10_0_15063
  14. P7: 0_0
  15. P8: 768_1
  16. P9:
  17. P10:
  18.  
  19. Attached files:
  20. \\?\C:\Windows\LiveKernelReports\WATCHDOG\WATCHDOG-20170502-1951.dmp
  21. \\?\C:\Windows\Temp\WER-11560718-0.sysdata.xml
  22. \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6ECF.tmp.WERInternalMetadata.xml
  23. \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6EE6.tmp.csv
  24. \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6EF7.tmp.txt
  25.  
  26. These files may be available here:
  27. C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_141_dc57797637c8dd70f75ca138215539a8d65e5_00000000_cab_1b6b1a20
  28.  
  29. Analysis symbol:
  30. Rechecking for solution: 0
  31. Report Id: aa8d2137-3edc-4724-a7a2-e26547dc9577
  32. Report Status: 268435456
  33. Hashed bucket: "
  34. Information 5/2/2017 7:55:25 PM Windows Error Reporting 1001 None "Fault bucket LKD_0x141_Tdr:6_IMAGE_nvlddmkm.sys_Kepler_DmaCopy1, type 0
  35. Event Name: LiveKernelEvent
  36. Response: Not available
  37. Cab Id: 6a4acac3-1bd5-4780-818c-553c5ea2b167
  38.  
  39. Problem signature:
  40. P1: 141
  41. P2: ffffd2803adb6010
  42. P3: fffff80ad5047880
  43. P4: 0
  44. P5: 1c08
  45. P6: 10_0_15063
  46. P7: 0_0
  47. P8: 768_1
  48. P9:
  49. P10:
  50.  
  51. Attached files:
  52. \\?\C:\Windows\LiveKernelReports\WATCHDOG\WATCHDOG-20170502-1951.dmp
  53. \\?\C:\Windows\Temp\WER-11557578-0.sysdata.xml
  54. \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER6058.tmp.WERInternalMetadata.xml
  55. \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER605E.tmp.csv
  56. \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER606E.tmp.txt
  57. \\?\C:\Windows\Temp\WER9E8.tmp.WERDataCollectionStatus.txt
  58.  
  59. These files may be available here:
  60. C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_141_dc57797637c8dd70f75ca138215539a8d65e5_00000000_cab_1b6b0aee
  61.  
  62. Analysis symbol:
  63. Rechecking for solution: 0
  64. Report Id: 917a06ab-24be-4a9f-8fce-397b7cb567e4
  65. Report Status: 268435456
  66. Hashed bucket: "
  67. Information 5/2/2017 7:55:17 PM Windows Error Reporting 1001 None "Fault bucket LKD_0x141_Tdr:6_IMAGE_nvlddmkm.sys_Kepler_DmaCopy1, type 0
  68. Event Name: LiveKernelEvent
  69. Response: Not available
  70. Cab Id: 1c6e8396-7887-40a9-89ef-1aaec0176b58
  71.  
  72. Problem signature:
  73. P1: 141
  74. P2: ffffd2803adb6010
  75. P3: fffff80ad5047880
  76. P4: 0
  77. P5: 1c08
  78. P6: 10_0_15063
  79. P7: 0_0
  80. P8: 768_1
  81. P9:
  82. P10:
  83.  
  84. Attached files:
  85. \\?\C:\Windows\LiveKernelReports\WATCHDOG\WATCHDOG-20170502-1951.dmp
  86. \\?\C:\Windows\Temp\WER-11554515-0.sysdata.xml
  87. \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5442.tmp.WERInternalMetadata.xml
  88. \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5455.tmp.csv
  89. \\?\C:\ProgramData\Microsoft\Windows\WER\Temp\WER5476.tmp.txt
  90. \\?\C:\Windows\Temp\WEREA47.tmp.WERDataCollectionStatus.txt
  91.  
  92. These files may be available here:
  93. C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_141_dc57797637c8dd70f75ca138215539a8d65e5_00000000_cab_1b6aeb40
  94.  
  95. Analysis symbol:
  96. Rechecking for solution: 0
  97. Report Id: 235de85a-4a9c-40fc-9706-9c5f5d7a0ba6
  98. Report Status: 268435456
  99. Hashed bucket: "
  100. Information 5/2/2017 7:54:43 PM Microsoft-Windows-Security-SPP 903 None "The Software Protection service has stopped.
  101. "
  102. Information 5/2/2017 7:54:43 PM Microsoft-Windows-Security-SPP 16384 None Successfully scheduled Software Protection service for re-start at 2117-04-09T02:54:43Z. Reason: RulesEngine.
  103. Information 5/2/2017 7:54:14 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  104. Information 5/2/2017 7:54:14 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  105. Information 5/2/2017 7:54:13 PM Microsoft-Windows-Security-SPP 902 None "The Software Protection service has started.
  106. 10.0.15063.0"
  107. Information 5/2/2017 7:54:13 PM Microsoft-Windows-Security-SPP 1003 None "The Software Protection service has completed licensing status check.
  108. Application Id=55c92734-d682-4d71-983e-d6ec3f16059f
  109. Licensing Status=
  110. 1: 0567073a-7d74-403b-b2d5-6b35da372d8d, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  111. 2: 1b750385-9fe2-49a8-ab55-149d0546395b, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  112. 3: 1d873132-f09f-4eb2-bf5a-2e4fb48935e8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  113. 4: 2b1f36bb-c1cd-4306-bf5c-a0367c2d97d8, 1, 0 [(0 )(1 )(2 [0x00000000, 1, 0], [(?)( 1 0x00000000)(?)(?)(?)(?)( 10 0x00000000 msft:rm/algorithm/flags/1.0)(?)])(3 )]
  114. 5: 30d469c6-a78f-4476-b5c8-af78d5b6a5fb, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  115. 6: 411b3d4f-be6d-4a06-baaa-9cabfc256cae, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  116. 7: 58e97c99-f377-4ef1-81d5-4ad5522b5fd8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  117. 8: 74436dbb-cc17-46de-867f-14906ba4a938, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  118. 9: 8db63db6-4f8f-46d6-a448-66444faaaa72, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  119. 10: e371d89a-73e8-4b24-a7ff-23a3641dd18e, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  120.  
  121. "
  122. Information 5/2/2017 7:54:13 PM Microsoft-Windows-Security-SPP 1033 None "These policies are being excluded since they are only defined with override-only attribute.
  123. Policy Names=(Security-SPP-Reserved-EnableNotificationMode)
  124. App Id=55c92734-d682-4d71-983e-d6ec3f16059f
  125. Sku Id=2b1f36bb-c1cd-4306-bf5c-a0367c2d97d8"
  126. Information 5/2/2017 7:54:13 PM Microsoft-Windows-Security-SPP 1034 None Duplicate definition of policy found. Policy name=Security-SPP-WriteWauMarker Priority=500
  127. Information 5/2/2017 7:54:12 PM SecurityCenter 1 None The Windows Security Center Service has started.
  128. Information 5/2/2017 7:54:12 PM Microsoft-Windows-Security-SPP 1066 None "Initialization status for service objects.
  129. C:\Windows\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
  130. C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/inherited/1.0, 0x00000000, 0x00000000
  131. C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
  132. C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/pkey/detect, 0x00000000, 0x00000000
  133. C:\Windows\system32\sppobjs.dll, msft:spp/ActionScheduler/1.0, 0x00000000, 0x00000000
  134. C:\Windows\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
  135. C:\Windows\system32\sppobjs.dll, msft:spp/statecollector/pkey, 0x00000000, 0x00000000
  136. C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
  137. C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/activationinfo/1.0, 0x00000000, 0x00000000
  138. "
  139. Information 5/2/2017 7:54:12 PM Microsoft-Windows-Security-SPP 900 None "The Software Protection service is starting.
  140. Parameters:<explicit>"
  141. Information 5/2/2017 7:52:13 PM Microsoft-Windows-Search 1003 Search service The Windows Search Service started.
  142.  
  143. Information 5/2/2017 7:52:12 PM Microsoft-Windows-WMI 5617 None Windows Management Instrumentation Service subsystems initialized successfully
  144. Information 5/2/2017 7:52:11 PM Microsoft-Windows-WMI 5615 None Windows Management Instrumentation Service started sucessfully
  145. Information 5/2/2017 7:52:12 PM RazerGameScanner 0 None Service started successfully.
  146. Information 5/2/2017 7:52:12 PM ESENT 326 General "SearchIndexer (4228) Windows: The database engine attached a database (1, C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb). (Time=0 seconds)
  147.  
  148. Saved Cache: 0 0
  149. Additional Data: lgposAttach = 0000A3,0074,0268
  150.  
  151. Internal Timing Sequence:
  152. [1] 0.000002 +J(0)
  153. [2] 0.000364 +J(0) +M(C:0K, Fs:24, WS:32K # 0K, PF:32K # 0K, P:32K)
  154. [3] 0.005002 +J(CM:0, PgRf:0, Rd:0/0, Dy:0/0, Lg:3480/2) +M(C:0K, Fs:17, WS:36K # 0K, PF:32K # 0K, P:32K)
  155. [4] 0.000128 +J(0)
  156. [5] -
  157. [6] -
  158. [7] 0.018334 -0.000366 (2) CM +J(CM:2, PgRf:2, Rd:16/2, Dy:0/0, Lg:0/0) +M(C:0K, Fs:30, WS:120K # 0K, PF:528K # 0K, P:528K)
  159. [8] 0.000680 -0.000294 (5) CM +J(CM:5, PgRf:23, Rd:0/5, Dy:0/0, Lg:0/0) +M(C:0K, Fs:56, WS:224K # 0K, PF:224K # 0K, P:224K)
  160. [9] 0.000412 -0.000318 (1) CM +J(CM:1, PgRf:40, Rd:0/1, Dy:0/0, Lg:0/0) +M(C:0K, Fs:9, WS:36K # 0K, PF:32K # 0K, P:32K)
  161. [10] 0.000016 +J(CM:0, PgRf:1, Rd:0/0, Dy:0/0, Lg:0/0)
  162. [11] 0.000048 +J(CM:0, PgRf:42, Rd:0/0, Dy:0/0, Lg:0/0) +M(C:0K, Fs:4, WS:16K # 0K, PF:0K # 0K, P:0K)
  163. [12] 0.000001 +J(0)
  164. [13] 0.0 +J(0)
  165. [14] 0.000006 +J(CM:0, PgRf:1, Rd:0/0, Dy:0/0, Lg:0/0)."
  166. Information 5/2/2017 7:52:12 PM ESENT 105 General "SearchIndexer (4228) Windows: The database engine started a new instance (0). (Time=0 seconds)
  167.  
  168. Additional Data:
  169. lgposV2[] = 000000A3:003B:0000 - 000000A3:0071:04C8 - 00000000:0000:0000 - 000000A3:0072:0000 (00000000:0000:0000)
  170. cReInits = 1
  171.  
  172.  
  173. Internal Timing Sequence:
  174. [1] 0.008245 +J(0) +M(C:0K, Fs:332, WS:1308K # 1308K, PF:8080K # 8080K, P:8080K)
  175. [2] 0.000794 +J(0) +M(C:10240K, Fs:115, WS:460K # 460K, PF:424K # 424K, P:424K)
  176. [3] 0.002247 +J(0) +M(C:0K, Fs:10, WS:40K # 40K, PF:64K # 64K, P:64K)
  177. [4] 0.000757 +J(0) +M(C:0K, Fs:32, WS:124K # 124K, PF:232K # 232K, P:232K)
  178. [5] 0.001215 +J(0) +M(C:0K, Fs:9, WS:36K # 36K, PF:20K # 20K, P:20K)
  179. [6] 0.001279 +J(0) +M(C:0K, Fs:43, WS:164K # 164K, PF:24K # 24K, P:24K)
  180. [7] 0.003879 +J(0) +M(C:0K, Fs:274, WS:1092K # 1092K, PF:1028K # 1028K, P:1028K)
  181. [8] 0.022015 -0.009075 (28) CM +J(CM:28, PgRf:804, Rd:0/28, Dy:20/1559, Lg:218819/3156) +M(C:0K, Fs:622, WS:2368K # 2368K, PF:2428K # 2428K, P:2428K)
  182. [9] -
  183. [10] 0.000478 +J(0) +M(C:0K, Fs:0, WS:-1020K # 0K, PF:-1020K # 0K, P:-1020K)
  184. [11] 0.000189 +J(CM:0, PgRf:0, Rd:0/0, Dy:0/0, Lg:49/1) +M(C:0K, Fs:4, WS:16K # 0K, PF:0K # 0K, P:0K)
  185. [12] 0.037488 -0.000002 (20) CM +J(CM:20, PgRf:0, Rd:0/20, Dy:0/0, Lg:0/0) +M(C:0K, Fs:90, WS:20K # 0K, PF:0K # 0K, P:0K)
  186. [13] 0.027183 -0.002319 (2) CM +J(CM:2, PgRf:2, Rd:0/2, Dy:0/0, Lg:8759/5) +M(C:0K, Fs:309, WS:-1700K # 0K, PF:-984K # 0K, P:-984K)
  187. [14] 0.000016 +J(0)
  188. [15] 0.000018 +J(0)
  189. [16] 0.000081 +J(0) +M(C:0K, Fs:2, WS:0K # 0K, PF:0K # 0K, P:0K)."
  190. Information 5/2/2017 7:52:12 PM ESENT 302 Logging/Recovery SearchIndexer (4228) Windows: The database engine has successfully completed recovery steps.
  191. Information 5/2/2017 7:52:12 PM ESENT 301 Logging/Recovery "SearchIndexer (4228) Windows: The database engine has begun replaying logfile C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb.jtx.
  192.  
  193. Previous Log Processing Stats: "
  194. Information 5/2/2017 7:52:12 PM ESENT 300 Logging/Recovery SearchIndexer (4228) Windows: The database engine is initiating recovery steps.
  195. Information 5/2/2017 7:52:12 PM ESENT 102 General SearchIndexer (4228) Windows: The database engine (10.00.15063.0000) is starting a new instance (0).
  196. Information 5/2/2017 7:52:12 PM IpOverUsbSvc 0 None Service started successfully.
  197. Information 5/2/2017 7:52:11 PM Microsoft-Windows-User Profiles Service 1531 None "The User Profile Service has started successfully.
  198.  
  199. "
  200. Information 5/2/2017 7:52:11 PM Microsoft-Windows-EventSystem 4625 None The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds. The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.
  201. Error 5/2/2017 7:15:23 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm64\filetypeverifier.exe"". Dependent Assembly Microsoft.Windows.Common-Controls,language=""&#x2a;"",processorArchitecture=""arm64"",publicKeyToken=""6595b64144ccf1df"",type=""win32"",version=""6.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
  202. Error 5/2/2017 7:15:23 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm64\oleview.exe"". Dependent Assembly Microsoft.Windows.Common-Controls,language=""&#x2a;"",processorArchitecture=""arm64"",publicKeyToken=""6595b64144ccf1df"",type=""win32"",version=""6.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
  203. Error 5/2/2017 7:15:22 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm\signtool.exe.Manifest"". Dependent Assembly Microsoft.Windows.Build.Appx.AppxSip.dll,version=""0.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
  204. Error 5/2/2017 7:15:22 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm64\signtool.exe.Manifest"". Dependent Assembly Microsoft.Windows.Build.Appx.AppxSip.dll,version=""0.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
  205. Error 5/2/2017 6:22:55 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm64\filetypeverifier.exe"". Dependent Assembly Microsoft.Windows.Common-Controls,language=""&#x2a;"",processorArchitecture=""arm64"",publicKeyToken=""6595b64144ccf1df"",type=""win32"",version=""6.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
  206. Error 5/2/2017 6:22:54 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm64\oleview.exe"". Dependent Assembly Microsoft.Windows.Common-Controls,language=""&#x2a;"",processorArchitecture=""arm64"",publicKeyToken=""6595b64144ccf1df"",type=""win32"",version=""6.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
  207. Error 5/2/2017 6:22:50 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm\signtool.exe.Manifest"". Dependent Assembly Microsoft.Windows.Build.Appx.AppxSip.dll,version=""0.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
  208. Error 5/2/2017 6:22:50 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm64\signtool.exe.Manifest"". Dependent Assembly Microsoft.Windows.Build.Appx.AppxSip.dll,version=""0.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
  209. Information 5/2/2017 6:20:14 PM VSS 8224 None The VSS service is shutting down due to idle timeout.
  210. Information 5/2/2017 6:17:32 PM MsiInstaller 1033 None Windows Installer installed the product. Product Name: Python 2.7.13 (64-bit). Product Version: 2.7.13150. Product Language: 1033. Manufacturer: Python Software Foundation. Installation success or error status: 0.
  211. Information 5/2/2017 6:17:32 PM MsiInstaller 11707 None Product: Python 2.7.13 (64-bit) -- Installation completed successfully.
  212. Information 5/2/2017 6:17:29 PM Microsoft-Windows-RestartManager 10001 None Ending session 0 started ‎2017‎-‎05‎-‎03T01:17:16.243339800Z.
  213. Information 5/2/2017 6:17:29 PM MsiInstaller 1042 None Ending a Windows Installer transaction: D:\Users\Jai\Downloads\python-2.7.13.amd64.msi. Client Process Id: 14392.
  214. Information 5/2/2017 6:17:16 PM Microsoft-Windows-RestartManager 10000 None Starting session 0 - ‎2017‎-‎05‎-‎03T01:17:16.243339800Z.
  215. Information 5/2/2017 6:17:14 PM System Restore 8216 None Skipping creation of restore point (Process = C:\Windows\system32\msiexec.exe /V; Description = Installed Python 2.7.13 (64-bit)) as there is a restore point avaliable which is recent enough for System Restore.
  216. Information 5/2/2017 6:17:14 PM MsiInstaller 1040 None Beginning a Windows Installer transaction: D:\Users\Jai\Downloads\python-2.7.13.amd64.msi. Client Process Id: 14392.
  217. Information 5/2/2017 6:16:32 PM Microsoft-Windows-CAPI2 4097 None Successful auto update of third-party root certificate:: Subject: <CN=StartCom Certification Authority, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL> Sha1 thumbprint: <3E2BF7F2031B96F38CE6C4D8A85D3E2D58476A0F>.
  218. Information 5/2/2017 6:15:18 PM MsiInstaller 1034 None Windows Installer removed the product. Product Name: Python 2.7 (64-bit). Product Version: 2.7.150. Product Language: 1033. Manufacturer: Python Software Foundation. Removal success or error status: 0.
  219. Information 5/2/2017 6:15:18 PM MsiInstaller 11724 None Product: Python 2.7 (64-bit) -- Removal completed successfully.
  220. Information 5/2/2017 6:15:15 PM Microsoft-Windows-RestartManager 10001 None Ending session 0 started ‎2017‎-‎05‎-‎03T01:15:02.235419300Z.
  221. Information 5/2/2017 6:15:15 PM MsiInstaller 1042 None Ending a Windows Installer transaction: D:\Users\Jai\Downloads\python-2.7.amd64.msi. Client Process Id: 392.
  222. Information 5/2/2017 6:15:02 PM Microsoft-Windows-RestartManager 10000 None Starting session 0 - ‎2017‎-‎05‎-‎03T01:15:02.235419300Z.
  223. Information 5/2/2017 6:15:02 PM System Restore 8216 None Skipping creation of restore point (Process = C:\Windows\system32\msiexec.exe /V; Description = Removed Python 2.7 (64-bit)) as there is a restore point avaliable which is recent enough for System Restore.
  224. Information 5/2/2017 6:15:02 PM MsiInstaller 1040 None Beginning a Windows Installer transaction: D:\Users\Jai\Downloads\python-2.7.amd64.msi. Client Process Id: 392.
  225. Information 5/2/2017 4:55:45 PM VSS 8224 None The VSS service is shutting down due to idle timeout.
  226. Information 5/2/2017 4:52:00 PM VSS 8224 None The VSS service is shutting down due to idle timeout.
  227. Information 5/2/2017 4:51:30 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  228. Information 5/2/2017 4:51:30 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  229. Information 5/2/2017 4:49:01 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  230. Information 5/2/2017 4:49:01 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  231. Information 5/2/2017 4:48:58 PM ESENT 326 General "svchost (8728) DS_Token_DB: The database engine attached a database (1, C:\Windows\system32\config\systemprofile\AppData\Local\DataSharing\Storage\DSTokenDB2.dat). (Time=0 seconds)
  232.  
  233. Saved Cache: 1 0
  234. Additional Data: lgposAttach = 000002,0005,0268
  235.  
  236. Internal Timing Sequence:
  237. [1] 0.000001 +J(0)
  238. [2] 0.000414 +J(0) +M(C:0K, Fs:17, WS:4K # 0K, PF:4K # 0K, P:4K)
  239. [3] 0.002171 +J(CM:0, PgRf:0, Rd:0/0, Dy:0/0, Lg:3480/2) +M(C:0K, Fs:10, WS:36K # 0K, PF:36K # 0K, P:36K)
  240. [4] 0.000121 +J(0)
  241. [5] -
  242. [6] -
  243. [7] 0.000481 -0.000373 (2) CM +J(CM:2, PgRf:2, Rd:12/2, Dy:0/0, Lg:0/0) +M(C:8K, Fs:2, WS:8K # 0K, PF:8K # 0K, P:8K)
  244. [8] 0.000238 -0.000124 (1) CM +J(CM:1, PgRf:23, Rd:0/1, Dy:0/0, Lg:0/0) +M(C:0K, Fs:19, WS:76K # 56K, PF:196K # 148K, P:196K)
  245. [9] 0.000179 -0.000120 (1) CM +J(CM:1, PgRf:40, Rd:0/1, Dy:0/0, Lg:0/0) +M(C:0K, Fs:2, WS:8K # 8K, PF:0K # 0K, P:0K)
  246. [10] 0.000006 +J(CM:0, PgRf:1, Rd:0/0, Dy:0/0, Lg:0/0)
  247. [11] 0.000034 +J(CM:0, PgRf:42, Rd:0/0, Dy:0/0, Lg:0/0) +M(C:0K, Fs:6, WS:24K # 24K, PF:0K # 0K, P:0K)
  248. [12] 0.0 +J(0)
  249. [13] 0.0 +J(0)
  250. [14] 0.000003 +J(CM:0, PgRf:1, Rd:0/0, Dy:0/0, Lg:0/0)."
  251. Information 5/2/2017 4:48:58 PM ESENT 105 General "svchost (8728) DS_Token_DB: The database engine started a new instance (0). (Time=0 seconds)
  252.  
  253. Additional Data:
  254. lgposV2[] = 00000001:0001:0000 - 00000002:0001:0000 - 00000002:0002:041E - 00000002:0003:0000 (00000000:0000:0000)
  255. cReInits = 1
  256.  
  257.  
  258. Internal Timing Sequence:
  259. [1] 0.000535 +J(0) +M(C:0K, Fs:156, WS:608K # 608K, PF:6012K # 6012K, P:6012K)
  260. [2] 0.000239 +J(0) +M(C:8K, Fs:187, WS:744K # 744K, PF:356K # 356K, P:356K)
  261. [3] 0.000009 +J(0) +M(C:0K, Fs:8, WS:32K # 32K, PF:64K # 64K, P:64K)
  262. [4] 0.000076 +J(0) +M(C:0K, Fs:73, WS:296K # 296K, PF:164K # 164K, P:164K)
  263. [5] 0.000771 +J(0) +M(C:0K, Fs:11, WS:40K # 40K, PF:16K # 16K, P:16K)
  264. [6] 0.001630 +J(0) +M(C:0K, Fs:35, WS:136K # 136K, PF:20K # 20K, P:20K)
  265. [7] 0.000998 +J(0) +M(C:0K, Fs:32, WS:128K # 128K, PF:64K # 64K, P:64K)
  266. [8] 0.070833 -0.060513 (273) CM +J(CM:273, PgRf:326, Rd:12/273, Dy:0/0, Lg:56552/736) +M(C:40K, Fs:176, WS:616K # 616K, PF:764K # 768K, P:764K) + 1 lgens
  267. [9] 0.006859 -0.003133 (20) CM +J(CM:20, PgRf:49, Rd:0/20, Dy:0/0, Lg:8102/108) +M(C:0K, Fs:8, WS:28K # 32K, PF:4K # 4K, P:4K)
  268. [10] 0.000504 +J(0) +M(C:0K, Fs:0, WS:-60K # 0K, PF:-60K # 0K, P:-60K)
  269. [11] 0.000028 +J(CM:0, PgRf:0, Rd:0/0, Dy:0/0, Lg:49/1) +M(C:0K, Fs:4, WS:16K # 0K, PF:0K # 0K, P:0K)
  270. [12] 0.016474 +J(0) +M(C:0K, Fs:4, WS:16K # 0K, PF:0K # 0K, P:0K)
  271. [13] 0.036316 -0.000300 (2) CM +J(CM:2, PgRf:2, Rd:0/2, Dy:0/0, Lg:8759/5) +M(C:0K, Fs:30, WS:-8K # 24K, PF:-32K # 0K, P:-32K)
  272. [14] 0.000011 +J(0)
  273. [15] 0.000009 +J(0)
  274. [16] 0.000124 +J(0) +M(C:0K, Fs:2, WS:0K # 0K, PF:0K # 0K, P:0K)."
  275. Information 5/2/2017 4:48:58 PM ESENT 302 Logging/Recovery svchost (8728) DS_Token_DB: The database engine has successfully completed recovery steps.
  276. Information 5/2/2017 4:48:58 PM ESENT 301 Logging/Recovery "svchost (8728) DS_Token_DB: The database engine has begun replaying logfile C:\Windows\system32\config\systemprofile\AppData\Local\DataSharing\Storage\DSS.log.
  277.  
  278. Previous Log Processing Stats:
  279. [1] 0.069041 -0.060513 (273) CM +J(CM:273, PgRf:326, Rd:12/273, Dy:0/0, Lg:56552/736) +M(C:40K, Fs:147, WS:508K # 508K, PF:676K # 680K, P:676K)."
  280. Information 5/2/2017 4:48:58 PM ESENT 301 Logging/Recovery "svchost (8728) DS_Token_DB: The database engine has begun replaying logfile C:\Windows\system32\config\systemprofile\AppData\Local\DataSharing\Storage\DSS00001.log.
  281.  
  282. Previous Log Processing Stats: "
  283. Information 5/2/2017 4:48:58 PM ESENT 300 Logging/Recovery svchost (8728) DS_Token_DB: The database engine is initiating recovery steps.
  284. Information 5/2/2017 4:48:58 PM ESENT 102 General svchost (8728) DS_Token_DB: The database engine (10.00.15063.0000) is starting a new instance (0).
  285. Information 5/2/2017 4:43:27 PM Microsoft-Windows-Security-SPP 16384 None Successfully scheduled Software Protection service for re-start at 2117-04-08T23:43:27Z. Reason: RulesEngine.
  286. Information 5/2/2017 4:43:18 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  287. Information 5/2/2017 4:43:18 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  288. Information 5/2/2017 4:41:27 PM Microsoft-Windows-Security-SPP 903 None "The Software Protection service has stopped.
  289. "
  290. Information 5/2/2017 4:41:27 PM Microsoft-Windows-Security-SPP 16384 None Successfully scheduled Software Protection service for re-start at 2117-04-08T23:41:27Z. Reason: RulesEngine.
  291. Information 5/2/2017 4:40:57 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  292. Information 5/2/2017 4:40:57 PM SecurityCenter 15 None Updated Windows Defender status successfully to SECURITY_PRODUCT_STATE_ON.
  293. Information 5/2/2017 4:40:57 PM Microsoft-Windows-Security-SPP 902 None "The Software Protection service has started.
  294. 10.0.15063.0"
  295. Information 5/2/2017 4:40:57 PM Microsoft-Windows-Security-SPP 1003 None "The Software Protection service has completed licensing status check.
  296. Application Id=55c92734-d682-4d71-983e-d6ec3f16059f
  297. Licensing Status=
  298. 1: 0567073a-7d74-403b-b2d5-6b35da372d8d, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  299. 2: 1b750385-9fe2-49a8-ab55-149d0546395b, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  300. 3: 1d873132-f09f-4eb2-bf5a-2e4fb48935e8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  301. 4: 2b1f36bb-c1cd-4306-bf5c-a0367c2d97d8, 1, 0 [(0 )(1 )(2 [0x00000000, 1, 0], [(?)( 1 0x00000000)(?)(?)(?)(?)( 10 0x00000000 msft:rm/algorithm/flags/1.0)(?)])(3 )]
  302. 5: 30d469c6-a78f-4476-b5c8-af78d5b6a5fb, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  303. 6: 411b3d4f-be6d-4a06-baaa-9cabfc256cae, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  304. 7: 58e97c99-f377-4ef1-81d5-4ad5522b5fd8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  305. 8: 74436dbb-cc17-46de-867f-14906ba4a938, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  306. 9: 8db63db6-4f8f-46d6-a448-66444faaaa72, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  307. 10: e371d89a-73e8-4b24-a7ff-23a3641dd18e, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )(3 )]
  308.  
  309. "
  310. Information 5/2/2017 4:40:57 PM Microsoft-Windows-Security-SPP 1033 None "These policies are being excluded since they are only defined with override-only attribute.
  311. Policy Names=(Security-SPP-Reserved-EnableNotificationMode)
  312. App Id=55c92734-d682-4d71-983e-d6ec3f16059f
  313. Sku Id=2b1f36bb-c1cd-4306-bf5c-a0367c2d97d8"
  314. Information 5/2/2017 4:40:56 PM Microsoft-Windows-Security-SPP 1034 None Duplicate definition of policy found. Policy name=Security-SPP-WriteWauMarker Priority=500
  315. Information 5/2/2017 4:40:55 PM SecurityCenter 1 None The Windows Security Center Service has started.
  316. Information 5/2/2017 4:40:55 PM Microsoft-Windows-Security-SPP 1066 None "Initialization status for service objects.
  317. C:\Windows\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
  318. C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/inherited/1.0, 0x00000000, 0x00000000
  319. C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
  320. C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/pkey/detect, 0x00000000, 0x00000000
  321. C:\Windows\system32\sppobjs.dll, msft:spp/ActionScheduler/1.0, 0x00000000, 0x00000000
  322. C:\Windows\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
  323. C:\Windows\system32\sppobjs.dll, msft:spp/statecollector/pkey, 0x00000000, 0x00000000
  324. C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
  325. C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/activationinfo/1.0, 0x00000000, 0x00000000
  326. "
  327. Information 5/2/2017 4:40:55 PM Microsoft-Windows-Security-SPP 900 None "The Software Protection service is starting.
  328. Parameters:<explicit>"
  329. Information 5/2/2017 4:40:34 PM MsiInstaller 1035 None Windows Installer reconfigured the product. Product Name: Python 2.7 (64-bit). Product Version: 2.7.150. Product Language: 1033. Manufacturer: Python Software Foundation. Reconfiguration success or error status: 1602.
  330. Information 5/2/2017 4:40:34 PM MsiInstaller 11729 None Product: Python 2.7 (64-bit) -- Configuration failed.
  331. Information 5/2/2017 4:38:56 PM Microsoft-Windows-Search 1003 Search service The Windows Search Service started.
  332.  
  333. Information 5/2/2017 4:38:54 PM Microsoft-Windows-WMI 5617 None Windows Management Instrumentation Service subsystems initialized successfully
  334. Information 5/2/2017 4:38:54 PM RazerGameScanner 0 None Service started successfully.
  335. Information 5/2/2017 4:38:54 PM ESENT 326 General "SearchIndexer (4040) Windows: The database engine attached a database (1, C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb). (Time=0 seconds)
  336.  
  337. Saved Cache: 0 0
  338. Additional Data: lgposAttach = 0000A3,003C,0268
  339.  
  340. Internal Timing Sequence:
  341. [1] 0.000001 +J(0)
  342. [2] 0.000773 +J(0) +M(C:0K, Fs:25, WS:36K # 0K, PF:32K # 0K, P:32K)
  343. [3] 0.010704 +J(CM:0, PgRf:0, Rd:0/0, Dy:0/0, Lg:3480/2) +M(C:0K, Fs:103, WS:368K # 0K, PF:200K # 0K, P:200K)
  344. [4] 0.000165 +J(0)
  345. [5] -
  346. [6] -
  347. [7] 0.022921 -0.000361 (2) CM +J(CM:2, PgRf:2, Rd:16/2, Dy:0/0, Lg:0/0) +M(C:0K, Fs:63, WS:252K # 0K, PF:680K # 0K, P:680K)
  348. [8] 0.000916 -0.000287 (5) CM +J(CM:5, PgRf:23, Rd:0/5, Dy:0/0, Lg:0/0) +M(C:0K, Fs:68, WS:268K # 100K, PF:260K # 208K, P:260K)
  349. [9] 0.000311 -0.000226 (1) CM +J(CM:1, PgRf:40, Rd:0/1, Dy:0/0, Lg:0/0) +M(C:0K, Fs:12, WS:48K # 48K, PF:96K # 96K, P:96K)
  350. [10] 0.000012 +J(CM:0, PgRf:1, Rd:0/0, Dy:0/0, Lg:0/0) +M(C:0K, Fs:1, WS:4K # 4K, PF:0K # 0K, P:0K)
  351. [11] 0.000051 +J(CM:0, PgRf:42, Rd:0/0, Dy:0/0, Lg:0/0) +M(C:0K, Fs:4, WS:16K # 16K, PF:0K # 0K, P:0K)
  352. [12] 0.000001 +J(0)
  353. [13] 0.0 +J(0)
  354. [14] 0.000005 +J(CM:0, PgRf:1, Rd:0/0, Dy:0/0, Lg:0/0)."
  355. Information 5/2/2017 4:38:54 PM IpOverUsbSvc 0 None Service started successfully.
  356. Information 5/2/2017 4:38:54 PM ESENT 105 General "SearchIndexer (4040) Windows: The database engine started a new instance (0). (Time=0 seconds)
  357.  
  358. Additional Data:
  359.  
  360.  
  361. Internal Timing Sequence:
  362. [1] 0.004581 +J(0) +M(C:0K, Fs:331, WS:1300K # 1300K, PF:8076K # 8076K, P:8076K)
  363. [2] 0.000698 +J(0) +M(C:10240K, Fs:116, WS:464K # 464K, PF:428K # 428K, P:428K)
  364. [3] 0.001308 +J(0) +M(C:0K, Fs:10, WS:40K # 40K, PF:64K # 64K, P:64K)
  365. [4] 0.000834 +J(0) +M(C:0K, Fs:31, WS:124K # 124K, PF:228K # 228K, P:228K)
  366. [5] 0.001332 +J(0) +M(C:0K, Fs:10, WS:40K # 40K, PF:20K # 20K, P:20K)
  367. [6] 0.001534 +J(0) +M(C:0K, Fs:30, WS:112K # 112K, PF:36K # 36K, P:36K)
  368. [7] 0.004344 +J(0) +M(C:0K, Fs:272, WS:1088K # 1088K, PF:1024K # 1024K, P:1024K)
  369. [8] -
  370. [9] -
  371. [10] -
  372. [11] -
  373. [12] -
  374. [13] 0.001369 +J(CM:0, PgRf:0, Rd:0/0, Dy:0/0, Lg:616/1) +M(C:0K, Fs:8, WS:-1000K # 20K, PF:-1020K # 12K, P:-1020K)
  375. [14] 0.000014 +J(0) +M(C:0K, Fs:2, WS:8K # 0K, PF:0K # 0K, P:0K)
  376. [15] 0.000060 +J(0) +M(C:0K, Fs:33, WS:132K # 0K, PF:64K # 0K, P:64K)
  377. [16] 0.000089 +J(0) +M(C:0K, Fs:2, WS:0K # 0K, PF:0K # 0K, P:0K)."
  378. Information 5/2/2017 4:38:54 PM ESENT 102 General SearchIndexer (4040) Windows: The database engine (10.00.15063.0000) is starting a new instance (0).
  379. Information 5/2/2017 4:38:54 PM Microsoft-Windows-WMI 5615 None Windows Management Instrumentation Service started sucessfully
  380. Information 5/2/2017 4:38:53 PM Microsoft-Windows-User Profiles Service 1531 None "The User Profile Service has started successfully.
  381.  
  382. "
  383. Information 5/2/2017 4:38:53 PM Microsoft-Windows-EventSystem 4625 None The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds. The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.
  384. Error 5/2/2017 4:38:20 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm\signtool.exe.Manifest"". Dependent Assembly Microsoft.Windows.Build.Appx.AppxSip.dll,version=""0.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
  385. Error 5/2/2017 4:38:20 PM SideBySide 33 None "Activation context generation failed for ""C:\Program Files (x86)\Windows Kits\10\bin\arm64\signtool.exe.Manifest"". Dependent Assembly Microsoft.Windows.Build.Appx.AppxSip.dll,version=""0.0.0.0"" could not be found. Please use sxstrace.exe for detailed diagnosis."
Add Comment
Please, Sign In to add comment