Log Name: System Source: EventLog Date: 9/25/2021 8:20:12 AM Event ID: 6008 Task Category: None Level: Error Keywords: Classic User: N/A Computer: DESKTOP-O36BR36 Description: The previous system shutdown at 7:45:29 AM on ‎9/‎25/‎2021 was unexpected. Event Xml: 6008 0 2 0 0 0x80000000000000 15905 System DESKTOP-O36BR36 7:45:29 AM ‎9/‎25/‎2021 4809 E50709000600190007002D001D004700E5070900060019000C002D001D004700600900003C000000010000006009000001000000B00400000000000000000000 Log Name: System Source: EventLog Date: 9/24/2021 9:13:08 PM Event ID: 6008 Task Category: None Level: Error Keywords: Classic User: N/A Computer: DESKTOP-O36BR36 Description: The previous system shutdown at 8:44:46 PM on ‎9/‎24/‎2021 was unexpected. Event Xml: 6008 0 2 0 0 0x80000000000000 15712 System DESKTOP-O36BR36 8:44:46 PM ‎9/‎24/‎2021 50409 E50709000500180014002C002E00BA00E50709000600190001002C002E00BA00600900003C000000010000006009000001000000B00400000000000000000000 Log Name: System Source: Service Control Manager Date: 9/25/2021 6:25:45 AM Event ID: 7000 Task Category: None Level: Error Keywords: Classic User: N/A Computer: DESKTOP-O36BR36 Description: The AMDRyzenMasterDriver service failed to start due to the following error: Cannot create a file when that file already exists. Event Xml: 7000 0 2 0 0 0x8080000000000000 15874 System DESKTOP-O36BR36 AMDRyzenMasterDriver %%183 41004D004400520079007A0065006E004D00610073007400650072004400720069007600650072000000 Log Name: System Source: Service Control Manager Date: 9/25/2021 6:25:32 AM Event ID: 7000 Task Category: None Level: Error Keywords: Classic User: N/A Computer: DESKTOP-O36BR36 Description: The AMDRyzenMasterDriver service failed to start due to the following error: Cannot create a file when that file already exists. Event Xml: 7000 0 2 0 0 0x8080000000000000 15870 System DESKTOP-O36BR36 AMDRyzenMasterDriver %%183 41004D004400520079007A0065006E004D00610073007400650072004400720069007600650072000000 Log Name: System Source: Microsoft-Windows-Kernel-PnP Date: 9/25/2021 7:56:57 PM Event ID: 225 Task Category: (223) Level: Warning Keywords: User: SYSTEM Computer: DESKTOP-O36BR36 Description: The application \Device\HarddiskVolume4\Windows\System32\audiodg.exe with process id 3604 stopped the removal or ejection for the device PCI\VEN_1002&DEV_AAF0&SUBSYS_AAF01043&REV_00\4&1c3d25bb&0&0119. Event Xml: 225 0 3 223 0 0x8000000000000000 16072 System DESKTOP-O36BR36 3604 52 \Device\HarddiskVolume4\Windows\System32\audiodg.exe 62 PCI\VEN_1002&DEV_AAF0&SUBSYS_AAF01043&REV_00\4&1c3d25bb&0&0119 Log Name: Microsoft-Windows-User Device Registration/Admin Source: Microsoft-Windows-User Device Registration Date: 9/26/2021 7:25:02 AM Event ID: 360 Task Category: None Level: Warning Keywords: User: DESKTOP-O36BR36\d_ehr Computer: DESKTOP-O36BR36 Description: Windows Hello for Business provisioning will not be launched. Device is AAD joined ( AADJ or DJ++ ): Not Tested User has logged on with AAD credentials: No Windows Hello for Business policy is enabled: Not Tested Windows Hello for Business post-logon provisioning is enabled: Not Tested Local computer meets Windows hello for business hardware requirements: Not Tested User is not connected to the machine via Remote Desktop: Yes User certificate for on premise auth policy is enabled: Not Tested Machine is governed by none policy. Cloud trust for on premise auth policy is enabled: Not Tested User account has Cloud TGT: Not Tested See https://go.microsoft.com/fwlink/?linkid=832647 for more details. Event Xml: 360 0 3 0 0 0x8000000000000000 167 Microsoft-Windows-User Device Registration/Admin DESKTOP-O36BR36 Windows Hello for Business provisioning will not be launched. Not Tested No Not Tested Not Tested Not Tested Yes Not Tested none Not Tested Not Tested Log Name: Microsoft-Windows-User Device Registration/Admin Source: Microsoft-Windows-User Device Registration Date: 9/25/2021 8:20:22 AM Event ID: 360 Task Category: None Level: Warning Keywords: User: DESKTOP-O36BR36\d_ehr Computer: DESKTOP-O36BR36 Description: Windows Hello for Business provisioning will not be launched. Device is AAD joined ( AADJ or DJ++ ): Not Tested User has logged on with AAD credentials: No Windows Hello for Business policy is enabled: Not Tested Windows Hello for Business post-logon provisioning is enabled: Not Tested Local computer meets Windows hello for business hardware requirements: Not Tested User is not connected to the machine via Remote Desktop: Yes User certificate for on premise auth policy is enabled: Not Tested Machine is governed by none policy. Cloud trust for on premise auth policy is enabled: Not Tested User account has Cloud TGT: Not Tested See https://go.microsoft.com/fwlink/?linkid=832647 for more details. Event Xml: 360 0 3 0 0 0x8000000000000000 166 Microsoft-Windows-User Device Registration/Admin DESKTOP-O36BR36 Windows Hello for Business provisioning will not be launched. Not Tested No Not Tested Not Tested Not Tested Yes Not Tested none Not Tested Not Tested Log Name: System Source: Microsoft-Windows-UserModePowerService Date: 9/25/2021 8:20:13 AM Event ID: 12 Task Category: (10) Level: Information Keywords: User: SYSTEM Computer: DESKTOP-O36BR36 Description: Process C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe (process ID:2572) reset policy scheme from {9897998c-92de-4669-853f-b7cd3ecb2790} to {9897998c-92de-4669-853f-b7cd3ecb2790} Event Xml: 12 0 4 10 0 0x4000000000000000 15954 System DESKTOP-O36BR36 C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe 2572 {9897998c-92de-4669-853f-b7cd3ecb2790} {9897998c-92de-4669-853f-b7cd3ecb2790} Log Name: System Source: Microsoft-Windows-UserModePowerService Date: 9/25/2021 6:25:30 AM Event ID: 12 Task Category: (10) Level: Information Keywords: User: SYSTEM Computer: DESKTOP-O36BR36 Description: Process C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe (process ID:2556) reset policy scheme from {9897998c-92de-4669-853f-b7cd3ecb2790} to {9897998c-92de-4669-853f-b7cd3ecb2790} Event Xml: 12 0 4 10 0 0x4000000000000000 15864 System DESKTOP-O36BR36 C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe 2556 {9897998c-92de-4669-853f-b7cd3ecb2790} {9897998c-92de-4669-853f-b7cd3ecb2790} Log Name: System Source: Microsoft-Windows-UserModePowerService Date: 9/24/2021 9:13:09 PM Event ID: 12 Task Category: (10) Level: Information Keywords: User: SYSTEM Computer: DESKTOP-O36BR36 Description: Process C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe (process ID:2692) reset policy scheme from {9897998c-92de-4669-853f-b7cd3ecb2790} to {9897998c-92de-4669-853f-b7cd3ecb2790} Event Xml: 12 0 4 10 0 0x4000000000000000 15761 System DESKTOP-O36BR36 C:\Windows\System32\DriverStore\FileRepository\u0370882.inf_amd64_16efd232c9cc1313\B370998\atieclxx.exe 2692 {9897998c-92de-4669-853f-b7cd3ecb2790} {9897998c-92de-4669-853f-b7cd3ecb2790} Log Name: Security Source: Microsoft-Windows-Eventlog Date: 9/25/2021 8:20:12 AM Event ID: 1101 Task Category: Event processing Level: Error Keywords: Audit Success User: N/A Computer: DESKTOP-O36BR36 Description: Audit events have been dropped by the transport. 0 Event Xml: 1101 0 2 101 0 0x4020000000000000 292211 Security DESKTOP-O36BR36 0 Log Name: Security Source: Microsoft-Windows-Eventlog Date: 9/24/2021 9:13:09 PM Event ID: 1101 Task Category: Event processing Level: Error Keywords: Audit Success User: N/A Computer: DESKTOP-O36BR36 Description: Audit events have been dropped by the transport. 0 Event Xml: 1101 0 2 101 0 0x4020000000000000 290545 Security DESKTOP-O36BR36 0