Log Name: System
Source: EventLog
Date: 9/25/2021 8:20:12 AM
Event ID: 6008
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: DESKTOP-O36BR36
Description:
The previous system shutdown at 7:45:29 AM on 9/25/2021 was unexpected.
Event Xml:
6008
0
2
0
0
0x80000000000000
15905
System
DESKTOP-O36BR36
7:45:29 AM
9/25/2021
4809
E50709000600190007002D001D004700E5070900060019000C002D001D004700600900003C000000010000006009000001000000B00400000000000000000000
Log Name: System
Source: EventLog
Date: 9/24/2021 9:13:08 PM
Event ID: 6008
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: DESKTOP-O36BR36
Description:
The previous system shutdown at 8:44:46 PM on 9/24/2021 was unexpected.
Event Xml:
6008
0
2
0
0
0x80000000000000
15712
System
DESKTOP-O36BR36
8:44:46 PM
9/24/2021
50409
E50709000500180014002C002E00BA00E50709000600190001002C002E00BA00600900003C000000010000006009000001000000B00400000000000000000000
Log Name: System
Source: Service Control Manager
Date: 9/25/2021 6:25:45 AM
Event ID: 7000
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: DESKTOP-O36BR36
Description:
The AMDRyzenMasterDriver service failed to start due to the following error:
Cannot create a file when that file already exists.
Event Xml:
7000
0
2
0
0
0x8080000000000000
15874
System
DESKTOP-O36BR36
AMDRyzenMasterDriver
%%183
41004D004400520079007A0065006E004D00610073007400650072004400720069007600650072000000
Log Name: System
Source: Service Control Manager
Date: 9/25/2021 6:25:32 AM
Event ID: 7000
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: DESKTOP-O36BR36
Description:
The AMDRyzenMasterDriver service failed to start due to the following error:
Cannot create a file when that file already exists.
Event Xml:
7000
0
2
0
0
0x8080000000000000
15870
System
DESKTOP-O36BR36
AMDRyzenMasterDriver
%%183
41004D004400520079007A0065006E004D00610073007400650072004400720069007600650072000000
Log Name: System
Source: Microsoft-Windows-Kernel-PnP
Date: 9/25/2021 7:56:57 PM
Event ID: 225
Task Category: (223)
Level: Warning
Keywords:
User: SYSTEM
Computer: DESKTOP-O36BR36
Description:
The application \Device\HarddiskVolume4\Windows\System32\audiodg.exe with process id 3604 stopped the removal or ejection for the device PCI\VEN_1002&DEV_AAF0&SUBSYS_AAF01043&REV_00\4&1c3d25bb&0&0119.
Event Xml:
225
0
3
223
0
0x8000000000000000
16072
System
DESKTOP-O36BR36
3604
52
\Device\HarddiskVolume4\Windows\System32\audiodg.exe
62
PCI\VEN_1002&DEV_AAF0&SUBSYS_AAF01043&REV_00\4&1c3d25bb&0&0119
Log Name: Microsoft-Windows-User Device Registration/Admin
Source: Microsoft-Windows-User Device Registration
Date: 9/26/2021 7:25:02 AM
Event ID: 360
Task Category: None
Level: Warning
Keywords:
User: DESKTOP-O36BR36\d_ehr
Computer: DESKTOP-O36BR36
Description:
Windows Hello for Business provisioning will not be launched.
Device is AAD joined ( AADJ or DJ++ ): Not Tested
User has logged on with AAD credentials: No
Windows Hello for Business policy is enabled: Not Tested
Windows Hello for Business post-logon provisioning is enabled: Not Tested
Local computer meets Windows hello for business hardware requirements: Not Tested
User is not connected to the machine via Remote Desktop: Yes
User certificate for on premise auth policy is enabled: Not Tested
Machine is governed by none policy.
Cloud trust for on premise auth policy is enabled: Not Tested
User account has Cloud TGT: Not Tested
See https://go.microsoft.com/fwlink/?linkid=832647 for more details.
Event Xml:
360
0
3
0
0
0x8000000000000000
167
Microsoft-Windows-User Device Registration/Admin
DESKTOP-O36BR36
Windows Hello for Business provisioning will not be launched.
Not Tested
No
Not Tested
Not Tested
Not Tested
Yes
Not Tested
none
Not Tested
Not Tested
Log Name: Microsoft-Windows-User Device Registration/Admin
Source: Microsoft-Windows-User Device Registration
Date: 9/25/2021 8:20:22 AM
Event ID: 360
Task Category: None
Level: Warning
Keywords:
User: DESKTOP-O36BR36\d_ehr
Computer: DESKTOP-O36BR36
Description:
Windows Hello for Business provisioning will not be launched.
Device is AAD joined ( AADJ or DJ++ ): Not Tested
User has logged on with AAD credentials: No
Windows Hello for Business policy is enabled: Not Tested
Windows Hello for Business post-logon provisioning is enabled: Not Tested
Local computer meets Windows hello for business hardware requirements: Not Tested
User is not connected to the machine via Remote Desktop: Yes
User certificate for on premise auth policy is enabled: Not Tested
Machine is governed by none policy.
Cloud trust for on premise auth policy is enabled: Not Tested
User account has Cloud TGT: Not Tested
See https://go.microsoft.com/fwlink/?linkid=832647 for more details.
Event Xml:
360
0
3
0
0
0x8000000000000000
166
Microsoft-Windows-User Device Registration/Admin
DESKTOP-O36BR36
Windows Hello for Business provisioning will not be launched.
Not Tested
No
Not Tested
Not Tested
Not Tested
Yes
Not Tested
none
Not Tested
Not Tested
Log Name: System
Source: Microsoft-Windows-UserModePowerService
Date: 9/25/2021 8:20:13 AM
Event ID: 12
Task Category: (10)
Level: Information
Keywords:
User: SYSTEM
Computer: DESKTOP-O36BR36
Description:
Process C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe (process ID:2572) reset policy scheme from {9897998c-92de-4669-853f-b7cd3ecb2790} to {9897998c-92de-4669-853f-b7cd3ecb2790}
Event Xml:
12
0
4
10
0
0x4000000000000000
15954
System
DESKTOP-O36BR36
C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe
2572
{9897998c-92de-4669-853f-b7cd3ecb2790}
{9897998c-92de-4669-853f-b7cd3ecb2790}
Log Name: System
Source: Microsoft-Windows-UserModePowerService
Date: 9/25/2021 6:25:30 AM
Event ID: 12
Task Category: (10)
Level: Information
Keywords:
User: SYSTEM
Computer: DESKTOP-O36BR36
Description:
Process C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe (process ID:2556) reset policy scheme from {9897998c-92de-4669-853f-b7cd3ecb2790} to {9897998c-92de-4669-853f-b7cd3ecb2790}
Event Xml:
12
0
4
10
0
0x4000000000000000
15864
System
DESKTOP-O36BR36
C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe
2556
{9897998c-92de-4669-853f-b7cd3ecb2790}
{9897998c-92de-4669-853f-b7cd3ecb2790}
Log Name: System
Source: Microsoft-Windows-UserModePowerService
Date: 9/24/2021 9:13:09 PM
Event ID: 12
Task Category: (10)
Level: Information
Keywords:
User: SYSTEM
Computer: DESKTOP-O36BR36
Description:
Process C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe (process ID:2692) reset policy scheme from {9897998c-92de-4669-853f-b7cd3ecb2790} to {9897998c-92de-4669-853f-b7cd3ecb2790}
Event Xml:
12
0
4
10
0
0x4000000000000000
15761
System
DESKTOP-O36BR36
C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe
2692
{9897998c-92de-4669-853f-b7cd3ecb2790}
{9897998c-92de-4669-853f-b7cd3ecb2790}
Log Name: Security
Source: Microsoft-Windows-Eventlog
Date: 9/25/2021 8:20:12 AM
Event ID: 1101
Task Category: Event processing
Level: Error
Keywords: Audit Success
User: N/A
Computer: DESKTOP-O36BR36
Description:
Audit events have been dropped by the transport. 0
Event Xml:
1101
0
2
101
0
0x4020000000000000
292211
Security
DESKTOP-O36BR36
0
Log Name: Security
Source: Microsoft-Windows-Eventlog
Date: 9/24/2021 9:13:09 PM
Event ID: 1101
Task Category: Event processing
Level: Error
Keywords: Audit Success
User: N/A
Computer: DESKTOP-O36BR36
Description:
Audit events have been dropped by the transport. 0
Event Xml:
1101
0
2
101
0
0x4020000000000000
290545
Security
DESKTOP-O36BR36
0