Event[0]:
  Log Name: System
  Source: Microsoft-Windows-Eventlog
  Date: 2013-11-08T03:23:20.359
  Event ID: 104
  Task: Log clear
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The System log file was cleared.

Event[1]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:24:50.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[2]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:24:50.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[3]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:25:24.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[4]:
  Log Name: System
  Source: hasplms
  Date: 2013-11-08T03:25:33.000
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Sentinel LDK License Manager starting


Event[5]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:25:33.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Sentinel Local License Manager service entered the running state.

Event[6]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:25:35.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[7]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:27:35.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[8]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:27:51.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[9]:
  Log Name: System
  Source: USER32
  Date: 2013-11-08T03:28:34.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[10]:
  Log Name: System
  Source: USER32
  Date: 2013-11-08T03:28:36.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[11]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-08T03:28:36.807
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[12]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T03:28:37.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[13]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-08T03:28:37.103
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[14]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[15]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.228
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[16]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[17]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[18]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[19]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[20]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[21]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[22]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[23]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[24]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[25]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[26]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[27]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[28]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[29]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[30]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-08T03:28:37.556
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[31]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[32]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[33]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[34]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T03:29:27.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[35]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T03:29:27.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[36]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T03:29:27.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 22 seconds.

Event[37]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-08T03:28:37.587
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[38]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-08T03:28:37.587
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[39]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[40]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[41]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[42]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[43]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[44]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[45]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[46]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[47]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:37.883
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[48]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:38.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[49]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:38.242
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[50]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-08T03:28:38.258
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[51]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:38.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[52]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:38.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[53]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-08T03:28:42.376
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[54]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:43.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[55]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:28:43.406
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[56]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-08T03:28:43.640
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?08T08:28:43.640047600Z.

Event[57]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-08T03:29:05.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?08T08:29:04.610798500Z.

Event[58]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:29:10.772
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[59]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:29:14.797
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?10?-?31T07:57:54.000000000Z) has successfully loaded and registered with Filter Manager.

Event[60]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-08T03:29:18.167
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[61]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:29:18.760
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[62]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:29:18.760
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[63]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:29:18.760
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[64]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:29:18.760
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[65]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:29:18.760
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[66]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:29:18.760
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[67]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:29:18.760
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[68]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:29:18.760
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[69]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:26.404
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[70]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-08T03:29:26.404
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[71]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:26.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[72]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:29:26.622
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[73]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:29:26.638
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?10?-?31T07:56:09.000000000Z) has successfully loaded and registered with Filter Manager.

Event[74]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:29:26.653
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[75]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:29:26.653
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?10?-?31T07:56:15.000000000Z) has successfully loaded and registered with Filter Manager.

Event[76]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:26.747
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[77]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:26.856
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[78]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:26.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[79]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:27.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[80]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:27.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[81]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:27.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[82]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:27.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[83]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:27.964
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[84]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[85]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[86]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.104
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[87]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.104
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[88]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.135
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[89]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.135
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[90]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.135
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[91]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-08T03:29:28.151
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[92]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.244
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[93]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.291
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[94]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-08T03:29:28.291
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[95]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[96]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-08T03:29:28.385
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[97]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[98]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[99]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:28.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:30.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[101]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-08T03:29:30.179
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:32.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:33.829
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:36.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:36.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:36.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:36.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:36.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[109]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-08T03:29:36.533
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[110]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:29:36.553
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:36.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:36.833
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:37.053
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:37.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:37.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:37.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:37.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[118]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:37.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:38.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[120]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-08T03:29:39.923
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[121]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:39.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:39.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:40.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[124]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:41.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:41.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:41.929
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:42.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:42.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:42.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:42.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:29:43.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[132]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-08T03:29:52.443
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[133]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-08T03:30:25.219
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[134]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-08T03:30:40.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:30:40.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:30:40.777
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:30:42.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:30:42.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:30:42.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:12.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:13.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:14.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[143]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-08T03:31:17.609
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:17.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:26.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:29.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[147]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-08T03:31:37.357
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:39.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:41.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:41.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:41.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:41.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:41.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:42.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:43.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:43.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:48.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:50.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:51.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:52.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:52.629
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:31:55.125
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:32:24.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:32:34.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:34:13.681
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:34:24.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:34:27.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:34:27.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:35:28.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[170]:
  Log Name: System
  Source: USER32
  Date: 2013-11-08T03:36:02.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The process msiexec.exe has initiated the restart of computer ANDREW-PC on behalf of user NT AUTHORITY\SYSTEM for the following reason: No title for this reason could be found
 Reason Code: 0x80030002
 Shutdown Type: restart
 Comment: The Windows Installer initiated a system restart to complete or continue the configuration of 'e-Sword'.

Event[171]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-11-08T03:36:05.000
  Event ID: 10010
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The server {F9717507-6651-4EDB-BFF7-AE615179BCCF} did not register with DCOM within the required timeout.

Event[172]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-08T03:36:09.232
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[173]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-08T03:36:09.466
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:09.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:09.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:09.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[177]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T03:36:10.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[178]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-08T03:36:10.246
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[179]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-08T03:36:10.246
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.246
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.246
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[193]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-08T03:36:10.386
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.651
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[208]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T03:37:02.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[211]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T03:37:02.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[212]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T03:37:02.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:10.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[214]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-08T03:36:11.197
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:11.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:11.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:11.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:36:11.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[219]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-08T03:36:14.723
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[220]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-08T03:36:18.046
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?08T08:36:18.046285200Z.

Event[221]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-08T03:36:39.952
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?08T08:36:38.595198400Z.

Event[222]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:36:44.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[223]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:36:48.298
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?10?-?31T07:57:54.000000000Z) has successfully loaded and registered with Filter Manager.

Event[224]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-08T03:36:50.763
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[225]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:36:51.356
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[226]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:36:51.356
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[227]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:36:51.356
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[228]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:36:51.356
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[229]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:36:51.356
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[230]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:36:51.356
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[231]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:36:51.356
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[232]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T03:36:51.356
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:02.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[234]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-08T03:37:02.322
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:02.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[236]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:37:02.463
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[237]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:37:02.463
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?10?-?31T07:56:09.000000000Z) has successfully loaded and registered with Filter Manager.

Event[238]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:37:02.463
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[239]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:37:02.478
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?10?-?31T07:56:15.000000000Z) has successfully loaded and registered with Filter Manager.

Event[240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:02.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:02.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:02.510
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:02.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:02.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:02.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:02.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.087
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[255]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-08T03:37:03.118
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:03.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:04.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:04.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:04.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:04.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[262]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-08T03:37:04.480
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[263]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-08T03:37:04.650
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[264]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-08T03:37:04.660
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:04.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:05.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:05.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:05.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:05.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:05.530
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:05.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:05.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[273]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-08T03:37:05.670
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[274]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T03:37:05.770
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:05.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:06.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[277]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:06.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:08.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[279]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-08T03:37:08.660
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:08.830
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:08.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:08.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:08.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[284]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:08.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:08.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:09.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:10.010
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:10.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:10.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:10.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:13.582
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:15.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:16.281
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:16.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[296]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-08T03:37:21.148
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[297]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-08T03:37:26.483
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[298]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-08T03:37:39.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:39.140
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:39.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:39.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:39.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:39.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[304]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-08T03:37:47.143
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:47.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:37:55.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:38:21.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:38:27.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:10.089
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:10.089
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:10.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:10.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:10.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:10.635
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:10.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:10.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:11.228
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:13.833
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:15.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:16.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:17.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:19.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:31.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:39:56.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:40:11.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:41:05.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:42:25.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:44:18.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:44:27.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:44:41.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:44:49.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[332]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-08T03:45:25.769
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:45:28.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:47:48.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:47:58.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:47:59.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:50:17.372
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:50:17.641
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:50:17.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:50:23.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:50:23.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:55:20.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T03:57:27.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:24.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:32.665
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[346]:
  Log Name: System
  Source: USER32
  Date: 2013-11-08T04:04:45.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[347]:
  Log Name: System
  Source: USER32
  Date: 2013-11-08T04:04:48.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[348]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T04:04:49.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[349]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-08T04:04:48.280
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[350]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-08T04:04:48.499
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:48.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:48.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[360]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T23:14:52.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[361]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T23:14:52.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[362]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-08T23:14:52.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 18 seconds.

Event[363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.435
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.435
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[370]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-08T04:04:49.466
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[374]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-08T04:04:49.513
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[375]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-08T04:04:49.513
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.793
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:49.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[385]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-08T04:04:50.168
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:50.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:50.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:50.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:50.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[390]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-08T04:04:53.865
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[391]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-08T04:04:55.097
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?08T09:04:55.097983700Z.

Event[392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T04:04:55.113
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[393]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-08T23:14:34.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?09T04:14:33.610798400Z.

Event[394]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T23:14:39.726
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[395]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T23:14:43.392
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?10?-?31T07:57:54.000000000Z) has successfully loaded and registered with Filter Manager.

Event[396]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-08T23:14:45.342
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[397]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T23:14:45.997
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[398]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T23:14:45.997
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[399]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T23:14:45.997
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[400]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T23:14:45.997
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[401]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T23:14:45.997
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[402]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T23:14:45.997
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[403]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T23:14:45.997
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[404]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-08T23:14:45.997
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.003
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[406]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-08T23:14:52.003
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[408]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T23:14:52.143
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[409]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T23:14:52.143
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?10?-?31T07:56:09.000000000Z) has successfully loaded and registered with Filter Manager.

Event[410]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T23:14:52.159
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[411]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T23:14:52.159
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?10?-?31T07:56:15.000000000Z) has successfully loaded and registered with Filter Manager.

Event[412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.830
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:52.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[427]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-08T23:14:52.954
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:53.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:53.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:53.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[431]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-08T23:14:53.032
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[432]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-08T23:14:53.032
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:53.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:53.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:53.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:53.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[437]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-08T23:14:53.859
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:54.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:54.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:55.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:55.216
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:56.324
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:56.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[444]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:56.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[445]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-08T23:14:56.402
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[446]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-08T23:14:56.418
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:56.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:56.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:56.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:56.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:56.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:56.948
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[453]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-08T23:14:59.876
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:59.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:14:59.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:00.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:00.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:00.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:03.146
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:04.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:04.796
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:04.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:04.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:04.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:05.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:06.694
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:06.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[468]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-08T23:15:08.222
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[469]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-08T23:15:09.533
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[470]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-08T23:15:22.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:22.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:22.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:23.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[474]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:23.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:15:23.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:16:10.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:04.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:04.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:04.697
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:04.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:04.775
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:05.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[483]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:05.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:05.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[485]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-08T23:17:05.617
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:05.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[487]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:06.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[488]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:08.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:09.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:10.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:11.373
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:13.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:17:17.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:18:10.217
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:18:43.741
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:18:47.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:18:47.640
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:18:47.686
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\15d324bd-87cf-4bb3-9b99-237db7a4931a
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:18:48.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:18:53.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:20:00.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:20:00.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:20:11.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:20:16.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[505]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2013-11-08T23:20:26.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:20:26.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:20:57.138
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:20:58.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:22:09.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:22:57.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:23:12.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[512]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-08T23:23:17.476
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:23:22.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:24:12.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:25:14.530
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:25:19.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:26:56.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:27:17.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:28:11.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:28:11.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:28:21.459
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:28:21.709
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:28:21.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:29:01.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:29:01.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:29:23.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[527]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2013-11-08T23:29:50.000
  Event ID: 4
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service stopped.

Event[528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:29:50.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the stopped state.

Event[529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:29:50.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:31:12.690
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  getbus
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\getbus.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:32:55.712
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  getbus
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\getbus.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:33:27.519
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  getbus
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\getbus.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:34:24.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:35:30.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[535]:
  Log Name: System
  Source: Application Popup
  Date: 2013-11-08T23:37:36.000
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Application popup: SysFader: iexplore.exe - Application Error : The instruction at 0x064a25e0 referenced memory at 0x064a25e0. The memory could not be written.

Click on OK to terminate the program

Event[536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:38:33.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:38:38.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:39:40.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:43:21.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:43:50.107
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:47:10.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:54:04.799
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:54:38.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-08T23:57:04.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T00:14:05.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T00:20:00.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T00:20:00.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T00:22:19.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T00:22:19.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T00:22:24.955
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T00:32:58.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T00:43:19.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:20:00.309
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:20:00.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:36.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:37.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[557]:
  Log Name: System
  Source: USER32
  Date: 2013-11-09T01:51:39.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[558]:
  Log Name: System
  Source: USER32
  Date: 2013-11-09T01:51:46.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[559]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-09T01:51:46.674
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[560]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-09T01:51:48.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:47.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[562]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-09T01:51:48.000
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[580]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-09T01:51:48.375
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[581]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-11T19:42:32.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[582]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-11T19:42:32.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[583]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-11T19:42:32.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 18 seconds.

Event[584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.375
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.375
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[588]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-09T01:51:48.390
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[589]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-09T01:51:48.390
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.468
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:48.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[596]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-09T01:51:49.030
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:49.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:49.155
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:49.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:49.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:49.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[602]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-09T01:51:53.258
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:54.038
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-09T01:51:55.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[605]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-09T01:51:59.201
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?09T06:51:59.201647100Z.

Event[606]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-11T19:42:14.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?12T00:42:13.610798400Z.

Event[607]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:42:19.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[608]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:42:23.704
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?10?-?31T07:57:54.000000000Z) has successfully loaded and registered with Filter Manager.

Event[609]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-11T19:42:25.466
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[610]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:42:26.075
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[611]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:42:26.075
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[612]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:42:26.075
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[613]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:42:26.075
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[614]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:42:26.075
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[615]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:42:26.075
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[616]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:42:26.075
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[617]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:42:26.075
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[618]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:31.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[619]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-11T19:42:31.472
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:31.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[621]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:42:31.800
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[622]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:42:31.800
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?10?-?31T07:56:09.000000000Z) has successfully loaded and registered with Filter Manager.

Event[623]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:42:31.800
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[624]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:42:31.800
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?10?-?31T07:56:15.000000000Z) has successfully loaded and registered with Filter Manager.

Event[625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:31.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:31.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:31.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:32.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:32.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:32.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[640]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-11T19:42:33.407
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[643]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-11T19:42:33.422
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[644]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-11T19:42:33.438
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:33.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:34.109
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[650]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-11T19:42:34.109
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:35.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:35.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:35.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:35.576
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:35.646
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:35.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:35.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[658]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-11T19:42:36.076
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[659]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:42:36.166
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:36.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:36.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:37.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:39.554
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[664]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-11T19:42:39.632
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:39.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:39.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:39.663
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:39.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:39.835
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[670]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:39.913
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:40.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:40.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:40.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:41.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:41.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:41.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[677]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:43.064
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[678]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:44.297
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[679]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-11T19:42:46.839
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[680]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:50.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[681]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:42:50.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[682]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-11T19:42:56.262
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[683]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-11T19:43:06.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[684]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:43:06.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:43:17.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:43:18.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[687]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:43:18.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:43:18.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:43:49.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:43:50.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[691]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-11T19:43:51.744
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:43:51.744
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:40.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:41.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:41.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:41.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:41.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:42.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:42.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:42.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:43.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:44.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:45.456
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:46.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:47.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:44:50.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:45:15.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:45:47.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:46:53.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:46:53.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[711]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-11T19:47:43.903
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:47:49.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:48:42.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:49:45.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:50:14.484
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:50:21.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[717]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2013-11-11T19:50:26.160
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name secure.shared.live.com timed out after none of the configured DNS servers responded.

Event[718]:
  Log Name: System
  Source: USER32
  Date: 2013-11-11T19:51:23.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[719]:
  Log Name: System
  Source: USER32
  Date: 2013-11-11T19:51:26.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[720]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-11T19:51:27.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[721]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-11T19:51:26.558
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[722]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-11T19:51:26.838
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:26.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:26.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.665
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[734]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-11T19:51:27.774
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[737]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-11T19:51:27.790
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[738]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-11T19:51:27.790
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[748]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-11T19:52:09.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[749]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-11T19:52:09.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[750]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-11T19:52:09.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 17 seconds.

Event[751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:27.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:28.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:28.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:28.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:28.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:28.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:28.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[759]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-11T19:51:28.539
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:28.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:28.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:28.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:29.303
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:51:30.707
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[765]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-11T19:51:30.910
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[766]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-11T19:51:32.439
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?12T00:51:32.439320100Z.

Event[767]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-11T19:51:53.952
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?12T00:51:52.595198400Z.

Event[768]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:51:58.694
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[769]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:52:02.345
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[770]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-11T19:52:04.201
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[771]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:52:04.794
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[772]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:52:04.794
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[773]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:52:04.794
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[774]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:52:04.794
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[775]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:52:04.794
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[776]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:52:04.794
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[777]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:52:04.794
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[778]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-11T19:52:04.794
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:09.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[780]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-11T19:52:09.583
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:09.739
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[782]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:52:09.770
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[783]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:52:09.786
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[784]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:52:09.786
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[785]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:52:09.802
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:09.802
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:09.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:09.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:09.989
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:10.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:10.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[792]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:10.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.018
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[801]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-11T19:52:11.330
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.502
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.502
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[806]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-11T19:52:11.533
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[808]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-11T19:52:11.564
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:11.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:12.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[811]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-11T19:52:12.344
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:13.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:14.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:14.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:14.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:15.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:15.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:15.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[819]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-11T19:52:15.726
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[820]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-11T19:52:15.766
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[821]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:16.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:16.146
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:16.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:16.676
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:16.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[826]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-11T19:52:16.896
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:17.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:17.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:17.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:17.216
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:17.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:17.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:17.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:18.181
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:18.555
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:18.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:18.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:20.053
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:20.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:21.582
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[841]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-11T19:52:24.733
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[842]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-11T19:52:30.973
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[843]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-11T19:52:43.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:43.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:45.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:46.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:52:59.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:53:00.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:53:00.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:53:01.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:53:29.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:18.663
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:18.663
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:18.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:18.914
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:18.960
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:20.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:20.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:20.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[860]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-11T19:54:20.536
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:20.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:20.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:23.921
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:26.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:27.077
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:27.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:30.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:54:34.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:55:25.133
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:56:04.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:56:12.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:56:15.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:57:27.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[874]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-11T19:57:32.039
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:57:39.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:58:23.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:58:51.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:59:21.838
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:59:28.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T19:59:51.838
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:00:34.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:05:27.635
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:05:27.885
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:05:30.859
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:05:31.123
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:05:31.200
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:07:45.331
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:17:48.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:20:00.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:20:00.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[891]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:30:11.796
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:31:50.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[893]:
  Log Name: System
  Source: BROWSER
  Date: 2013-11-11T20:31:56.000
  Event ID: 8033
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The browser has forced an election on network \Device\NetBT_Tcpip_{1DEC5E89-D26F-4180-A9A0-9C30607B8F0C} because a master browser was stopped.

Event[894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:31:58.978
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:31:58.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[896]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2013-11-11T20:32:06.798
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name spynet2.microsoft.com timed out after none of the configured DNS servers responded.

Event[897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:32:58.978
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Computer Browser service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:32:58.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the stopped state.

Event[899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:33:05.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Connect Now - Config Registrar service entered the running state.

Event[900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:33:14.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:34:18.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[902]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2013-11-11T20:37:34.994
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name master1.teamviewer.com timed out after none of the configured DNS servers responded.

Event[903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:37:42.974
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:37:42.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[905]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2013-11-11T20:37:46.994
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name master1.teamviewer.com timed out after none of the configured DNS servers responded.

Event[906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:38:50.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:39:58.976
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:39:58.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:41:04.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:41:10.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[911]:
  Log Name: System
  Source: BROWSER
  Date: 2013-11-11T20:47:00.000
  Event ID: 8033
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The browser has forced an election on network \Device\NetBT_Tcpip_{1DEC5E89-D26F-4180-A9A0-9C30607B8F0C} because a master browser was stopped.

Event[912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:47:02.976
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:47:02.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:48:02.976
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Computer Browser service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:48:02.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the stopped state.

Event[916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:48:06.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:48:06.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:49:47.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[919]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2013-11-11T20:52:57.704
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name ai.ff.avast.com timed out after none of the configured DNS servers responded.

Event[920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T20:57:20.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:02:58.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:03:06.905
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\ce5790e0-b7de-47f6-9cb8-9ac582f4f3b3
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:03:07.850
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:03:07.851
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:03:08.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:03:11.652
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:05:15.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:05:15.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:11:15.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:12:58.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:16:29.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:20:00.291
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:20:00.291
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:32:59.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T21:42:19.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[936]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-11-11T21:43:20.123
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->64.4.10.33:123).

Event[937]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-11T21:43:23.078
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?11?-?12T02:43:23.078409500Z from ?2013?-?11?-?12T02:43:20.123957900Z.

Event[938]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-11-11T21:43:23.078
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->64.4.10.33:123).

Event[939]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-11T21:43:23.078
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?11?-?12T02:43:23.078000000Z from ?2013?-?11?-?12T02:43:23.078409500Z.

Event[940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T22:09:22.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T22:20:00.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T22:20:00.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T22:25:37.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T22:26:05.987
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T22:26:15.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T22:45:44.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:02:46.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:19:16.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:20:00.502
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:20:00.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:30:03.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:30:25.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:30:25.576
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:35:25.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:40:03.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-11T23:46:55.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T00:12:41.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T00:20:00.295
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T00:20:00.295
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T00:29:42.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:13:36.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:20:00.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:20:00.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:20:28.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:23:36.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:36:58.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:52:55.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:52:57.439
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[969]:
  Log Name: System
  Source: USER32
  Date: 2013-11-12T01:53:27.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[970]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-12T01:53:30.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[971]:
  Log Name: System
  Source: USER32
  Date: 2013-11-12T01:53:30.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:30.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[973]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-12T01:53:30.378
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[974]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-12T01:53:31.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[976]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-12T01:53:31.376
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[992]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-12T01:53:31.813
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?11?-?12T06:53:31.813000000Z from ?2013?-?11?-?12T06:53:31.813502900Z.

Event[993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Connect Now - Config Registrar service entered the stopped state.

Event[995]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-12T01:53:31.828
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.844
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[999]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-12T01:53:31.859
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[1000]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-13T02:27:53.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[1001]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-13T02:27:53.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[1002]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-13T02:27:54.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 18 seconds.

Event[1003]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-12T01:53:31.859
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[1004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[1005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[1006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[1007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[1008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.891
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[1009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:31.891
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[1010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:32.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[1011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:32.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[1012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:32.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[1013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:32.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[1014]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-12T01:53:32.530
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[1015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:32.530
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[1016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:32.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[1017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:32.827
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[1018]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-12T01:53:36.742
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[1019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:37.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[1020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-12T01:53:40.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[1021]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-12T01:53:42.389
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?12T06:53:42.389818500Z.

Event[1022]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-13T02:27:36.843
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?13T07:27:35.595198400Z.

Event[1023]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T02:27:41.585
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1024]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T02:27:45.984
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1025]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-13T02:27:47.919
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[1026]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T02:27:48.543
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1027]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T02:27:48.543
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1028]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T02:27:48.543
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1029]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T02:27:48.543
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1030]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T02:27:48.543
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1031]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T02:27:48.543
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1032]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T02:27:48.543
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1033]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T02:27:48.543
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:53.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[1035]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-13T02:27:53.706
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[1036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:53.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[1037]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T02:27:53.862
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1038]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T02:27:53.878
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1039]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T02:27:53.878
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1040]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T02:27:53.878
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:53.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[1042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:53.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[1043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:53.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[1044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:54.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[1045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:54.081
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[1046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:54.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:54.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[1048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:54.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[1049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:55.719
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[1050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:55.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[1051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:55.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[1052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:55.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[1053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:55.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[1054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:55.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[1055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:55.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[1056]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-13T02:27:55.906
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[1057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:56.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[1058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:56.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[1059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:56.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[1060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:56.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[1061]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-13T02:27:56.124
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[1062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:56.140
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[1063]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-13T02:27:56.156
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[1064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:56.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[1065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:56.468
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[1066]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-13T02:27:56.468
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[1067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:57.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[1068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:58.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[1069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:59.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[1070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:59.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[1071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:59.850
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[1072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:27:59.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[1073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:01.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[1074]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-13T02:28:01.908
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[1075]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T02:28:01.939
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:05.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[1077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:05.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[1078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:05.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[1079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:08.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[1080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:08.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[1081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:08.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[1082]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-13T02:28:08.085
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[1083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:08.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[1084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:08.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[1085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:08.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[1086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:09.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[1087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:09.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[1088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:09.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[1089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:10.098
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[1090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:10.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:10.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[1092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:10.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[1093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:10.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[1094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:11.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[1095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:11.985
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[1096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:28:12.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[1097]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-13T02:28:16.353
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[1098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:10.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:10.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:10.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[1101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:10.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[1102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:10.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[1103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:11.013
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[1104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:11.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[1105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:11.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[1106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:12.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[1107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:13.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[1108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:13.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[1109]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-13T02:30:13.151
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[1110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:13.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[1111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:13.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[1112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:15.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[1113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:16.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[1114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:17.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[1115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:18.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[1116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:26.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[1117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:29.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[1118]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-13T02:30:46.784
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[1119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:54.010
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1120]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:59.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[1121]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:30:59.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[1122]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-13T02:31:00.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[1123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:31:00.189
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[1124]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-13T02:31:16.255
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[1125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:31:27.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[1126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:31:49.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[1127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:33:20.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[1128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:33:44.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[1129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:34:10.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[1130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:34:23.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[1131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:35:10.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[1132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:35:14.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[1133]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:41:35.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:42:31.324
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:42:31.598
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:42:31.684
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[1137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:43:49.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[1138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:43:49.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[1139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:46:09.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:52:10.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T02:56:09.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:06:42.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:10:10.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[1144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:16:42.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:20:00.635
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:20:00.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1147]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:42:08.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:43:36.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:44:34.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:53:06.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T03:53:36.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:01:04.209
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:11:03.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:12:41.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:19:32.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:19:36.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:19:43.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[1158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:19:47.543
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:19:47.839
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\971ab38d-f62e-46b7-b093-c0655a514a7d
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:19:48.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[1161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:19:48.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[1162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:19:53.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[1163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:20:00.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:20:00.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:21:56.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[1166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:21:56.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[1167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:27:56.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[1168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:30:32.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:31:34.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1170]:
  Log Name: System
  Source: USER32
  Date: 2013-11-13T04:33:51.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[1171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:50.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:52.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1173]:
  Log Name: System
  Source: USER32
  Date: 2013-11-13T04:33:54.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[1174]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-13T04:33:54.482
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[1175]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-13T04:33:56.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[1176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:55.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[1177]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T04:33:55.730
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[1178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:55.793
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[1179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:55.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[1180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[1181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[1182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[1183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[1184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.510
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[1185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[1186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[1187]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-13T04:33:56.526
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[1188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[1189]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-13T04:33:56.573
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[1190]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-13T04:33:56.573
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[1191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[1192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[1193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[1194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[1195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[1196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[1197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[1198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[1199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[1200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.635
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[1201]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-13T21:35:31.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[1202]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-13T21:35:31.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[1203]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-13T21:35:31.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 17 seconds.

Event[1204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.651
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[1205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.651
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[1206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.651
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[1207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[1208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[1209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[1210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[1211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:56.916
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[1212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:57.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[1213]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-13T04:33:57.290
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[1214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:57.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[1215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:57.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[1216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:33:57.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[1217]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-13T04:34:00.972
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[1218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T04:34:01.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[1219]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-13T04:34:01.939
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?13T09:34:01.939743800Z.

Event[1220]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-13T21:35:14.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?14T02:35:13.610798500Z.

Event[1221]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T21:35:19.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1222]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T21:35:24.047
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1223]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-13T21:35:26.137
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[1224]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T21:35:26.761
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1225]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T21:35:26.761
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1226]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T21:35:26.761
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1227]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T21:35:26.761
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1228]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T21:35:26.761
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1229]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T21:35:26.761
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1230]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T21:35:26.761
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1231]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-13T21:35:26.761
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[1233]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-13T21:35:31.036
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[1234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[1235]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T21:35:31.129
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1236]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T21:35:31.129
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1237]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T21:35:31.145
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1238]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T21:35:31.145
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.145
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[1240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.160
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[1241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[1242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[1243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[1244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.254
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[1246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.847
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[1247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[1248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[1249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[1250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[1251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[1252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[1253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[1254]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-13T21:35:31.894
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[1255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[1256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[1257]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-13T21:35:31.909
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[1258]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-13T21:35:31.925
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[1259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[1260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[1261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[1262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[1263]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:31.987
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[1264]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-13T21:35:31.987
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[1265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:32.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[1266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:32.718
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[1267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:32.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[1268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:32.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[1269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:33.028
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[1270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:33.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[1271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:33.058
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[1272]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-13T21:35:33.328
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[1273]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-13T21:35:33.458
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:33.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[1275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:33.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[1276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:33.718
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[1277]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:36.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[1278]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-13T21:35:36.628
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[1279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:36.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[1280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:36.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[1281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:36.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[1282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:36.738
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[1283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:36.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[1284]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:36.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[1285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:36.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[1286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:37.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[1287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:37.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[1288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:38.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:38.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[1290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:38.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[1291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:39.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[1292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:40.342
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[1293]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-13T21:35:49.796
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[1294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:50.061
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[1295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:35:50.732
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[1296]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-13T21:35:56.504
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[1297]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-13T21:36:17.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[1298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:36:17.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[1299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:36:18.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[1300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:36:21.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[1301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:36:21.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[1302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:36:21.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[1303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:36:54.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[1304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:37.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:37.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:38.125
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[1307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:38.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[1308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:38.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[1309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:40.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[1310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:41.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[1311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:41.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[1312]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-13T21:37:41.245
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[1313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:41.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[1314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:41.448
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[1315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:44.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[1316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:45.254
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[1317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:45.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[1318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:46.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[1319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:37:49.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[1320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:38:02.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:38:04.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[1322]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:39:07.529
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)

Event[1323]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:39:07.529
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Definition Update for Windows Defender - KB915597 (Definition 1.161.1906.0)

Event[1324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:39:08.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[1325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:39:09.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[1326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:39:10.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[1327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:39:10.789
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:39:15.687
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:40:28.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[1330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:40:37.102
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\11104eec-7990-40f7-b6db-7f62be452c38
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:40:40.597
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:40:40.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[1333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:40:41.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[1334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:40:42.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[1335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:40:53.108
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[1336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:14.652
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:24.916
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:32.716
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:34.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[1340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:41.296
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:44.042
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:44.760
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:46.928
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:47.724
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:41:49.892
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:42:04.088
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1347]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:42:18.112
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.161.1906.0)

Event[1348]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:42:18.112
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)

Event[1349]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:42:27.223
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)
- Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1350]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:42:27.223
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2862152)
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)
- Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1351]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:42:33.307
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2862152)
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Security Update for Windows 7 for x64-based Systems (KB2868725)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)
- Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1352]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:42:33.666
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2862152)
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Security Update for Windows 7 for x64-based Systems (KB2868725)
- Update for Windows 7 for x64-based Systems (KB2893519)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)
- Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1353]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:42:33.666
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2862152)
- Security Update for Windows 7 for x64-based Systems (KB2876331)
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Security Update for Windows 7 for x64-based Systems (KB2868725)
- Update for Windows 7 for x64-based Systems (KB2893519)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)
- Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1354]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:42:37.176
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2862152)
- Security Update for Windows 7 for x64-based Systems (KB2876331)
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Security Update for Windows 7 for x64-based Systems (KB2868725)
- Update for Windows 7 for x64-based Systems (KB2893519)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)
- Security Update for Windows 7 for x64-based Systems (KB2875783)
- Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1355]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T21:42:37.176
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2862152)
- Security Update for Windows 7 for x64-based Systems (KB2876331)
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Security Update for Windows 7 for x64-based Systems (KB2868725)
- Update for Windows 7 for x64-based Systems (KB2893519)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)
- Security Update for Windows 7 for x64-based Systems (KB2875783)
- Security Update for Windows 7 for x64-based Systems (KB2868626)
- Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:42:42.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[1357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:42:42.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[1358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:43:02.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[1359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:43:02.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[1360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:43:40.605
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[1361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:43:40.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[1362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:44:07.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[1363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:44:18.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[1364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:45:07.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[1365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:45:31.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:46:40.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[1367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:48:52.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[1368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:48:52.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[1369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:49:02.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[1370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:50:08.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:52:17.497
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:52:27.169
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:52:27.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[1374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T21:59:38.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:00:13.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[1376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:04:14.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:10:12.042
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[1378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:10:12.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[1379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:10:50.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[1380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:11:38.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[1381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:13:14.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[1382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:15:18.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:15:19.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[1384]:
  Log Name: System
  Source: Microsoft-Windows-DriverFrameworks-UserMode
  Date: 2013-11-13T22:15:28.457
  Event ID: 10114
  Task: Startup of the UMDF reflector
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The UMDF reflector was unable to complete startup because the WUDFPf service was not found.  This service may be started later during boot, at which point Windows will attempt to start the device again.

Event[1385]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-PnP
  Date: 2013-11-13T22:15:28.457
  Event ID: 219
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_LEXAR&PROD_USB_FLASH_DRIVE&REV_8.07#2012010713564134377C&0#.

Event[1386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:15:32.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.

Event[1387]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-13T22:15:50.129
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[1388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:15:51.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[1389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:15:57.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:16:14.762
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[1391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:17:38.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[1392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:20:00.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:20:00.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:22:41.954
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  getbus
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\getbus.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:27:32.837
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:27:33.601
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:27:33.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[1398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:37:14.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:49:02.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[1400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:49:03.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T22:51:03.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[1402]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-13T23:04:07.528
  Event ID: 20011
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Device action request for device 'USB\VID_05DC&PID_C753\2012010713564134377C' was vetoed by 'STORAGE\Volume\_??_USBSTOR#Disk&Ven_Lexar&Prod_USB_Flash_Drive&Rev_8.07#2012010713564134377C&0#{53f56307-b6bf-11d0-94f2-00a0c91efb8b}' with veto type 6.

Event[1403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:09:09.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:14:01.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:14:33.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:20:00.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:20:00.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:20:22.969
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:20:57.545
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:21:32.847
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Tablet PC Input Service service entered the running state.

Event[1411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:30:22.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:30:23.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[1413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:30:23.973
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:30:26.883
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:30:27.653
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:30:30.726
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1417]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T23:30:46.909
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?November ?14, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2862152)
- Security Update for Windows 7 for x64-based Systems (KB2876331)
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Security Update for Windows 7 for x64-based Systems (KB2868725)
- Update for Windows 7 for x64-based Systems (KB2893519)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)
- Security Update for Windows 7 for x64-based Systems (KB2875783)
- Security Update for Windows 7 for x64-based Systems (KB2868626)
- Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:30:49.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[1419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:30:49.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[1420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:31:04.957
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:31:12.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1422]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T23:32:29.683
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)

Event[1423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:36:28.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[1424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:39:23.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[1425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:39:28.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[1426]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-13T23:39:30.911
  Event ID: 21
  Task: Automatic Updates
  Level: Information
  Opcode: Reboot
  Keyword: Reboot
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Restart Required: To complete the installation of the following updates, the computer must be restarted. Until this computer has been restarted, Windows cannot search for or download new updates: 
- Security Update for Windows 7 for x64-based Systems (KB2862152)
- Security Update for Windows 7 for x64-based Systems (KB2876331)
- Windows Malicious Software Removal Tool x64 - November 2013 (KB890830)
- Security Update for Windows 7 for x64-based Systems (KB2868725)
- Update for Windows 7 for x64-based Systems (KB2893519)
- Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)
- Security Update for Windows 7 for x64-based Systems (KB2875783)
- Update for Windows 7 for x64-based Systems (KB2830477)
- Security Update for Windows 7 for x64-based Systems (KB2868626)
- Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:48:46.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:51:39.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:52:10.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-13T23:52:42.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T00:07:13.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T00:08:44.498
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1433]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2013-11-14T00:14:29.842
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name r5---sn-jvhj5nu-p5ql.googlevideo.com timed out after none of the configured DNS servers responded.

Event[1434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T00:20:00.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T00:20:00.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T00:23:43.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T00:31:24.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T00:42:20.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:01:41.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:02:10.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:11:32.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[1442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:18:40.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:20:00.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1444]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:20:00.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:45:48.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:50:32.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:52:01.829
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[1448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:52:25.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[1449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:52:29.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[1450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:57:19.275
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[1451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T01:57:32.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:00:45.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[1453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:00:51.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[1454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:00:52.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[1455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:03:03.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[1456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:05:03.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[1457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:05:47.635
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[1458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:06:39.848
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:09:51.104
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:12:35.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:13:36.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:14:02.448
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:20:00.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:20:00.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:22:42.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:27:04.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Pml Driver HPZ12 service entered the running state.

Event[1467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:31:14.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[1468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:36:16.744
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[1469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:37:04.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:37:39.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:49:42.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:51:44.685
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:51:44.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1474]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:52:25.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1475]:
  Log Name: System
  Source: USER32
  Date: 2013-11-14T02:52:58.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process wuauclt.exe has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Operating System: Recovery (Planned)
 Reason Code: 0x80020002
 Shutdown Type: restart
 Comment: 

Event[1476]:
  Log Name: System
  Source: USER32
  Date: 2013-11-14T02:53:05.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[1477]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-14T02:53:05.553
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[1478]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:53:05.881
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[1479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:05.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[1480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:06.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[1481]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-14T02:53:06.271
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'true' 


Event[1482]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-14T02:53:07.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[1483]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:07.394
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[1484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:22.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[1485]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-14T02:53:23.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[1486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.181
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[1487]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.181
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[1488]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.181
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[1489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Pml Driver HPZ12 service entered the stopped state.

Event[1490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[1491]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-14T02:53:23.197
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[1492]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-14T02:53:23.197
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[1493]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-14T02:53:23.197
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[1494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[1495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[1496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[1497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[1498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[1499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[1500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[1501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.259
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[1502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[1503]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-14T02:54:22.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[1504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[1505]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-14T02:54:22.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[1506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.509
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[1507]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-14T02:54:22.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 28 seconds.

Event[1508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[1509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[1510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[1511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[1512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[1513]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-14T02:53:23.977
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[1514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:23.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[1515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:24.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[1516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:24.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[1517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:24.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[1518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:24.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[1519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:24.382
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[1520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:24.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[1521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:25.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[1522]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-14T02:53:28.173
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[1523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:29.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[1524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:29.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[1525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:53:30.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[1526]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-14T02:53:34.850
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?14T07:53:34.850354800Z.

Event[1527]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-14T02:53:55.843
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?14T07:53:54.595198400Z.

Event[1528]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-14T02:54:00.570
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1529]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-14T02:54:03.970
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1530]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-14T02:54:17.028
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[1531]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-14T02:54:17.620
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1532]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-14T02:54:17.620
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1533]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-14T02:54:17.620
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1534]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-14T02:54:17.620
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1535]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-14T02:54:17.620
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1536]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-14T02:54:17.620
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1537]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-14T02:54:17.620
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1538]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-14T02:54:17.620
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:22.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[1540]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-14T02:54:22.519
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'true' 


Event[1541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:22.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[1542]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-14T02:54:22.659
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1543]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-14T02:54:22.675
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1544]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-14T02:54:22.675
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1545]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-14T02:54:22.675
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:22.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[1547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:22.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[1548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:22.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[1549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:22.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[1550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:22.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[1551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:22.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:23.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[1553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:23.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[1554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:23.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[1555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:23.361
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[1556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:23.361
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[1557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:23.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[1558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:23.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[1559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.725
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[1560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[1561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[1562]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-14T02:54:24.735
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[1563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[1564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.765
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[1565]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-14T02:54:24.765
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[1566]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-14T02:54:24.765
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[1567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.765
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[1568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.785
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[1569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[1570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[1571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:24.835
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[1572]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-14T02:54:24.835
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[1573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:25.545
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[1574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:25.565
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[1575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:25.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[1576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:25.825
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[1577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:26.025
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[1578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:26.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[1579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:26.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[1580]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-14T02:54:26.065
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[1581]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-14T02:54:26.085
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:26.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[1583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:26.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[1584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:26.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[1585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:26.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[1586]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-14T02:54:26.295
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[1587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:27.645
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[1588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:27.645
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[1589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:28.585
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[1590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:28.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[1591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:28.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[1592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:28.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[1593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:28.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[1594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:28.961
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[1595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:29.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[1596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:30.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:30.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[1598]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-14T02:54:30.240
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[1599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:30.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[1600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:33.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:33.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[1602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:34.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[1603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:36.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[1604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:36.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[1605]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-14T02:54:39.225
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[1606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:46.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[1607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:50.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[1608]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-14T02:54:58.710
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[1609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:54:59.583
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1610]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-14T02:55:14.325
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[1611]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-14T02:55:26.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[1612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:55:25.781
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[1613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:55:26.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[1614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:55:26.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[1615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:55:26.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[1616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:14.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[1617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:17.248
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[1618]:
  Log Name: System
  Source: Microsoft-Windows-DriverFrameworks-UserMode
  Date: 2013-11-14T02:56:21.070
  Event ID: 10114
  Task: Startup of the UMDF reflector
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The UMDF reflector was unable to complete startup because the WUDFPf service was not found.  This service may be started later during boot, at which point Windows will attempt to start the device again.

Event[1619]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-PnP
  Date: 2013-11-14T02:56:21.070
  Event ID: 219
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_0902#000000000902&0#.

Event[1620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:23.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.

Event[1621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:29.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:29.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:29.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[1624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:30.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[1625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:30.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[1626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:33.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[1627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:34.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[1628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:34.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[1629]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-14T02:56:34.235
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[1630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:34.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[1631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:37.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[1632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:38.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[1633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:38.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[1634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:38.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[1635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:56:42.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[1636]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:57:33.609
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Cumulative Security Update for Internet Explorer 10 for Windows 7 Service Pack 1 for x64-based Systems (KB2888505)

Event[1637]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:57:33.609
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2868626)

Event[1638]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:57:33.609
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Update for Windows 7 for x64-based Systems (KB2830477)

Event[1639]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:57:33.609
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2875783)

Event[1640]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:57:33.609
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2900986)

Event[1641]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:57:33.609
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Update for Windows 7 for x64-based Systems (KB2893519)

Event[1642]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:57:33.609
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2868725)

Event[1643]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:57:33.609
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2876331)

Event[1644]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T02:57:33.609
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2862152)

Event[1645]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-14T02:59:09.912
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[1646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:59:39.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[1647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:59:41.715
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  getbus
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\getbus.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T02:59:51.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[1649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:00:16.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[1650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:02:40.120
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  AtiDCM
Service File Name:  C:\AMD\Support\13-9_win7_win8_64_dd_ccc_whql\Bin64\atdcm64a.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:05:18.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[1652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:08:15.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[1653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:08:16.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[1654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:08:21.444
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:08:25.712
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:08:25.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[1657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:14:05.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:16:11.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:20:00.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:20:00.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:23:00.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1662]:
  Log Name: System
  Source: USER32
  Date: 2013-11-14T03:25:44.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[1663]:
  Log Name: System
  Source: USER32
  Date: 2013-11-14T03:25:46.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[1664]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-14T03:25:46.786
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[1665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:48.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[1666]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-14T03:25:48.190
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[1667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:48.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[1668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:48.378
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[1669]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-14T03:25:49.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[1670]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-14T03:25:49.002
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[1671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.002
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[1672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[1673]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-14T03:25:49.033
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[1674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[1675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[1676]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-14T03:25:49.048
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[1677]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[1678]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-18T00:00:54.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[1679]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-18T00:00:54.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[1680]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-18T00:00:54.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[1681]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.095
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[1682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[1683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[1684]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[1685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[1686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[1687]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[1688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[1689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[1690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[1691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[1692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[1693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[1694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[1695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[1696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.251
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[1697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.267
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[1698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[1699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[1700]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-14T03:25:49.813
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[1701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:49.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[1702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:50.109
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[1703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:50.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[1704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:50.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[1705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:52.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[1706]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-14T03:25:53.494
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[1707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-14T03:25:56.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[1708]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-14T03:25:57.270
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?14T08:25:57.270042300Z.

Event[1709]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-18T00:00:31.843
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?18T05:00:30.595198400Z.

Event[1710]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-18T00:00:36.570
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1711]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-18T00:00:39.736
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1712]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-18T00:00:41.983
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[1713]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-18T00:00:42.747
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1714]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-18T00:00:42.747
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1715]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-18T00:00:42.747
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1716]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-18T00:00:42.747
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1717]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-18T00:00:42.747
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1718]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-18T00:00:42.747
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1719]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-18T00:00:42.747
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1720]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-18T00:00:42.747
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:53.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[1722]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-18T00:00:53.745
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[1723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:53.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[1724]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-18T00:00:53.901
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1725]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-18T00:00:53.901
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1726]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-18T00:00:53.901
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1727]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-18T00:00:53.901
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:53.917
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[1729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[1730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[1731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[1732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[1733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.744
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[1735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[1736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[1737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[1738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[1739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[1740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[1741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[1742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[1743]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-18T00:00:54.884
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[1744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[1745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[1746]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-18T00:00:54.900
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[1747]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-18T00:00:54.915
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[1748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[1749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[1750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[1751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:54.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[1752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:55.919
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[1753]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-18T00:00:55.919
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[1754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:56.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[1755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:56.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[1756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:56.949
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[1757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:59.169
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[1758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:59.259
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[1759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:59.279
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[1760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:59.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[1761]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-18T00:00:59.299
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[1762]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-18T00:00:59.319
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:59.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[1764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:59.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[1765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:00:59.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[1766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:00.739
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[1767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:01.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[1768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:01.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[1769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:01.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[1770]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-18T00:01:01.581
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[1771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:01.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[1772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:01.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[1773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:01.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[1774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:01.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[1775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:01.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[1776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:02.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[1777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:02.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[1778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:02.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[1779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:03.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[1780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:03.625
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[1781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:04.529
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:06.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[1783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:01:06.667
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[1784]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-18T00:01:09.225
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[1785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:02.949
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[1786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:03.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:03.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:03.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[1789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:03.448
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[1790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:03.448
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[1791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:04.291
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[1792]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:04.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[1793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:04.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[1794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:05.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[1795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:05.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[1796]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-18T00:03:05.695
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[1797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:05.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[1798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:06.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[1799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:09.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[1800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:10.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[1801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:10.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[1802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:10.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[1803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:20.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[1804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:03:22.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[1805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:04:04.273
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[1806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:04:19.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[1807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:04:41.510
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[1808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:05:10.308
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[1809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:05:11.665
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[1810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:05:11.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[1811]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-18T00:05:15.237
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Monday, ?November ?18, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.161.2195.0)

Event[1812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:05:31.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:05:41.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[1814]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-18T00:05:53.099
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.161.2195.0)

Event[1815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:06:00.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:06:09.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[1817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:06:09.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the stopped state.

Event[1818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:08:06.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[1819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:08:38.989
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[1820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:01.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[1821]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-18T00:10:07.052
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[1822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:09.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1823]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-18T00:10:15.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[1824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:15.406
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[1825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:15.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[1826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:15.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[1827]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-18T00:10:20.780
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[1828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:22.590
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[1829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:32.715
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[1830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:35.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[1831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:39.905
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[1832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:10:41.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[1833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:11:38.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[1834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:15:08.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[1835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:15:52.793
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[1836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:15:53.123
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[1837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:15:53.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[1838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:20:00.394
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:20:00.394
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:23:08.555
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[1841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:23:09.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[1842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:24:28.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:31:04.530
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:35:02.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[1845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:35:05.939
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:35:06.109
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\403ad380-6b98-4665-bfd3-979f46148cb6
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:35:06.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[1848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:35:06.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[1849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:35:09.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:35:11.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[1851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:35:47.485
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:35:49.588
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\044dfe2c-6b95-47b5-be64-6050349c07e6
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:37:14.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[1854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:37:14.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[1855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:43:03.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[1856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:43:14.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[1857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:45:44.498
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:47:23.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:49:00.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T00:53:15.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:07:53.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:14:45.056
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:14:47.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[1864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:14:51.933
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\fe1c8868-5a20-44e4-9e00-314f86fd5836
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[1865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:16:50.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[1866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:16:51.039
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[1867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:19:48.629
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[1868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:20:00.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:20:00.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:20:37.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:20:58.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[1872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:21:00.585
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[1873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:21:11.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:22:50.902
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[1875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:26:47.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:36:03.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[1877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T01:43:17.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[1878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:20:00.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[1879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:20:00.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[1880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:44:50.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:25.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[1882]:
  Log Name: System
  Source: USER32
  Date: 2013-11-18T02:45:37.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[1883]:
  Log Name: System
  Source: USER32
  Date: 2013-11-18T02:45:40.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[1884]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-18T02:45:41.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[1885]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-18T02:45:40.366
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[1886]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-18T02:45:40.491
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[1887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:40.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[1888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:40.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[1889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[1890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[1891]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-18T02:45:41.271
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[1892]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-18T02:45:41.271
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[1893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[1894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[1895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[1896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[1897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[1898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[1899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[1900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[1901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[1902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[1903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[1904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[1905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[1906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[1907]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-18T02:45:41.334
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[1908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[1909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.349
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[1910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.365
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[1911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[1912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.427
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[1913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[1914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:41.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[1915]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-19T01:34:59.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[1916]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-19T01:34:59.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[1917]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-19T01:34:59.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[1918]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-18T02:45:42.004
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[1919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:42.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[1920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:42.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[1921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:42.223
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[1922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:42.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[1923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:42.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[1924]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-18T02:45:45.764
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[1925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:46.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[1926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-18T02:45:49.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[1927]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-18T02:45:51.552
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?18T07:45:51.552134200Z.

Event[1928]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-19T01:34:37.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?19T06:34:36.595198400Z.

Event[1929]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-19T01:34:42.726
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1930]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-19T01:34:46.033
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1931]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-19T01:34:48.295
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[1932]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-19T01:34:48.934
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1933]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-19T01:34:48.934
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1934]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-19T01:34:48.934
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1935]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-19T01:34:48.934
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1936]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-19T01:34:48.934
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1937]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-19T01:34:48.934
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1938]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-19T01:34:48.934
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1939]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-19T01:34:48.934
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[1940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:34:59.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[1941]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-19T01:34:59.449
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[1942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:34:59.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[1943]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-19T01:34:59.605
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1944]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-19T01:34:59.605
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1945]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-19T01:34:59.605
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1946]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-19T01:34:59.605
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:34:59.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[1948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:34:59.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[1949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:34:59.652
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[1950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:34:59.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[1951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:34:59.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[1952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:00.026
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[1953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:00.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[1954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:00.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[1955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:00.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[1956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:00.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[1957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[1958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[1959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[1960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[1961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[1962]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-19T01:35:01.212
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[1963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[1964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[1965]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-19T01:35:01.477
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[1966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.492
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[1967]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-19T01:35:01.508
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[1968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[1969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[1970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[1971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:01.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[1972]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-19T01:35:01.804
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[1973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:03.278
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[1974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:03.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[1975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:03.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[1976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:03.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[1977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:03.768
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[1978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:03.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[1979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:03.798
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[1980]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-19T01:35:03.808
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[1981]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-19T01:35:03.828
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[1982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:04.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[1983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:04.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[1984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:04.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[1985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:04.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[1986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:04.198
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[1987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:04.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[1988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:08.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[1989]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-19T01:35:08.088
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[1990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:08.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[1991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:08.681
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[1992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:08.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[1993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:08.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[1994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:08.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[1995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:09.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[1996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:09.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[1997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:09.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[1998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:09.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[1999]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:11.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[2000]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:12.113
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[2001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:12.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[2002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:14.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[2003]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-19T01:35:16.309
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[2004]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-19T01:35:26.558
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[2005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:43.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2006]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-19T01:35:54.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[2007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:54.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[2008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:35:58.835
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[2009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:36:00.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[2010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:36:01.799
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[2011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:36:01.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[2012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:36:38.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[2013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:09.378
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:09.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:09.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[2016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:09.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[2017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:09.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[2018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:10.738
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[2019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:11.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[2020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:11.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[2021]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-19T01:37:11.838
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[2022]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:11.838
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[2023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:12.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:14.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[2025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:14.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[2026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:15.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[2027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:16.201
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[2028]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:18.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[2029]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-19T01:37:21.848
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[2030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:25.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[2031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:37:48.697
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[2032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:38:08.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[2033]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:38:15.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:38:18.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[2035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:38:47.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[2036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:38:57.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[2037]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-19T01:39:11.461
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Tuesday, ?November ?19, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.163.39.0)

Event[2038]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-19T01:39:23.520
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.163.39.0)

Event[2039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:39:47.279
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[2040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:43:05.802
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[2041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:48:28.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[2042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:48:28.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[2043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:49:07.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[2044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:49:23.230
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[2045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:49:23.483
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[2046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:49:23.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T01:57:39.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[2048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:08:01.810
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[2049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:08:04.710
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[2050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:08:04.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[2051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:08:05.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[2052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:08:07.252
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\5091be8c-8e1a-405e-9487-3dbe486051eb
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[2053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:08:38.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[2054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:10:42.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[2055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:10:42.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[2056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:16:42.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[2057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:17:09.719
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[2058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:20:00.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:20:00.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:36:32.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T02:53:02.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[2062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T03:17:37.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T03:20:00.599
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T03:20:00.599
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T03:34:07.358
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[2066]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T04:20:00.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T04:20:00.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T04:42:28.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:00:51.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:01:03.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2071]:
  Log Name: System
  Source: USER32
  Date: 2013-11-19T05:03:15.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[2072]:
  Log Name: System
  Source: USER32
  Date: 2013-11-19T05:03:17.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[2073]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-19T05:03:17.505
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[2074]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-11-19T05:03:18.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1069" attempting to start the service upnphost with arguments "" in order to run the server:
{204810B9-73B2-11D4-BF42-00B0D0118B56}

Event[2075]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-19T05:03:18.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[2076]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-19T05:03:19.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[2077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:18.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2078]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-19T05:03:18.395
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[2079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:18.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[2080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:18.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[2081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:18.644
  Event ID: 7038
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The upnphost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: 
The request is not supported.

To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).

Event[2082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:18.644
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service failed to start due to the following error: 
The service did not start due to a logon failure.

Event[2083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:18.675
  Event ID: 7038
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The upnphost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: 
The request is not supported.

To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).

Event[2084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:18.675
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service failed to start due to the following error: 
The service did not start due to a logon failure.

Event[2085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:18.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[2086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[2087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[2088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[2089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[2090]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-19T05:03:19.206
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[2091]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-19T05:03:19.206
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[2092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[2093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[2094]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-19T05:03:19.221
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[2095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[2096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[2097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[2098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.253
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[2099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.253
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[2100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.253
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[2101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.253
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[2102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.253
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[2103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[2104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[2105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[2106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[2108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[2109]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[2110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[2111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[2112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[2113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.518
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[2114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[2115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[2116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[2117]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-19T05:03:19.955
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[2118]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:19.955
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[2119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:20.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[2120]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-20T00:13:47.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[2121]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-20T00:13:47.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[2122]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-20T00:13:47.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 19 seconds.

Event[2123]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-11-19T05:03:20.766
  Event ID: 134
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
NtpClient was unable to set a manual peer to use as a time source because of DNS resolution error on ''. NtpClient will try again in 3473457 minutes and double the reattempt interval thereafter. The error was: The requested name is valid, but no data of the requested type was found. (0x80072AFC)

Event[2124]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-19T05:03:23.699
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[2125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:24.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[2126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-19T05:03:27.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[2127]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-19T05:03:29.393
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?19T10:03:29.393131600Z.

Event[2128]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-20T00:13:28.843
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?20T05:13:27.595198400Z.

Event[2129]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T00:13:33.585
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2130]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T00:13:37.470
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2131]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-20T00:13:41.728
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[2132]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T00:13:42.337
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2133]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T00:13:42.337
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2134]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T00:13:42.337
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2135]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T00:13:42.337
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2136]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T00:13:42.337
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2137]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T00:13:42.337
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2138]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T00:13:42.337
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2139]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T00:13:42.337
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:46.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[2141]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-20T00:13:46.892
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[2142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:47.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[2143]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T00:13:47.048
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2144]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T00:13:47.048
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2145]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T00:13:47.048
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2146]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T00:13:47.048
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2147]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:47.064
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[2148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:47.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[2149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:47.095
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[2150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:47.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[2151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:47.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[2152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:47.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[2153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:47.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[2154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:47.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[2155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.062
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[2156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.062
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[2157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.109
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[2158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[2159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[2160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[2161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[2162]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-20T00:13:48.187
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[2163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[2164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[2165]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-20T00:13:48.234
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[2166]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-20T00:13:48.234
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[2167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[2168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[2169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[2170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[2171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:48.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[2172]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-20T00:13:48.483
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[2173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:49.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[2174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:49.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[2175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:49.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[2176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:49.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[2177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:49.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[2178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:49.841
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[2179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:49.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[2180]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-20T00:13:52.361
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[2181]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T00:13:52.421
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:52.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[2183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:52.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[2184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:52.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[2185]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-20T00:13:52.741
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[2186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:52.841
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[2187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:53.031
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[2188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:53.031
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[2189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:53.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[2190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:53.281
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[2191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:53.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[2192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:53.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[2193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:53.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[2194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:53.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[2195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:54.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[2196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:54.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:54.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[2198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:54.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[2199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:56.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[2200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:56.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[2201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:56.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[2202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:13:58.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[2203]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-20T00:13:59.478
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[2204]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-20T00:14:01.849
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[2205]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-20T00:14:21.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[2206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:14:21.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[2207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:14:21.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[2208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:14:22.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[2209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:14:23.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[2210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:14:23.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[2211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:12.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[2212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:54.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:54.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:55.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[2215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:55.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[2216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:55.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[2217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:57.060
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[2218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:57.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[2219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:57.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[2220]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-20T00:15:57.544
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[2221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:57.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[2222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:15:57.949
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:16:00.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[2224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:16:00.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[2225]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:16:00.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[2226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:16:02.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[2227]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-11-20T00:16:02.333
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->64.4.10.33:123).

Event[2228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:16:04.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[2229]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-11-20T00:16:16.732
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->64.4.10.33:123).

Event[2230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:16:20.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[2231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:16:53.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[2232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:16:57.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[2233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:17:04.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:17:19.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[2235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:17:29.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[2236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:18:04.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:18:19.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[2238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:19:15.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[2239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:20:00.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:20:00.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2241]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-20T00:20:53.300
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[2242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:20:56.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[2243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:20:58.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[2244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:21:03.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[2245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:27:03.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[2246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:27:03.667
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[2247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:27:18.177
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[2248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:27:18.440
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[2249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:27:18.521
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:31:01.297
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[2251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:36:25.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[2252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T00:55:55.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[2253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T01:20:00.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T01:20:00.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:09:55.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:20:00.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:20:01.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:26:25.119
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[2259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:45:00.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:45:02.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:45:08.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:45:17.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[2263]:
  Log Name: System
  Source: USER32
  Date: 2013-11-20T02:46:19.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[2264]:
  Log Name: System
  Source: USER32
  Date: 2013-11-20T02:46:21.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[2265]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-20T02:46:21.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[2266]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-20T02:46:22.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[2267]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-20T02:46:21.441
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[2268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:21.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[2269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:21.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[2270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2271]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-20T02:46:22.346
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[2272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[2273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.439
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[2274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[2275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[2276]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-20T02:46:22.611
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[2277]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-20T02:46:22.611
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[2278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[2279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[2280]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-20T02:46:22.626
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[2281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[2282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[2283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[2284]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[2285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[2286]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-20T02:46:22.626
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?11?-?20T07:46:22.626000000Z from ?2013?-?11?-?20T07:46:22.626958300Z.

Event[2287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[2288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[2289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.657
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[2290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[2292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[2293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[2294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[2295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[2296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[2297]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.719
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[2298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[2299]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-20T22:00:48.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[2300]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-20T22:00:49.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[2301]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-20T22:00:49.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 22 seconds.

Event[2302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[2303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[2304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[2305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[2306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:22.969
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[2307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:23.281
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[2308]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-20T02:46:23.328
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[2309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:23.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[2310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:23.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[2311]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-20T02:46:27.618
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[2312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:28.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[2313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T02:46:30.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[2314]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-20T02:46:33.015
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?20T07:46:33.015618100Z.

Event[2315]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-20T22:00:27.952
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?21T03:00:26.595198400Z.

Event[2316]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T22:00:32.694
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2317]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T22:00:36.267
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2318]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-20T22:00:38.279
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[2319]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T22:00:39.044
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2320]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T22:00:39.044
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2321]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T22:00:39.044
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2322]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T22:00:39.044
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2323]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T22:00:39.044
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2324]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T22:00:39.044
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2325]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T22:00:39.044
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2326]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-20T22:00:39.044
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:46.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[2328]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-20T22:00:46.828
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[2329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:46.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[2330]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T22:00:47.015
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2331]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T22:00:47.015
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2332]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T22:00:47.031
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2333]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T22:00:47.468
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:47.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[2335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:47.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[2336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:48.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[2337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.012
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[2338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[2339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[2340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[2341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.542
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[2342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[2343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[2344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[2345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[2346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[2347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[2348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[2349]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-20T22:00:49.605
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[2350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[2351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:49.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[2352]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-20T22:00:49.620
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[2353]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-20T22:00:50.120
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[2354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:50.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[2355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:50.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[2356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:50.135
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[2357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:50.135
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[2358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:50.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[2359]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-20T22:00:50.166
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[2360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:52.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[2361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:53.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[2362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:53.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[2363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:53.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[2364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[2365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[2366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[2367]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-20T22:00:55.484
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[2368]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-20T22:00:55.504
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[2370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[2371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.762
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[2372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[2373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[2374]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-20T22:00:55.778
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[2375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[2376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[2377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[2378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.856
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[2379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[2380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:55.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[2381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:56.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[2382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:56.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[2383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:56.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:56.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[2385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:56.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[2386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:57.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[2387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:00:58.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[2388]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-20T22:01:01.659
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[2389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:01:02.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[2390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:01:02.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[2391]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-20T22:01:08.851
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[2392]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-20T22:01:28.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[2393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:01:28.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[2394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:01:32.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[2395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:01:34.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[2396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:01:35.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[2397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:01:35.427
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[2398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:20.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[2399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:56.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:56.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:56.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[2402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:56.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[2403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:56.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[2404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:58.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[2405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:58.919
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[2406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:58.919
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[2407]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-20T22:02:59.168
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[2408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:59.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[2409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:02:59.605
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:03:01.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[2411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:03:02.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[2412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:03:02.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[2413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:03:03.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[2414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:03:06.563
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[2415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:03:16.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:03:38.855
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[2417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:03:59.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[2418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:04:02.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[2419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:04:04.969
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:04:20.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[2421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:04:31.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[2422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:05:14.058
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[2423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:05:18.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[2424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:05:18.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[2425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:05:21.398
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[2426]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-20T22:05:22.802
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[2427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:05:32.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[2428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:08:02.267
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[2429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:13:50.011
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:14:10.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[2431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:14:12.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[2432]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2013-11-20T22:14:19.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[2433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:14:19.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the running state.

Event[2434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:14:19.228
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[2435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:14:19.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[2436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:14:20.090
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[2437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:14:20.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:14:58.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:19:20.042
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[2440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:20:00.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:20:00.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:25:14.832
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[2443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:25:15.002
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[2444]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:25:15.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:25:46.762
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:26:11.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[2447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:29:11.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[2448]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2013-11-20T22:29:19.000
  Event ID: 4
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service stopped.

Event[2449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:29:19.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the stopped state.

Event[2450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:29:19.216
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the stopped state.

Event[2451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:30:49.062
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[2452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:36:17.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[2453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:39:56.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[2454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T22:42:57.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[2455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:01:47.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:02:26.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Secondary Logon service entered the running state.

Event[2457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:12:46.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[2458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:20:00.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:20:00.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:36:55.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:46:12.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[2462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:30.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2463]:
  Log Name: System
  Source: USER32
  Date: 2013-11-20T23:49:54.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[2464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:55.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[2465]:
  Log Name: System
  Source: USER32
  Date: 2013-11-20T23:49:57.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[2466]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-20T23:49:57.254
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[2467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2468]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-20T23:49:58.127
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[2469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[2470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[2471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[2472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[2473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[2474]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[2475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[2476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[2477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[2478]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-20T23:49:59.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[2479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[2480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[2481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[2482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[2483]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-20T23:49:58.985
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[2484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:58.985
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[2485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2486]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-20T23:49:59.016
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[2487]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-20T23:49:59.016
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[2488]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[2489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[2490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[2491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[2492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[2493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[2494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[2495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[2496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[2497]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-20T23:49:59.687
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[2498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:49:59.687
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[2499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:50:00.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[2500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:50:00.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[2501]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-24T23:31:21.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[2502]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-24T23:31:21.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[2503]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-24T23:31:21.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 18 seconds.

Event[2504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:50:00.732
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[2505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:50:01.013
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[2506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:50:01.434
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[2507]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-20T23:50:03.416
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[2508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:50:04.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[2509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-20T23:50:05.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[2510]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-20T23:50:09.312
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?21T04:50:09.312841700Z.

Event[2511]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-24T23:31:04.952
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?25T04:31:03.595198400Z.

Event[2512]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-24T23:31:09.679
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2513]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-24T23:31:13.204
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2514]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-24T23:31:16.917
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[2515]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-24T23:31:17.510
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2516]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-24T23:31:17.510
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2517]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-24T23:31:17.510
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2518]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-24T23:31:17.510
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2519]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-24T23:31:17.510
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2520]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-24T23:31:17.510
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2521]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-24T23:31:17.510
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2522]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-24T23:31:17.510
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:21.535
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[2524]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-24T23:31:21.535
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[2525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:21.597
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[2526]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-24T23:31:21.628
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2527]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-24T23:31:21.628
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2528]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-24T23:31:21.644
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2529]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-24T23:31:21.644
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:21.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[2531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:21.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[2532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:21.738
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[2533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:21.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[2534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:21.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[2535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[2536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[2537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[2538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[2539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[2540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[2541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.377
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[2542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.377
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[2543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[2544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[2545]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-24T23:31:22.393
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[2546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[2547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[2548]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-24T23:31:22.408
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[2549]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-24T23:31:22.424
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[2550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[2551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[2552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:22.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[2553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.110
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[2554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[2555]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-24T23:31:23.142
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[2556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[2557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[2558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[2559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[2560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[2561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[2562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[2563]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-24T23:31:23.774
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[2564]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-24T23:31:23.794
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:23.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[2566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:24.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[2567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:24.044
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[2568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:24.044
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[2569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:24.064
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[2570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:24.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[2571]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-24T23:31:24.074
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[2572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:24.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[2573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:24.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[2574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:24.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[2575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:24.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[2576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:28.434
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[2577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:31.040
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[2578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:31.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[2579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:38.294
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[2580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:38.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:38.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[2582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:38.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[2583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:38.731
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[2584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:40.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[2585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:31:40.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[2586]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-24T23:31:41.055
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[2587]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-24T23:31:42.990
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[2588]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-24T23:32:01.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[2589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:32:01.367
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[2590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:32:05.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[2591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:32:08.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[2592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:32:09.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[2593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:32:09.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[2594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:32:53.793
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[2595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:31.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:32.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:32.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[2598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:32.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[2599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:32.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[2600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:33.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[2601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:34.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[2602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:34.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[2603]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-24T23:33:34.509
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[2604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:34.509
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[2605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:34.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:36.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[2607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:37.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[2608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:37.785
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[2609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:38.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[2610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:41.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[2611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:33:45.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:34:12.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[2613]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-24T23:34:21.372
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[2614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:34:28.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[2615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:34:53.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:35:29.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[2617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:35:29.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[2618]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-24T23:35:33.821
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Monday, ?November ?25, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.163.326.0)

Event[2619]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-24T23:36:19.689
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.163.326.0)

Event[2620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:36:45.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[2621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:38:27.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Activation Technologies Service service entered the running state.

Event[2622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:38:39.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[2623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:38:54.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[2624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:39:15.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[2625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:39:18.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[2626]:
  Log Name: System
  Source: Microsoft-Windows-DriverFrameworks-UserMode
  Date: 2013-11-24T23:39:22.955
  Event ID: 10114
  Task: Startup of the UMDF reflector
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The UMDF reflector was unable to complete startup because the WUDFPf service was not found.  This service may be started later during boot, at which point Windows will attempt to start the device again.

Event[2627]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-PnP
  Date: 2013-11-24T23:39:22.955
  Event ID: 219
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_LEXAR&PROD_USB_FLASH_DRIVE&REV_8.07#2012010713564134377C&0#.

Event[2628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:39:25.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.

Event[2629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:39:27.488
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[2630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:39:27.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Activation Technologies Service service entered the stopped state.

Event[2631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:39:54.765
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[2632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:42:18.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[2633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:42:43.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[2634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:43:33.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[2635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:44:44.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[2636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:44:45.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[2637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:46:19.390
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[2638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:46:19.590
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[2639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:46:19.730
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:49:45.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[2641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-24T23:55:38.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[2642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T00:09:42.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[2643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T00:12:21.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[2644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T00:13:32.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[2645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T00:20:00.374
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T00:20:00.374
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:26.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:32.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2649]:
  Log Name: System
  Source: USER32
  Date: 2013-11-25T01:12:38.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[2650]:
  Log Name: System
  Source: USER32
  Date: 2013-11-25T01:12:41.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[2651]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-25T01:12:41.141
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[2652]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-25T01:12:42.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[2653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2654]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-25T01:12:42.139
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[2655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[2656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.248
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[2657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.404
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[2658]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-25T01:12:42.404
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[2659]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-25T01:12:42.404
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[2660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.404
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[2661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.404
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[2662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[2663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[2664]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[2665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[2666]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-25T01:12:42.436
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[2667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[2668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[2669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[2670]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[2671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[2672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[2673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[2674]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-26T20:18:38.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[2675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[2676]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-26T20:18:38.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[2677]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[2678]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-26T20:18:38.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 18 seconds.

Event[2679]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[2680]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[2681]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[2683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[2684]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.779
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[2685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[2686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:42.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[2687]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-25T01:12:43.153
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[2688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:43.153
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[2689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:43.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[2690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:43.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[2691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:43.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[2692]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-25T01:12:47.412
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[2693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:48.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[2694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-25T01:12:48.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[2695]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-25T01:12:53.231
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?25T06:12:53.231234600Z.

Event[2696]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-26T20:18:20.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?27T01:18:19.595198400Z.

Event[2697]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:18:25.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2698]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:18:29.236
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2699]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-26T20:18:32.886
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[2700]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:18:34.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2701]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:18:34.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2702]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:18:34.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2703]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:18:34.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2704]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:18:34.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2705]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:18:34.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2706]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:18:34.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2707]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:18:34.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.034
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[2709]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-26T20:18:38.034
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[2710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[2711]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:18:38.174
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2712]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:18:38.190
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2713]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:18:38.190
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2714]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:18:38.190
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[2716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[2717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[2718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[2719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[2720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[2721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[2722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.830
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[2723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[2724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[2725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[2726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[2727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[2728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[2729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[2730]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-26T20:18:38.876
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[2731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[2732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[2733]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-26T20:18:38.908
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[2734]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-26T20:18:38.908
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[2735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[2736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[2737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[2738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[2739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:38.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[2740]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-26T20:18:38.970
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[2741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:39.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[2742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:39.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[2743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:39.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[2744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:40.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[2745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:41.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[2746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:41.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[2747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:41.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[2748]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-26T20:18:41.099
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[2749]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:18:41.119
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:41.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[2751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:41.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[2752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:41.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[2753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:42.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[2754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:42.629
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[2755]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-26T20:18:43.759
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[2756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:43.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[2757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:43.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[2758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:43.969
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[2759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:43.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[2760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:44.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[2761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:44.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[2762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:46.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[2763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:46.843
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[2764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:49.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:50.010
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[2766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:51.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[2767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:51.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[2768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:51.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[2769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:51.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[2770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:18:52.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[2771]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-26T20:18:56.266
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[2772]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-26T20:19:02.178
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[2773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:19:17.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:19:21.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[2775]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-26T20:19:22.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[2776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:19:22.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[2777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:19:22.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[2778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:19:22.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[2779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:19:22.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[2780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:01.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:02.838
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:13.198
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[2783]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-26T20:20:40.188
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[2784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:40.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[2785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:40.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[2786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:46.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:46.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:47.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[2789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:47.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[2790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:47.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[2791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:58.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[2792]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:59.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[2793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:59.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[2794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:20:59.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:21:01.149
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[2796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:21:01.677
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[2797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:21:01.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[2798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:21:02.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[2799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:21:05.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[2800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:21:21.209
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[2801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:21:39.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Secondary Logon service entered the running state.

Event[2802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:21:45.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[2803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:21:49.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[2804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:22:07.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2805]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-26T20:22:57.830
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?November ?27, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.163.607.0)

Event[2806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:22:59.468
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[2807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:23:09.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[2808]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-26T20:23:12.803
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.163.607.0)

Event[2809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:23:41.039
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[2810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:23:59.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[2811]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-26T20:24:13.814
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[2812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:25:41.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[2813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:26:52.013
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[2814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:28:09.394
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[2815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:28:09.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[2816]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-26T20:28:11.375
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?November ?27, ?2013 at 8:00 PM: 
- Internet Explorer 11 for Windows 7 for x64-based Systems

Event[2817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:28:59.813
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[2818]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-26T20:31:21.836
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Internet Explorer 11 for Windows 7 for x64-based Systems

Event[2819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:31:33.317
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[2820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:31:43.816
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Microsoft .NET Framework NGEN v2.0.50727_X64 service was changed from demand start to disabled.

Event[2821]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:31:43.894
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Microsoft .NET Framework NGEN v2.0.50727_X86 service was changed from demand start to disabled.

Event[2822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:31:55.485
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[2823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:32:03.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[2824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:32:12.785
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[2825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:32:21.552
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Net.Tcp Listener Adapter
Service File Name:  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
Service Type:  user mode service
Service Start Type:  disabled
Service Account:  NT AUTHORITY\LocalService

Event[2826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:32:23.487
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Net.Pipe Listener Adapter
Service File Name:  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
Service Type:  user mode service
Service Start Type:  disabled
Service Account:  NT AUTHORITY\LocalService

Event[2827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:32:25.655
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Net.Msmq Listener Adapter
Service File Name:  "C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
Service Type:  user mode service
Service Start Type:  disabled
Service Account:  NT AUTHORITY\NetworkService

Event[2828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:32:37.745
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Microsoft .NET Framework NGEN v4.0.30319_X86 service was changed from demand start to auto start.

Event[2829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:32:37.823
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Microsoft .NET Framework NGEN v4.0.30319_X64 service was changed from demand start to auto start.

Event[2830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:32:39.695
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ASP.NET State Service
Service File Name:  %SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
Service Type:  user mode service
Service Start Type:  disabled
Service Account:  LocalSystem

Event[2831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:33:01.754
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Microsoft .NET Framework NGEN v2.0.50727_X64 service was changed from disabled to demand start.

Event[2832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:33:01.800
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Microsoft .NET Framework NGEN v2.0.50727_X86 service was changed from disabled to demand start.

Event[2833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:33:07.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[2834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:33:07.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[2835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:33:58.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[2836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:34:33.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[2837]:
  Log Name: System
  Source: USER32
  Date: 2013-11-26T20:34:40.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Operating System: Recovery (Planned)
 Reason Code: 0x80020002
 Shutdown Type: restart
 Comment: 

Event[2838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:34:41.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[2839]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-26T20:34:43.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[2840]:
  Log Name: System
  Source: USER32
  Date: 2013-11-26T20:34:43.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[2841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:34:43.685
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[2842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:34:43.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[2843]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-26T20:34:43.934
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[2844]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-26T20:34:45.931
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Microsoft .NET Framework 4.5.1 for Windows 7 x64-based Systems (KB2858725)

Event[2845]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-26T20:34:45.931
  Event ID: 21
  Task: Automatic Updates
  Level: Information
  Opcode: Reboot
  Keyword: Reboot
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Restart Required: To complete the installation of the following updates, the computer must be restarted. Until this computer has been restarted, Windows cannot search for or download new updates: 
- Internet Explorer 11 for Windows 7 for x64-based Systems
- Microsoft .NET Framework 4.5.1 for Windows 7 x64-based Systems (KB2858725)

Event[2846]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-26T20:34:45.931
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[2847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:34:46.025
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[2848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:34:46.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[2849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:34:59.534
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[2850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:34:59.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[2851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:34:59.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[2852]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-26T20:35:00.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[2853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[2854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[2855]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-26T20:35:00.236
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[2856]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-26T20:35:00.236
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[2857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[2858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[2859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[2860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[2861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[2862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[2863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[2864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[2865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[2866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[2867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[2868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[2869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[2870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[2871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[2872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[2873]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-26T20:35:00.345
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[2874]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-26T20:35:47.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[2875]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-26T20:35:47.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[2876]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-26T20:35:47.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[2877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[2878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[2879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[2880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.439
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[2881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[2882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[2883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[2884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:00.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[2885]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-26T20:35:01.063
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[2886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:01.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[2887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:01.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[2888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:01.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[2889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:01.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[2890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:01.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[2891]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-26T20:35:01.859
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[2892]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-26T20:35:03.310
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?27T01:35:03.310001600Z.

Event[2893]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-26T20:35:24.952
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?27T01:35:23.595198400Z.

Event[2894]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:35:29.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2895]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:35:33.095
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2896]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-26T20:35:37.479
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[2897]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:35:38.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2898]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:35:38.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2899]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:35:38.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2900]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:35:38.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2901]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:35:38.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2902]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:35:38.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2903]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:35:38.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2904]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-26T20:35:38.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[2905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:47.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[2906]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-26T20:35:47.276
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[2907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:47.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[2908]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:35:47.416
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2909]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:35:47.416
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2910]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:35:47.416
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2911]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:35:47.432
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:47.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[2913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:47.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[2914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:47.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[2915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:47.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[2916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:47.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[2917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:47.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[2918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:47.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[2919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.040
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[2920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[2921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[2922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[2923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[2924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[2925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[2926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[2927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[2928]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-26T20:35:48.973
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[2929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[2930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:48.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[2931]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-26T20:35:48.993
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[2932]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-26T20:35:49.003
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[2933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:49.003
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[2934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:49.003
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[2935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:49.013
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[2936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:49.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[2937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:49.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[2938]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-26T20:35:49.213
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[2939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:49.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[2940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:49.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[2941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:49.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[2942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:49.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[2943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.013
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[2944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[2945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.053
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[2946]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-26T20:35:50.053
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[2947]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-26T20:35:50.073
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[2948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[2949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[2950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.273
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[2951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[2952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[2953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[2954]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-26T20:35:50.313
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[2955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[2956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[2957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[2958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[2959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.343
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[2960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[2961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:50.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[2962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:51.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[2963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:51.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[2964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:52.543
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[2965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:54.798
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[2966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:55.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[2967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:55.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[2968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:55.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[2969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:35:55.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[2970]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-26T20:36:01.038
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[2971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:36:03.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[2972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:36:10.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[2973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:36:19.742
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[2974]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-26T20:36:30.834
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[2975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:36:48.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[2976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:36:48.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[2977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:36:48.456
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[2978]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-26T20:36:49.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[2979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:36:49.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[2980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:32.155
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[2981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:50.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[2982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:51.117
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[2983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:51.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[2984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:51.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[2985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:51.777
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[2986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:51.840
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[2987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:51.840
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[2988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:53.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[2989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:54.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[2990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:54.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[2991]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-26T20:37:54.400
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[2992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:54.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[2993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:56.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[2994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:57.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[2995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:57.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[2996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:37:57.425
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[2997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:38:00.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[2998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:38:39.309
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[2999]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-26T20:39:36.249
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[3000]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:41:13.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[3001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:41:32.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[3002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:43:51.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[3003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:49:03.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[3004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:49:32.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[3005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:49:33.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[3006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:51:24.246
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Pml Driver HPZ12 service entered the running state.

Event[3007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:52:07.446
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[3008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:52:11.916
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[3009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T20:52:12.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[3010]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:53:42.336
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about network adapter diagnosis: 

Network adapter Wireless Network Connection driver information:

   Description . . . . . . . . . . : ASUS EZ N 802.11b/g/n Wireless USB Adapter
   Manufacturer  . . . . . . . . . : ASUSTeK Computer Inc.
   Provider  . . . . . . . . . . . : Realtek Semiconductor Corp.
   Version   . . . . . . . . . . . : 1085.7.922.2009
   Inf File Name . . . . . . . . . : C:\Windows\INF\oem2.inf
   Inf File Date . . . . . . . . . : Tuesday, September 22, 2009  7:35:04 AM
   Section Name  . . . . . . . . . : RTL8192su.ndi
   Hardware ID . . . . . . . . . . : usb\vid_0b05&pid_1786
   Instance Status Flags . . . . . : 0x180600a
   Device Manager Status Code  . . : 0
   IfType  . . . . . . . . . . . . : 71
   Physical Media Type . . . . . . : 9


Event[3011]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:53:42.351
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Connection incident diagnosed
 Auto Configuration ID: 1
 Connection ID: 1

Connection status summary
 Connection started at: 2013-11-26 20:35:52-283
 Profile match: Success
 Pre-Association: Success
 Association: Success
 Security and Authentication: Success

List of visible access point(s): 5 item(s) total, 5 item(s) displayed
        BSSID		BSS Type PHY	Signal(dB)	Chnl/freq    SSID
-------------------------------------------------------------------------
48-F8-B3-71-5F-24	Infra	 <unknown>	-72		10	 Anders4
CC-35-40-A0-FC-2F	Infra	 <unknown>	-73		1	 (Unnamed Network)
5C-D9-98-E4-92-E3	Infra	 <unknown>	-59		10	 ABg73
00-18-3A-B8-8F-92	Infra	 g	-74		3	 Temple-Net
00-18-3A-B8-8F-93	Infra	 g	-73		3	 (Unnamed Network)

Connection History

 Information for Auto Configuration ID 1

  List of visible networks: 5 item(s) total, 5 item(s) displayed
  BSS Type PHY	Security	Signal(RSSI)	Compatible	SSID
  ------------------------------------------------------------------------------
  Infra	 <unknown>	Yes		46	Yes		Anders4
  Infra	 <unknown>	Yes		44	Yes		(Unnamed Network)
  Infra	 <unknown>	Yes		72	Yes		ABg73
  Infra	 g	Yes		42	Yes		Temple-Net
  Infra	 g	Yes		43	Yes		(Unnamed Network)

  List of preferred networks: 1 item(s)
   Profile: ABg73
    SSID: ABg73
    SSID length: 5
    Connection mode: Infra
    Security: Yes
    Set by group policy: No
    Connect even if network is not broadcasting: No
    Connectable: Yes

 Information for Connection ID 1
 Connection started at: 2013-11-26 20:35:52-283
  Auto Configuration ID: 1
  Profile: ABg73
  SSID: ABg73
  SSID length: 5
  Connection mode: Infra
  Security: Yes
  Pre-Association and Association
   Connectivity settings provided by hardware manufacturer (IHV): No
   Security settings provided by hardware manufacturer (IHV): No
   Profile matches network requirements: Success
   Pre-association status: Success
   Association status: Success
    Last AP:  5c-d9-98-e4-92-e3
  Security and Authentication
   Configured security type: WPA2-PSK
   Configured encryption type: CCMP(AES)
   802.1X protocol: No
   Key exchange initiated: Yes
    Unicast key received: Yes
    Multicast key received: Yes
   Number of security packets received: 0
   Number of security packets sent: 0
   Security attempt status: Success
 Connectivity
   Packet statistics
    Ndis Rx: 32061
    Ndis Tx: 20290
    Unicast decrypt success: 67
    Multicast decrypt success: 0
    Unicast decrypt failure: 0
    Multicast decrypt failure: 0
    Rx success: 591
    Rx failure: 0
    Tx success: 86
    Tx failure: 0
    Tx retry: 0
    Tx multiple retry: 0
    Tx max lifetime exceeded: 0
    Tx ACK failure: 0
   Roaming history: 0 item(s)



Event[3012]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:53:42.351
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Auto Configuration
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Result of diagnosis: There may be problem





Event[3013]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:53:42.351
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless network adapter diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Native WiFi MSM
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi
 Profile: ABg73
 SSID: ABg73
 SSID length: 5
 Connection mode: Infra
 Security: Yes
 Connect even if network is not broadcasting: No

Result of diagnosis: There may be problem





Event[3014]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:54:52.785
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about network adapter diagnosis: 

Network adapter Wireless Network Connection driver information:

   Description . . . . . . . . . . : ASUS EZ N 802.11b/g/n Wireless USB Adapter
   Manufacturer  . . . . . . . . . : ASUSTeK Computer Inc.
   Provider  . . . . . . . . . . . : Realtek Semiconductor Corp.
   Version   . . . . . . . . . . . : 1085.7.922.2009
   Inf File Name . . . . . . . . . : C:\Windows\INF\oem2.inf
   Inf File Date . . . . . . . . . : Tuesday, September 22, 2009  7:35:04 AM
   Section Name  . . . . . . . . . : RTL8192su.ndi
   Hardware ID . . . . . . . . . . : usb\vid_0b05&pid_1786
   Instance Status Flags . . . . . : 0x180600a
   Device Manager Status Code  . . : 0
   IfType  . . . . . . . . . . . . : 71
   Physical Media Type . . . . . . : 9


Event[3015]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:54:52.785
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Connection incident diagnosed
 Auto Configuration ID: 1
 Connection ID: 1

Connection status summary
 Connection started at: 2013-11-26 20:35:52-283
 Profile match: Success
 Pre-Association: Success
 Association: Success
 Security and Authentication: Success

List of visible access point(s): 5 item(s) total, 5 item(s) displayed
        BSSID		BSS Type PHY	Signal(dB)	Chnl/freq    SSID
-------------------------------------------------------------------------
48-F8-B3-71-5F-24	Infra	 <unknown>	-72		10	 Anders4
CC-35-40-A0-FC-2F	Infra	 <unknown>	-73		1	 (Unnamed Network)
5C-D9-98-E4-92-E3	Infra	 <unknown>	-59		10	 ABg73
00-18-3A-B8-8F-92	Infra	 g	-74		3	 Temple-Net
00-18-3A-B8-8F-93	Infra	 g	-73		3	 (Unnamed Network)

Connection History

 Information for Auto Configuration ID 1

  List of visible networks: 5 item(s) total, 5 item(s) displayed
  BSS Type PHY	Security	Signal(RSSI)	Compatible	SSID
  ------------------------------------------------------------------------------
  Infra	 <unknown>	Yes		46	Yes		Anders4
  Infra	 <unknown>	Yes		44	Yes		(Unnamed Network)
  Infra	 <unknown>	Yes		72	Yes		ABg73
  Infra	 g	Yes		42	Yes		Temple-Net
  Infra	 g	Yes		43	Yes		(Unnamed Network)

  List of preferred networks: 1 item(s)
   Profile: ABg73
    SSID: ABg73
    SSID length: 5
    Connection mode: Infra
    Security: Yes
    Set by group policy: No
    Connect even if network is not broadcasting: No
    Connectable: Yes

 Information for Connection ID 1
 Connection started at: 2013-11-26 20:35:52-283
  Auto Configuration ID: 1
  Profile: ABg73
  SSID: ABg73
  SSID length: 5
  Connection mode: Infra
  Security: Yes
  Pre-Association and Association
   Connectivity settings provided by hardware manufacturer (IHV): No
   Security settings provided by hardware manufacturer (IHV): No
   Profile matches network requirements: Success
   Pre-association status: Success
   Association status: Success
    Last AP:  5c-d9-98-e4-92-e3
  Security and Authentication
   Configured security type: WPA2-PSK
   Configured encryption type: CCMP(AES)
   802.1X protocol: No
   Key exchange initiated: Yes
    Unicast key received: Yes
    Multicast key received: Yes
   Number of security packets received: 0
   Number of security packets sent: 0
   Security attempt status: Success
 Connectivity
   Packet statistics
    Ndis Rx: 32171
    Ndis Tx: 20362
    Unicast decrypt success: 114
    Multicast decrypt success: 0
    Unicast decrypt failure: 0
    Multicast decrypt failure: 0
    Rx success: 766
    Rx failure: 0
    Tx success: 108
    Tx failure: 0
    Tx retry: 0
    Tx multiple retry: 0
    Tx max lifetime exceeded: 0
    Tx ACK failure: 0
   Roaming history: 0 item(s)



Event[3016]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:54:52.785
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Auto Configuration
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Result of diagnosis: There may be problem





Event[3017]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:54:52.785
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless network adapter diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Native WiFi MSM
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi
 Profile: ABg73
 SSID: ABg73
 SSID length: 5
 Connection mode: Infra
 Security: Yes
 Connect even if network is not broadcasting: No

Result of diagnosis: There may be problem





Event[3018]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:55:50.938
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about network adapter diagnosis: 

Network adapter Wireless Network Connection driver information:

   Description . . . . . . . . . . : ASUS EZ N 802.11b/g/n Wireless USB Adapter
   Manufacturer  . . . . . . . . . : ASUSTeK Computer Inc.
   Provider  . . . . . . . . . . . : Realtek Semiconductor Corp.
   Version   . . . . . . . . . . . : 1085.7.922.2009
   Inf File Name . . . . . . . . . : C:\Windows\INF\oem2.inf
   Inf File Date . . . . . . . . . : Tuesday, September 22, 2009  7:35:04 AM
   Section Name  . . . . . . . . . : RTL8192su.ndi
   Hardware ID . . . . . . . . . . : usb\vid_0b05&pid_1786
   Instance Status Flags . . . . . : 0x180600a
   Device Manager Status Code  . . : 0
   IfType  . . . . . . . . . . . . : 71
   Physical Media Type . . . . . . : 9


Event[3019]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:55:50.938
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Connection incident diagnosed
 Auto Configuration ID: 1
 Connection ID: 1

Connection status summary
 Connection started at: 2013-11-26 20:35:52-283
 Profile match: Success
 Pre-Association: Success
 Association: Success
 Security and Authentication: Success

List of visible access point(s): 5 item(s) total, 5 item(s) displayed
        BSSID		BSS Type PHY	Signal(dB)	Chnl/freq    SSID
-------------------------------------------------------------------------
48-F8-B3-71-5F-24	Infra	 <unknown>	-72		10	 Anders4
CC-35-40-A0-FC-2F	Infra	 <unknown>	-73		1	 (Unnamed Network)
5C-D9-98-E4-92-E3	Infra	 <unknown>	-59		10	 ABg73
00-18-3A-B8-8F-92	Infra	 g	-74		3	 Temple-Net
00-18-3A-B8-8F-93	Infra	 g	-73		3	 (Unnamed Network)

Connection History

 Information for Auto Configuration ID 1

  List of visible networks: 5 item(s) total, 5 item(s) displayed
  BSS Type PHY	Security	Signal(RSSI)	Compatible	SSID
  ------------------------------------------------------------------------------
  Infra	 <unknown>	Yes		46	Yes		Anders4
  Infra	 <unknown>	Yes		44	Yes		(Unnamed Network)
  Infra	 <unknown>	Yes		72	Yes		ABg73
  Infra	 g	Yes		42	Yes		Temple-Net
  Infra	 g	Yes		43	Yes		(Unnamed Network)

  List of preferred networks: 1 item(s)
   Profile: ABg73
    SSID: ABg73
    SSID length: 5
    Connection mode: Infra
    Security: Yes
    Set by group policy: No
    Connect even if network is not broadcasting: No
    Connectable: Yes

 Information for Connection ID 1
 Connection started at: 2013-11-26 20:35:52-283
  Auto Configuration ID: 1
  Profile: ABg73
  SSID: ABg73
  SSID length: 5
  Connection mode: Infra
  Security: Yes
  Pre-Association and Association
   Connectivity settings provided by hardware manufacturer (IHV): No
   Security settings provided by hardware manufacturer (IHV): No
   Profile matches network requirements: Success
   Pre-association status: Success
   Association status: Success
    Last AP:  5c-d9-98-e4-92-e3
  Security and Authentication
   Configured security type: WPA2-PSK
   Configured encryption type: CCMP(AES)
   802.1X protocol: No
   Key exchange initiated: Yes
    Unicast key received: Yes
    Multicast key received: Yes
   Number of security packets received: 0
   Number of security packets sent: 0
   Security attempt status: Success
 Connectivity
   Packet statistics
    Ndis Rx: 32615
    Ndis Tx: 20721
    Unicast decrypt success: 457
    Multicast decrypt success: 0
    Unicast decrypt failure: 0
    Multicast decrypt failure: 0
    Rx success: 1032
    Rx failure: 0
    Tx success: 362
    Tx failure: 0
    Tx retry: 0
    Tx multiple retry: 0
    Tx max lifetime exceeded: 0
    Tx ACK failure: 0
   Roaming history: 0 item(s)



Event[3020]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:55:50.938
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Auto Configuration
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Result of diagnosis: There may be problem





Event[3021]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:55:50.938
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless network adapter diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Native WiFi MSM
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi
 Profile: ABg73
 SSID: ABg73
 SSID length: 5
 Connection mode: Infra
 Security: Yes
 Connect even if network is not broadcasting: No

Result of diagnosis: There may be problem





Event[3022]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:56:38.237
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about network adapter diagnosis: 

Network adapter Wireless Network Connection driver information:

   Description . . . . . . . . . . : ASUS EZ N 802.11b/g/n Wireless USB Adapter
   Manufacturer  . . . . . . . . . : ASUSTeK Computer Inc.
   Provider  . . . . . . . . . . . : Realtek Semiconductor Corp.
   Version   . . . . . . . . . . . : 1085.7.922.2009
   Inf File Name . . . . . . . . . : C:\Windows\INF\oem2.inf
   Inf File Date . . . . . . . . . : Tuesday, September 22, 2009  7:35:04 AM
   Section Name  . . . . . . . . . : RTL8192su.ndi
   Hardware ID . . . . . . . . . . : usb\vid_0b05&pid_1786
   Instance Status Flags . . . . . : 0x180600a
   Device Manager Status Code  . . : 0
   IfType  . . . . . . . . . . . . : 71
   Physical Media Type . . . . . . : 9


Event[3023]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:56:38.237
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Connection incident diagnosed
 Auto Configuration ID: 1
 Connection ID: 1

Connection status summary
 Connection started at: 2013-11-26 20:35:52-283
 Profile match: Success
 Pre-Association: Success
 Association: Success
 Security and Authentication: Success

List of visible access point(s): 5 item(s) total, 5 item(s) displayed
        BSSID		BSS Type PHY	Signal(dB)	Chnl/freq    SSID
-------------------------------------------------------------------------
48-F8-B3-71-5F-24	Infra	 <unknown>	-72		10	 Anders4
CC-35-40-A0-FC-2F	Infra	 <unknown>	-73		1	 (Unnamed Network)
5C-D9-98-E4-92-E3	Infra	 <unknown>	-59		10	 ABg73
00-18-3A-B8-8F-92	Infra	 g	-74		3	 Temple-Net
00-18-3A-B8-8F-93	Infra	 g	-73		3	 (Unnamed Network)

Connection History

 Information for Auto Configuration ID 1

  List of visible networks: 5 item(s) total, 5 item(s) displayed
  BSS Type PHY	Security	Signal(RSSI)	Compatible	SSID
  ------------------------------------------------------------------------------
  Infra	 <unknown>	Yes		46	Yes		Anders4
  Infra	 <unknown>	Yes		44	Yes		(Unnamed Network)
  Infra	 <unknown>	Yes		72	Yes		ABg73
  Infra	 g	Yes		42	Yes		Temple-Net
  Infra	 g	Yes		43	Yes		(Unnamed Network)

  List of preferred networks: 1 item(s)
   Profile: ABg73
    SSID: ABg73
    SSID length: 5
    Connection mode: Infra
    Security: Yes
    Set by group policy: No
    Connect even if network is not broadcasting: No
    Connectable: Yes

 Information for Connection ID 1
 Connection started at: 2013-11-26 20:35:52-283
  Auto Configuration ID: 1
  Profile: ABg73
  SSID: ABg73
  SSID length: 5
  Connection mode: Infra
  Security: Yes
  Pre-Association and Association
   Connectivity settings provided by hardware manufacturer (IHV): No
   Security settings provided by hardware manufacturer (IHV): No
   Profile matches network requirements: Success
   Pre-association status: Success
   Association status: Success
    Last AP:  5c-d9-98-e4-92-e3
  Security and Authentication
   Configured security type: WPA2-PSK
   Configured encryption type: CCMP(AES)
   802.1X protocol: No
   Key exchange initiated: Yes
    Unicast key received: Yes
    Multicast key received: Yes
   Number of security packets received: 0
   Number of security packets sent: 0
   Security attempt status: Success
 Connectivity
   Packet statistics
    Ndis Rx: 32711
    Ndis Tx: 20809
    Unicast decrypt success: 99
    Multicast decrypt success: 0
    Unicast decrypt failure: 0
    Multicast decrypt failure: 0
    Rx success: 550
    Rx failure: 0
    Tx success: 108
    Tx failure: 0
    Tx retry: 0
    Tx multiple retry: 0
    Tx max lifetime exceeded: 0
    Tx ACK failure: 0
   Roaming history: 0 item(s)



Event[3024]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:56:38.237
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Auto Configuration
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Result of diagnosis: There may be problem





Event[3025]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:56:38.237
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless network adapter diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Native WiFi MSM
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi
 Profile: ABg73
 SSID: ABg73
 SSID length: 5
 Connection mode: Infra
 Security: Yes
 Connect even if network is not broadcasting: No

Result of diagnosis: There may be problem





Event[3026]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2013-11-26T20:57:25.914
  Event ID: 4100
  Task: Diagnosis Success
  Level: Information
  Opcode: Info
  Keyword: Core Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The Network Diagnostics Framework has completed the diagnosis phase of operation, but no network problem was identified.

Event[3027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:08:11.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[3028]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:13:22.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[3029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:17:51.810
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[3030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:20:00.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:20:00.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:20:10.697
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3033]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:25:24.850
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[3034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:30:57.521
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[3035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:44:11.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[3036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:47:24.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:50:08.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:54:08.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[3039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:54:08.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[3040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:56:02.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[3041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:57:18.273
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[3042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T21:58:36.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:00:18.281
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[3044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:01:30.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[3045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:03:37.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:04:06.838
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:04:07.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[3048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:11:58.332
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[3049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:11:58.566
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[3050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:11:58.655
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[3051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:13:30.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:14:08.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[3053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:20:00.378
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:20:00.378
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:24:16.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:38:17.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:50:12.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:50:13.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:55:18.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T22:55:34.737
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:00:12.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[3062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:17:07.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:20:00.295
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:20:00.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:27:08.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[3066]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:37:40.045
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[3067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:37:40.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[3068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:37:40.425
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[3069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:37:44.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[3070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:37:47.815
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\0b6ac1d7-b746-4c36-925b-9825a3b1939e
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[3071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:39:47.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[3072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:39:48.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[3073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:45:47.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[3074]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:48:53.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3075]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-26T23:57:42.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:08:45.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[3077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:14:23.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[3078]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-11-27T00:15:00.122
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[3079]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-11-27T00:15:00.123
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[3080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:20:00.597
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:20:00.598
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:31:08.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:04.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:05.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3085]:
  Log Name: System
  Source: USER32
  Date: 2013-11-27T00:41:07.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[3086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:12.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3087]:
  Log Name: System
  Source: USER32
  Date: 2013-11-27T00:41:14.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[3088]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-27T00:41:14.426
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[3089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[3090]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-27T00:41:15.284
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[3091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[3092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[3093]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-27T00:41:15.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[3094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[3095]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-27T00:41:15.580
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[3096]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-27T00:41:15.580
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[3097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[3098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[3099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[3100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Pml Driver HPZ12 service entered the stopped state.

Event[3101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[3102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[3103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[3104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[3105]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-27T00:41:15.580
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?11?-?27T05:41:15.580000000Z from ?2013?-?11?-?27T05:41:15.580899000Z.

Event[3106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[3107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[3108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[3109]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-27T00:41:15.595
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[3110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[3111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[3112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[3113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[3114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[3115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[3116]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-28T00:02:49.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[3117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[3118]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-28T00:02:49.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[3119]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-28T00:02:49.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 19 seconds.

Event[3120]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[3121]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[3122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[3123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.704
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[3124]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[3125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.829
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[3126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:15.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[3127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:16.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[3128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:16.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[3129]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-27T00:41:16.282
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[3130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:16.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[3131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:16.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[3132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:16.718
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[3133]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:18.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[3134]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-27T00:41:20.572
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[3135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-27T00:41:21.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[3136]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-27T00:41:26.219
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?27T05:41:26.219218500Z.

Event[3137]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-28T00:02:30.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?28T05:02:29.610798400Z.

Event[3138]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:02:36.459
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3139]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:02:40.265
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3140]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-28T00:02:43.994
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[3141]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:02:44.774
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3142]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:02:44.774
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3143]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:02:44.774
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3144]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:02:44.774
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3145]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:02:44.774
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3146]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:02:44.774
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3147]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:02:44.774
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3148]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:02:44.774
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[3150]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-28T00:02:49.079
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[3151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[3152]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:02:49.173
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3153]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:02:49.173
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3154]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:02:49.173
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3155]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:02:49.173
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[3157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[3158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[3159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[3160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[3161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[3163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[3164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[3165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[3166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[3167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[3168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[3169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[3170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[3171]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-28T00:02:49.906
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[3172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[3173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[3174]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-28T00:02:49.922
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[3175]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-28T00:02:49.937
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[3176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[3177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[3178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[3179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:49.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[3180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[3181]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-28T00:02:50.000
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[3182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[3183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.462
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[3184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.582
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[3185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[3186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[3187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[3188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[3189]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-28T00:02:50.732
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[3190]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:02:50.752
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[3192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:50.902
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[3193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:51.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[3194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:51.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[3195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:51.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[3196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:52.022
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[3197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:52.042
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[3198]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-28T00:02:52.042
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[3199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:52.042
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[3200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:52.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[3201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:52.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[3202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:52.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[3203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:55.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[3204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:56.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[3205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:57.198
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[3206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:57.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[3207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:58.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:58.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[3209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:02:59.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[3210]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-28T00:03:00.520
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[3211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:01.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[3212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:01.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[3213]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-28T00:03:14.300
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[3214]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-28T00:03:20.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[3215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:20.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[3216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:20.275
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[3217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:20.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[3218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:20.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[3219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:20.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[3220]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-28T00:03:38.511
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[3221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:38.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[3222]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-28T00:03:39.229
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[3223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:44.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[3224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:03:51.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3225]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:11.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[3226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:57.155
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:57.405
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:57.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[3229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:57.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[3230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:58.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[3231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:58.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[3232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:58.309
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[3233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:58.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[3234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:58.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[3235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:04:59.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[3236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:00.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[3237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:00.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[3238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:00.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[3239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:02.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[3240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:03.239
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[3241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:03.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[3242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:04.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[3243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:06.343
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[3244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:19.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[3245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:55.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[3246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:05:58.678
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[3247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:06:03.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[3248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:06:19.645
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[3249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:06:29.847
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[3250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:07:19.651
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[3251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:10:03.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[3252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:13:51.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[3253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:13:55.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:16:02.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[3255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:16:03.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[3256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:16:16.916
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[3257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:16:17.136
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[3258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:16:17.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[3259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:20:00.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:20:00.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:22:32.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[3262]:
  Log Name: System
  Source: USER32
  Date: 2013-11-28T00:23:13.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[3263]:
  Log Name: System
  Source: USER32
  Date: 2013-11-28T00:23:16.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[3264]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-28T00:23:16.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[3265]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-28T00:23:16.073
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[3266]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-28T00:23:16.229
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[3267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[3268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[3269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[3270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[3271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[3272]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-28T00:23:16.463
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[3273]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-28T00:23:16.463
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[3274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[3275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[3276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[3277]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[3278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[3279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[3280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[3281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[3282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[3283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[3284]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.510
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[3285]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-28T00:23:16.510
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[3286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.510
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[3287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[3288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[3289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[3290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[3291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[3292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[3293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.681
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[3294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.697
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[3295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[3296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:16.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[3297]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-28T00:23:17.118
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[3298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:17.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[3299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:17.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[3300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:17.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[3301]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-28T00:23:59.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[3302]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-28T00:23:59.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[3303]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-28T00:23:59.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 19 seconds.

Event[3304]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-28T00:23:21.455
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[3305]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-28T00:23:22.344
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?28T05:23:22.344431700Z.

Event[3306]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-28T00:23:41.843
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?11?-?28T05:23:40.595198400Z.

Event[3307]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:23:46.585
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3308]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:23:50.282
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3309]:
  Log Name: System
  Source: vna_ap
  Date: 2013-11-28T00:23:54.338
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[3310]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:23:54.916
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3311]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:23:54.916
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3312]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:23:54.916
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3313]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:23:54.916
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3314]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:23:54.916
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3315]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:23:54.916
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3316]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:23:54.916
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3317]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-11-28T00:23:54.916
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:59.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[3319]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-28T00:23:59.455
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[3320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:59.518
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[3321]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:23:59.533
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3322]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:23:59.549
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3323]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:23:59.549
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3324]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:23:59.549
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:59.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[3326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:59.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[3327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:59.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[3328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:59.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[3329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:59.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[3330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:23:59.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[3332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.251
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[3333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[3334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[3335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[3336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[3337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[3338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[3339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[3340]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-11-28T00:24:00.298
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[3341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[3342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[3343]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-28T00:24:00.313
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[3344]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-28T00:24:00.329
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[3345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[3346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[3347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[3348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[3349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[3350]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-28T00:24:00.391
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[3351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.704
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[3352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[3353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.844
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[3354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[3355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[3356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.964
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[3357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:00.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[3358]:
  Log Name: System
  Source: vmx86
  Date: 2013-11-28T00:24:00.974
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[3359]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-11-28T00:24:00.994
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:01.404
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[3361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:01.414
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[3362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:01.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[3363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:01.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[3364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:01.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[3365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:01.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[3366]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-11-28T00:24:01.904
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[3367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:01.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[3368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:01.934
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[3369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:01.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[3370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:02.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[3371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:02.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[3372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:03.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[3373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:06.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[3374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:07.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[3375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:08.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[3376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:08.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[3377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:09.481
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[3378]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-28T00:24:30.760
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[3379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:40.031
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[3380]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-28T00:24:41.809
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[3381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:41.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[3382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:42.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[3383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:42.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[3384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:42.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3385]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-11-28T00:24:43.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[3386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:43.057
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[3387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:43.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[3388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:24:43.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[3389]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-28T00:25:07.567
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[3390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:25:07.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[3391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:25:08.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[3392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:25:31.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[3393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:25:32.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:06.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:06.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:07.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[3397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:07.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[3398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:07.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[3399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:07.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[3400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:07.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[3401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:07.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[3402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:07.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[3403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:08.676
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[3404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:08.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[3405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:08.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[3406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:09.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[3407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:11.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[3408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:12.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[3409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:12.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[3410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:13.762
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[3411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:15.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[3412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:26:39.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[3413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:27:07.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[3414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:28:20.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[3415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:28:34.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[3416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:28:35.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[3417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:31:11.844
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[3418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:37:12.847
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[3419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:37:13.067
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[3420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:37:13.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[3421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:37:32.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[3422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:37:32.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[3423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:37:38.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[3424]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-11-28T00:38:09.697
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[3425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:38:10.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[3426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:39:29.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[3427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:42:20.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[3428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:52:07.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[3429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:52:08.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[3430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:52:39.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[3431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:53:24.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Management service entered the running state.

Event[3432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:56:00.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[3433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T00:59:00.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[3434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:03:24.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[3435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:03:40.011
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[3436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:03:42.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[3437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:03:42.891
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:04:33.434
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[3439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:04:47.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Connect Now - Config Registrar service entered the running state.

Event[3440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:05:40.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[3441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:06:07.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[3442]:
  Log Name: System
  Source: BROWSER
  Date: 2013-11-28T01:06:37.000
  Event ID: 8033
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The browser has forced an election on network \Device\NetBT_Tcpip_{1DEC5E89-D26F-4180-A9A0-9C30607B8F0C} because a master browser was stopped.

Event[3443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:06:37.977
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Computer Browser service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[3444]:
  Log Name: System
  Source: BROWSER
  Date: 2013-11-28T01:06:40.000
  Event ID: 8033
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The browser has forced an election on network \Device\NetBT_Tcpip_{1DEC5E89-D26F-4180-A9A0-9C30607B8F0C} because a master browser was stopped.

Event[3445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:06:42.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the stopped state.

Event[3446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:09:45.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[3447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:10:00.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[3448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:12:00.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[3449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:00.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:00.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:12.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[3452]:
  Log Name: System
  Source: USER32
  Date: 2013-11-28T01:20:43.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[3453]:
  Log Name: System
  Source: USER32
  Date: 2013-11-28T01:20:46.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[3454]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-11-28T01:20:46.600
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[3455]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-11-28T01:20:46.912
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[3456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:46.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[3457]:
  Log Name: System
  Source: EventLog
  Date: 2013-11-28T01:20:47.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[3458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[3459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[3460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[3461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[3462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[3463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[3464]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-11-28T01:20:47.630
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[3465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[3466]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-11-28T01:20:47.661
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[3467]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-11-28T01:20:47.661
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[3468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[3469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.677
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[3470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.677
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[3471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[3472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[3473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[3474]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.802
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[3475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.802
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Connect Now - Config Registrar service entered the stopped state.

Event[3476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[3477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[3478]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T20:15:00.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[3479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:47.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[3480]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T20:15:00.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[3481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:48.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[3482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:48.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[3483]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T20:15:00.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 21 seconds.

Event[3484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:48.223
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[3485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:48.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[3486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:48.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[3487]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:48.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[3488]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-11-28T01:20:48.706
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[3489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:48.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[3490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:48.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[3491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:49.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[3492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:49.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[3493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:50.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[3494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:50.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[3495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-11-28T01:20:51.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[3496]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-11-28T01:20:52.544
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[3497]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-11-28T01:20:54.385
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?11?-?28T06:20:54.385391100Z.

Event[3498]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-02T20:14:40.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?03T01:14:39.595198400Z.

Event[3499]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:14:45.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3500]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:14:49.142
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3501]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-02T20:14:53.229
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[3502]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:14:53.822
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3503]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:14:53.822
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3504]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:14:53.822
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3505]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:14:53.822
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3506]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:14:53.822
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3507]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:14:53.822
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3508]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:14:53.822
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3509]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:14:53.822
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:00.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[3511]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-02T20:15:00.764
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[3512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:00.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[3513]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:15:00.920
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3514]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:15:00.920
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3515]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:15:00.920
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3516]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:15:00.920
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:00.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[3518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:00.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[3519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:00.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[3520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:00.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[3521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[3522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[3524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[3525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[3526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[3527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[3528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[3529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[3530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[3531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[3532]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-02T20:15:01.591
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[3533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[3534]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-02T20:15:01.622
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[3535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[3536]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-02T20:15:01.622
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[3537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[3538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[3539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[3540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[3541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:01.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[3542]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-02T20:15:01.769
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[3543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[3544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.049
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[3545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.189
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[3546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[3547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[3548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.309
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[3549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[3550]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-02T20:15:02.329
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[3551]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:15:02.349
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[3553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[3554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:02.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[3555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:05.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[3556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:05.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[3557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:05.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[3558]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-02T20:15:05.589
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[3559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:05.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[3560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:05.599
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[3561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:05.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[3562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:06.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[3563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:06.429
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[3564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:06.509
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[3565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:09.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[3566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:10.217
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:10.217
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[3568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:10.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[3569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:10.358
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[3570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:10.685
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[3571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:12.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[3572]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-02T20:15:13.821
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[3573]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-02T20:15:22.370
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[3574]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-02T20:15:40.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[3575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:40.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[3576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:46.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[3577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:47.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[3578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:47.278
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[3579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:47.309
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[3580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:52.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[3581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:15:52.644
  Event ID: 7011
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the MBAMService service.

Event[3582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:16:33.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[3583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:09.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:09.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:09.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[3586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:09.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[3587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:10.317
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[3588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:10.317
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[3589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:10.551
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[3590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:10.582
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[3591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:10.598
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[3592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:11.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[3593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:12.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[3594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:12.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[3595]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-02T20:17:12.641
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[3596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:12.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[3597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:12.860
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[3598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:14.856
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[3599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:17.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[3600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:18.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[3601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:19.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[3602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:21.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[3603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:25.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:52.140
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[3605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:17:52.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[3606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:18:14.542
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[3607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:19:03.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[3608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:19:03.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[3609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:19:03.885
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[3610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:19:07.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[3611]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-02T20:19:07.723
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Tuesday, ?December ?03, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.163.863.0)

Event[3612]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-02T20:19:11.177
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[3613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:19:29.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[3614]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-02T20:19:54.528
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.163.863.0)

Event[3615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:19:59.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[3616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:20:00.768
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:20:00.768
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3618]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:20:30.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[3619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:20:39.113
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[3620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:20:59.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[3621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:22:15.061
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[3622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:22:39.934
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[3623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:25:14.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[3624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:28:23.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[3625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:28:24.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[3626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:28:33.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[3627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:29:05.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[3628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:31:33.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[3629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:34:47.433
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[3630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:34:50.390
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[3631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:34:50.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[3632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:35:30.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[3633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:39:15.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[3634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:43:40.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[3635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:44:25.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[3636]:
  Log Name: System
  Source: Microsoft-Windows-DriverFrameworks-UserMode
  Date: 2013-12-02T20:44:33.823
  Event ID: 10114
  Task: Startup of the UMDF reflector
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The UMDF reflector was unable to complete startup because the WUDFPf service was not found.  This service may be started later during boot, at which point Windows will attempt to start the device again.

Event[3637]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-PnP
  Date: 2013-12-02T20:44:33.823
  Event ID: 219
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_LEXAR&PROD_USB_FLASH_DRIVE&REV_8.07#2012010713564134377C&0#.

Event[3638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:44:34.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.

Event[3639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:50:49.044
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[3640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:16.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[3641]:
  Log Name: System
  Source: USER32
  Date: 2013-12-02T20:56:39.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[3642]:
  Log Name: System
  Source: USER32
  Date: 2013-12-02T20:56:41.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[3643]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-02T20:56:41.346
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[3644]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T20:56:42.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[3645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[3646]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-02T20:56:42.188
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[3647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.251
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[3648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[3649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[3650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[3651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[3652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[3653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[3654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[3655]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-02T20:56:42.547
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[3656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[3657]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-02T20:56:42.578
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[3658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[3659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.594
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[3660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[3661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[3662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[3663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[3664]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[3665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.625
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[3666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[3667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[3668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[3669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[3670]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[3671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[3672]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T20:57:43.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[3673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[3674]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T20:57:43.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[3675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[3676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[3677]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:42.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[3678]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T20:57:43.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 31 seconds.

Event[3679]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-02T20:56:43.046
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[3680]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:43.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[3681]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-02T20:56:43.249
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[3682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:43.249
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[3683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:43.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[3684]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:43.655
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[3685]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-02T20:56:47.524
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[3686]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-02T20:56:48.662
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?03T01:56:48.662978800Z.

Event[3687]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:56:48.678
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[3688]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-02T20:57:12.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?03T01:57:11.595198400Z.

Event[3689]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:57:17.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3690]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:57:21.376
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3691]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-02T20:57:24.278
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[3692]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:57:24.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3693]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:57:24.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3694]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:57:24.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3695]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:57:24.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3696]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:57:24.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3697]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:57:24.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3698]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:57:24.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3699]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T20:57:24.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:42.810
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[3701]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-02T20:57:42.810
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[3702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:42.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[3703]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:57:42.951
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3704]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:57:42.966
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3705]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:57:42.966
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3706]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:57:42.966
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:42.966
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[3708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:42.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[3709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:42.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[3710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[3711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.060
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[3712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[3714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.590
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[3715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[3716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[3717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[3718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[3719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.637
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[3720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.637
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[3721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.637
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[3722]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-02T20:57:43.637
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[3723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[3724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[3725]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-02T20:57:43.668
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[3726]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-02T20:57:43.668
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[3727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[3728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[3729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.684
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[3730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[3731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:43.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[3732]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-02T20:57:43.778
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[3733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:44.566
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[3734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:44.596
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[3735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:45.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[3736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:45.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[3737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[3738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[3739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[3740]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-02T20:57:46.096
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[3741]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T20:57:46.106
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[3743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[3744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[3745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.406
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[3746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.416
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[3747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[3748]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-02T20:57:46.436
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[3749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[3750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[3751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[3752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:46.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[3753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:47.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[3754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:47.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[3755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:49.637
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[3756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:49.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:50.011
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[3758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:50.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[3759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:50.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[3760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:52.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[3761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:57:52.569
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[3762]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-02T20:57:55.533
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[3763]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-02T20:57:58.076
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[3764]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-02T20:58:07.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[3765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:58:07.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[3766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:58:10.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[3767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:58:10.633
  Event ID: 7023
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service terminated with the following error: 
The process cannot access the file because it is being used by another process.

Event[3768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:58:10.633
  Event ID: 7031
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.

Event[3769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:58:41.209
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[3770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:58:41.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[3771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:58:42.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[3772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:58:42.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[3773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:58:58.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[3774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:49.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:49.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:49.943
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[3777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:49.943
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[3778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:50.146
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[3779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:50.146
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[3780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:50.349
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[3781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:50.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[3782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:50.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[3783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:51.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[3784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:51.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[3785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:51.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[3786]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-02T20:59:52.314
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[3787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:52.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[3788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:52.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[3789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:54.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[3790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:55.263
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[3791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:55.793
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[3792]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:57.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[3793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T20:59:58.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[3794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:00:04.373
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[3795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:02:57.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[3796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:03:01.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:04:02.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:04:20.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[3799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:04:21.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:04:58.249
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[3801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:06:47.109
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[3802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:06:51.215
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[3803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:06:51.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[3804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:06:51.625
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[3805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:06:53.517
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\8485eed2-14ee-457a-b9c4-a68d882379d8
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[3806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:06:55.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[3807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:08:58.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[3808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:08:58.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[3809]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-02T21:10:03.310
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[3810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:10:57.028
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[3811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:10:58.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[3812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:14:58.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[3813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:15:50.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[3814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:20:00.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:20:00.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:29:36.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[3817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:29:37.062
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:36:49.424
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[3819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:36:49.749
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[3820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:36:53.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[3821]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:38:55.827
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[3822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:38:55.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[3823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:39:50.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[3824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:41:48.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:44:55.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[3826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:46:30.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:50:37.064
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[3828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:53:44.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3829]:
  Log Name: System
  Source: USER32
  Date: 2013-12-02T21:53:56.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[3830]:
  Log Name: System
  Source: USER32
  Date: 2013-12-02T21:53:58.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[3831]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-02T21:53:59.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[3832]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-02T21:53:58.879
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[3833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:53:59.394
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[3834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:53:59.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[3835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:53:59.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[3836]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-02T21:53:59.893
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[3837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:53:59.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[3838]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T21:54:01.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[3839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:53:59.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[3840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[3841]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-02T21:54:01.157
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[3842]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-02T21:54:01.157
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[3843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[3844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[3845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[3846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[3847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[3848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[3849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[3850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[3851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[3852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[3853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[3854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[3855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[3856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[3857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[3858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[3859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[3860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[3861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[3862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[3863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[3864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[3865]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T21:54:45.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[3866]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T21:54:45.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[3867]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T21:54:45.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 18 seconds.

Event[3868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[3869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[3870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[3871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.625
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[3872]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-02T21:54:01.671
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[3873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[3874]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-02T21:54:01.874
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[3875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:01.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[3876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:02.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[3877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:02.545
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[3878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:03.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[3879]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-02T21:54:05.135
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[3880]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-02T21:54:06.273
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?03T02:54:06.273816700Z.

Event[3881]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-02T21:54:27.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?03T02:54:26.595198400Z.

Event[3882]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T21:54:32.772
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3883]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T21:54:36.189
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3884]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-02T21:54:40.541
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[3885]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T21:54:41.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3886]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T21:54:41.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3887]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T21:54:41.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3888]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T21:54:41.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3889]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T21:54:41.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3890]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T21:54:41.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3891]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T21:54:41.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3892]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-02T21:54:41.150
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[3893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[3894]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-02T21:54:45.128
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[3895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[3896]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T21:54:45.221
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3897]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T21:54:45.221
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3898]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T21:54:45.221
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3899]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T21:54:45.237
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[3901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[3902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[3903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[3904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[3905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[3907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[3908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[3909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[3910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[3911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[3912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[3913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[3914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:45.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[3915]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-02T21:54:45.986
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[3916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:46.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[3917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:46.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[3918]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-02T21:54:46.001
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[3919]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-02T21:54:46.017
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[3920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:46.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[3921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:46.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[3922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:46.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[3923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:46.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[3924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:46.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[3925]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-02T21:54:46.079
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[3926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:46.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[3927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:46.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[3928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:47.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[3929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:47.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[3930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:47.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[3931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[3932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.010
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[3933]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-02T21:54:48.020
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[3934]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-02T21:54:48.040
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[3935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[3936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[3937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[3938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[3939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[3940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[3941]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-02T21:54:48.320
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[3942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[3943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[3944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:48.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[3945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:49.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[3946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:49.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[3947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:49.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[3948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:52.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[3949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:52.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[3950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:52.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[3951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:52.905
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[3952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:52.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[3953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:53.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[3954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:54:54.512
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[3955]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-02T21:55:18.911
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[3956]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-02T21:55:28.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[3957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:55:28.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[3958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:55:30.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[3959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:55:30.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[3960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:55:30.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[3961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:55:30.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[3962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:19.911
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[3963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:53.108
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[3964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:53.108
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[3965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:53.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[3966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:53.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[3967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:54.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[3968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:54.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[3969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:54.294
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[3970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:54.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[3971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:54.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[3972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:55.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[3973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:56.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[3974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:56.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[3975]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-02T21:56:56.977
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[3976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:56.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[3977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:57.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[3978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:59.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[3979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:56:59.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[3980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:57:00.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[3981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:57:01.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[3982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:57:04.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[3983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T21:57:28.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[3984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:00:21.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[3985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:00:23.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:01:59.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[3987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:07:19.964
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:07:21.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[3989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:08:20.375
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[3990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:08:21.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[3991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:15:06.013
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[3992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:17:24.760
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[3993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:18:02.965
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[3994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:18:04.291
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[3995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:18:05.687
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[3996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:18:05.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[3997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:18:07.996
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\888c51f9-405d-4be6-a326-8c95d0d0ce2f
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[3998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:18:10.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[3999]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:20:00.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4000]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:20:00.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:20:13.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[4002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:20:13.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[4003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:23:04.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[4004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:23:22.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[4005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:26:13.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[4006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:30:31.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:31:58.465
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[4008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:40:05.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[4009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:48:28.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[4010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:51:16.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:51:54.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[4012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:53:09.606
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[4013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:53:11.774
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\073178d4-cfc4-4d26-b32e-e329a195c559
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[4014]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-02T22:53:20.054
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[4015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:53:20.148
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[4016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:53:20.491
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[4017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:53:24.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[4018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:54:04.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[4019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:54:15.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[4020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:55:26.342
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[4021]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T22:55:26.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[4022]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:01:26.342
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[4023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:01:41.192
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[4024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:01:41.254
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[4025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:04:23.026
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[4026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:06:40.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[4027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:10:34.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[4028]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:19:46.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[4029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:20:00.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:20:00.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4031]:
  Log Name: System
  Source: USER32
  Date: 2013-12-02T23:37:18.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[4032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:18.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4033]:
  Log Name: System
  Source: USER32
  Date: 2013-12-02T23:37:20.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[4034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:19.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[4035]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-02T23:37:20.940
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[4036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:21.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[4037]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-02T23:37:21.860
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[4038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:21.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[4039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:21.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[4040]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-02T23:37:22.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[4041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[4042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[4043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[4044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[4045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[4046]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-02T23:37:22.578
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[4047]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-02T23:37:22.578
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[4048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[4049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[4050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[4051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[4052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[4053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[4054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[4055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[4056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[4057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[4058]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-02T23:37:22.609
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[4059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[4060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[4061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[4062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[4063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[4064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[4065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.718
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[4066]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[4067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[4068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.843
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[4069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:22.905
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[4070]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-02T23:37:23.248
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[4071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:23.248
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[4072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:23.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[4073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:23.529
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[4074]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-02T23:37:23.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[4075]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-04T22:34:02.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[4076]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-04T22:34:02.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[4077]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-04T22:34:02.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 21 seconds.

Event[4078]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-02T23:37:27.070
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[4079]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-02T23:37:27.960
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?03T04:37:27.960179200Z.

Event[4080]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-04T22:33:42.952
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?05T03:33:41.595198400Z.

Event[4081]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-04T22:33:47.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4082]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-04T22:33:50.970
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4083]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-04T22:33:53.014
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[4084]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-04T22:33:53.716
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4085]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-04T22:33:53.716
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4086]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-04T22:33:53.716
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4087]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-04T22:33:53.716
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4088]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-04T22:33:53.716
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4089]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-04T22:33:53.716
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4090]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-04T22:33:53.716
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4091]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-04T22:33:53.716
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:01.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[4093]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-04T22:34:01.890
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[4094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:02.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[4095]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-04T22:34:02.202
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4096]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-04T22:34:02.218
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4097]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-04T22:34:02.234
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4098]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-04T22:34:02.234
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:02.343
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[4100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:02.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[4101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:02.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[4102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:02.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[4103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:03.060
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:03.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[4105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:03.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[4106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[4107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[4108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[4109]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[4110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[4111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[4112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[4113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[4114]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-04T22:34:04.246
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[4115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.308
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[4116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[4117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:04.964
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[4118]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:05.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[4119]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-04T22:34:05.338
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[4120]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-04T22:34:05.510
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[4121]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:05.510
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[4122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:06.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[4123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:08.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[4124]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-04T22:34:08.255
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[4125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:09.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[4126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:09.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[4127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:09.694
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[4128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:10.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[4129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:10.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[4130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:10.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[4131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:10.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[4132]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-04T22:34:10.534
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[4133]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-04T22:34:10.544
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:10.684
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[4135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:10.694
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[4136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:10.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[4137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:12.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[4138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:13.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[4139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:13.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[4140]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-04T22:34:13.993
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[4141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:13.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[4142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:14.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[4143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:14.039
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[4144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:14.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[4145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:14.117
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[4146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:14.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[4147]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:15.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[4148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:16.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[4149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:16.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[4150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:16.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[4151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:17.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[4152]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-04T22:34:26.426
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[4153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:35.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[4154]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-04T22:34:36.571
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[4155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:37.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[4156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:37.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[4157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:37.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[4158]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-04T22:34:38.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[4159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:38.146
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[4160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:38.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[4161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:38.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[4162]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-04T22:34:59.877
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[4163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:34:59.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[4164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:35:27.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[4165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:16.117
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:16.377
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:16.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[4168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:16.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[4169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:16.997
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[4170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:16.997
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[4171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:17.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[4172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:17.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[4173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:17.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[4174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:18.777
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[4175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:19.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[4176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:19.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[4177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:19.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[4178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:21.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[4179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:22.487
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[4180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:22.707
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[4181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:23.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[4182]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-12-04T22:36:24.107
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[4183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:26.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[4184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:36:34.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[4185]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-04T22:36:42.460
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?05T03:36:42.460029300Z from ?2013?-?12?-?05T03:36:38.507086800Z.

Event[4186]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-12-04T22:36:42.460
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[4187]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-04T22:36:42.460
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?05T03:36:42.460000000Z from ?2013?-?12?-?05T03:36:42.460029300Z.

Event[4188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:37:31.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[4189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:38:17.960
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[4190]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-04T22:38:21.570
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?December ?05, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.163.1103.0)

Event[4191]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-04T22:38:27.210
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.163.1103.0)

Event[4192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:39:28.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[4193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:42:18.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[4194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:42:35.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[4195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:42:40.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[4196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:42:51.140
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[4197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:43:40.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[4198]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-04T22:45:19.590
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[4199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:45:21.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[4200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:46:48.406
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[4201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:47:27.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[4202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:47:28.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[4203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:48:26.934
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[4204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:48:27.604
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[4205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:48:27.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[4206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T22:51:51.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[4207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T23:01:52.665
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[4208]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2013-12-04T23:13:34.951
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name indymediaartists.org timed out after none of the configured DNS servers responded.

Event[4209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T23:15:52.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[4210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T23:16:18.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[4211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T23:16:21.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[4212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T23:16:25.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[4213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T23:18:19.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[4214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-04T23:19:03.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the paused state.

Event[4215]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-04T23:19:08.802
  Event ID: 42
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system is entering sleep.

Sleep Reason: Application API

Event[4216]:
  Log Name: System
  Source: Microsoft-Windows-HAL
  Date: 2013-12-04T23:19:18.130
  Event ID: 12
  Task: N/A
  Level: Error
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The platform firmware has corrupted memory across the previous system power transition.  Please check for updated firmware for your system.

Event[4217]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-05T01:19:23.500
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?05T06:19:23.500000000Z from ?2013?-?12?-?05T04:19:18.177702400Z.

Event[4218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:23.515
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[4219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:23.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[4220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:23.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[4221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:23.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[4222]:
  Log Name: System
  Source: Microsoft-Windows-Power-Troubleshooter
  Date: 2013-12-05T01:19:26.167
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system has resumed from sleep.

Sleep Time: ?2013?-?12?-?05T06:19:25.933604300Z
Wake Time: ?2013?-?12?-?05T06:19:23.858800700Z

Wake Source: S4 Doze to Hibernate

Event[4223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:26.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:26.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[4225]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:26.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[4226]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-05T01:19:28.068
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[4227]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-05T01:19:31.175
  Event ID: 42
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system is entering sleep.

Sleep Reason: Hibernate from Sleep

Event[4228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:34.779
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[4229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:35.434
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T01:19:35.434
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4231]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-05T03:37:11.500
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?05T08:37:11.500000000Z from ?2013?-?12?-?05T06:19:41.612031800Z.

Event[4232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:37:12.342
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[4233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:37:13.637
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[4234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:37:14.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[4235]:
  Log Name: System
  Source: Microsoft-Windows-Power-Troubleshooter
  Date: 2013-12-05T03:37:15.462
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system has resumed from sleep.

Sleep Time: ?2013?-?12?-?05T06:19:25.933604300Z
Wake Time: ?2013?-?12?-?05T08:37:13.964804300Z

Wake Source: Unknown

Event[4236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:37:17.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[4237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:37:18.379
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:37:18.379
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:37:26.803
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:18.324
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[4241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:18.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[4242]:
  Log Name: System
  Source: USER32
  Date: 2013-12-05T03:38:45.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[4243]:
  Log Name: System
  Source: USER32
  Date: 2013-12-05T03:38:52.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[4244]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-05T03:38:52.308
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[4245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:53.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[4246]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-05T03:38:54.118
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[4247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:54.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[4248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:54.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[4249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:54.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[4250]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-05T03:38:55.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[4251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:55.740
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[4252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:56.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[4253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:56.551
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[4254]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-05T03:38:56.551
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[4255]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-05T03:38:56.551
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[4256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:56.551
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[4257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:56.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[4258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:56.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[4259]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-05T03:38:57.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[4260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[4261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[4262]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-05T03:38:57.347
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[4263]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[4264]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[4265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[4266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[4267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.425
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[4268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[4269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[4270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[4271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.768
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[4272]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-05T03:38:57.862
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?05T08:38:57.862000000Z from ?2013?-?12?-?05T08:38:57.862185900Z.

Event[4273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.893
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[4274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.893
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[4275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:57.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[4276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:58.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[4277]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:58.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[4278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:58.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[4279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:58.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[4280]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:11:01.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[4281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:59.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[4282]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:11:01.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[4283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:59.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[4284]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:11:01.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 21 seconds.

Event[4285]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-05T03:38:59.999
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[4286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:38:59.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[4287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:39:00.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[4288]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-05T03:39:00.638
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[4289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:39:00.919
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[4290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:39:03.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[4291]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-05T03:39:04.492
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?05T08:39:04.492011500Z.

Event[4292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-05T03:39:04.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[4293]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T01:10:41.843
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T06:10:40.595198400Z.

Event[4294]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:10:46.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4295]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:10:51.062
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4296]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T01:10:54.775
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[4297]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:10:57.084
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4298]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:10:57.084
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4299]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:10:57.084
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4300]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:10:57.084
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4301]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:10:57.084
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4302]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:10:57.084
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4303]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:10:57.084
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4304]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:10:57.084
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:01.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[4306]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T01:11:01.795
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[4307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:01.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[4308]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:11:01.889
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4309]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:11:01.889
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4310]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:11:01.904
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4311]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:11:01.904
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:01.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[4313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:01.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[4314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:01.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[4315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:01.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[4316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:01.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[4317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[4319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[4320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[4321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[4322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[4323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[4324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[4325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[4326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[4327]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T01:11:02.794
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[4328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[4329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:02.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[4330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:03.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[4331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:03.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[4332]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T01:11:03.001
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[4333]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T01:11:03.011
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[4334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:03.011
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[4335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:03.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[4336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:03.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[4337]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T01:11:03.051
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[4338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:03.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[4339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:03.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[4340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:04.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[4341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:05.491
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[4342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:05.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[4343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:05.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[4344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:05.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[4345]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T01:11:05.881
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[4346]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:11:05.901
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:06.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[4348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:06.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[4349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:06.081
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[4350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:07.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[4351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:07.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[4352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:07.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[4353]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T01:11:07.461
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[4354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:07.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[4355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:07.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[4356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:07.481
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[4357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:08.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[4358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:08.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[4359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:08.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[4360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:10.044
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[4361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:10.309
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[4362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:10.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[4363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:10.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[4364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:10.481
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[4365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:10.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[4366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:12.181
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[4367]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T01:11:16.440
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[4368]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T01:11:18.905
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[4369]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T01:11:37.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[4370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:37.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[4371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:43.095
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[4372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:43.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[4373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:43.563
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[4374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:43.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[4375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:11:49.195
  Event ID: 7011
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the MBAMService service.

Event[4376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:12:29.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[4377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:13:10.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:13:10.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:13:49.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[4380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:16:42.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[4381]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T01:17:21.086
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[4382]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T01:17:31.678
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[4383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:17:51.006
  Event ID: 7011
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the MBAMService service.

Event[4384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:18:21.021
  Event ID: 7011
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the MBAMService service.

Event[4385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:18:51.035
  Event ID: 7011
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the MBAMService service.

Event[4386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:19:21.065
  Event ID: 7011
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the MBAMService service.

Event[4387]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T01:20:45.749
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T06:20:44.610798500Z.

Event[4388]:
  Log Name: System
  Source: vmci
  Date: 2013-12-06T01:20:46.467
  Event ID: 2
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
VMCI: Not supported in Safe Boot Mode.


Event[4389]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:21:01.100
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4390]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:21:18.000
  Event ID: 6008
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The previous system shutdown at 1:19:51 AM on ?12/?6/?2013 was unexpected.

Event[4391]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:21:18.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[4392]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:21:18.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[4393]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:21:18.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 33 seconds.

Event[4394]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T01:21:05.936
  Event ID: 41
  Task: N/A
  Level: Critical
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Event[4395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:18.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[4396]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T01:21:18.369
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[4397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:18.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[4398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:18.416
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[4399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[4400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[4401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:18.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[4402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[4403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[4408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.632
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[4416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.648
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[4418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[4419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:19.695
  Event ID: 7026
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The following boot-start or system-start driver(s) failed to load: 
AFD
AsIO
AsUpIO
aswRdr
aswRvrt
aswSnx
aswSP
aswTdi
aswVmm
CSC
DfsC
discache
NetBIOS
NetBT
nsiproxy
Psched
rdbss
spldr
tdx
vwififlt
Wanarpv6
WfpLwf
ws2ifsl

Event[4420]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T01:21:31.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}

Event[4421]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T01:21:30.974
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[4422]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T01:21:36.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Event[4423]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T01:21:37.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server:
{9E175B6D-F52A-11D8-B9A5-505054503030}

Event[4424]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T01:21:37.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server:
{BA126AD1-2166-11D1-B1D0-00805FC1270E}

Event[4425]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T01:21:37.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server:
{A47979D2-C419-11D9-A5B4-001185AD2B89}

Event[4426]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T01:21:37.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server:
{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Event[4427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:37.822
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:37.838
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:38.586
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:38.586
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:38.586
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:38.586
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:38.586
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:21:38.586
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:23:19.706
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service depends on the Function Discovery Provider Host service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:23:25.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[4437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:25:03.352
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:25:27.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[4439]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T01:32:02.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[4440]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T01:32:18.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[4441]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:32:18.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[4442]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T01:32:18.110
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[4443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:32:18.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[4444]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T01:32:18.172
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[4445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:32:18.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[4446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:32:18.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[4447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:32:18.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[4448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:32:18.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[4449]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:33:00.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[4450]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:33:00.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[4451]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T01:33:00.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 21 seconds.

Event[4452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:32:18.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[4453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:32:18.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[4454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:32:18.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[4455]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T01:32:18.687
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[4456]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T01:32:19.077
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T06:32:19.077209300Z.

Event[4457]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T01:32:39.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T06:32:38.595198400Z.

Event[4458]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:32:44.757
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4459]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:32:49.062
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4460]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T01:32:52.853
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[4461]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:32:55.302
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4462]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:32:55.302
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4463]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:32:55.302
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4464]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:32:55.302
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4465]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:32:55.302
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4466]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:32:55.302
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4467]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:32:55.302
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4468]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T01:32:55.302
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[4470]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T01:33:00.092
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[4471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.216
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[4472]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:33:00.248
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4473]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:33:00.248
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4474]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:33:00.248
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4475]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:33:00.248
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.263
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[4477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.263
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[4478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.279
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[4479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[4480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[4481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.747
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[4483]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:00.825
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[4484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[4485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.414
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[4486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[4487]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[4488]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[4489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[4490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[4491]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T01:33:03.695
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[4492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[4493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[4494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[4495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[4496]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T01:33:03.918
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[4497]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T01:33:03.928
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[4498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[4499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[4500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:03.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[4501]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T01:33:03.968
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[4502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:04.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[4503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:04.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[4504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:04.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[4505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:06.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[4506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:06.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[4507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:06.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[4508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:06.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[4509]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T01:33:06.188
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[4510]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T01:33:06.208
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:06.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[4512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:06.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[4513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:06.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[4514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:09.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[4515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:09.244
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[4516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:09.244
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[4517]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T01:33:09.244
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[4518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:09.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[4519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:09.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[4520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:09.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[4521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:09.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[4522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:09.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[4523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:10.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[4524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:11.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[4525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:11.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[4526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:11.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[4527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:11.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[4528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:12.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[4529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:12.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[4530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:33:13.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[4531]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T01:34:03.735
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[4532]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T01:34:20.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[4533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:34:20.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[4534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:34:20.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[4535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:34:29.246
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[4536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:34:31.087
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[4537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:34:31.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[4538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:34:31.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[4539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:34:57.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[4540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:07.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[4541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:12.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:12.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:13.405
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[4544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:13.405
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[4545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:13.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[4546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:13.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[4547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:13.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[4548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:14.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[4549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:14.715
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[4550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:14.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[4551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:16.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[4552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:16.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[4553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:16.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[4554]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T01:35:16.773
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[4555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:16.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[4556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:17.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[4557]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T01:35:18.146
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[4558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:24.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the running state.

Event[4559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:33.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[4560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:35.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[4561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:36.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[4562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:35:41.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[4563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:36:09.965
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[4564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:36:14.785
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[4565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:36:20.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[4566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:36:38.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[4567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:37:22.153
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[4568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:37:22.278
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[4569]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T01:37:26.506
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Friday, ?December ?06, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.163.1332.0)

Event[4570]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T01:38:05.302
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.163.1332.0)

Event[4571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:38:24.732
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[4572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:38:31.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[4573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:39:04.485
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[4574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:39:06.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[4575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:40:38.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[4576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:40:51.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[4577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:43:51.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[4578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:47:05.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[4579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:47:05.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[4580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:48:04.959
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[4581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:48:05.159
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[4582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:48:05.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[4583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:53:40.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[4584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:54:22.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[4585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:54:25.921
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 8 service entered the stopped state.

Event[4586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:54:30.291
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  TeamViewer 9
Service File Name:  "C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
Service Type:  user mode service
Service Start Type:  auto start
Service Account:  LocalSystem

Event[4587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:54:33.554
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[4588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:56:25.613
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[4589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:56:35.803
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[4590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T01:57:25.613
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[4591]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2013-12-06T01:59:54.567
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name avg.clickhereformoreinfo.com timed out after none of the configured DNS servers responded.

Event[4592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:10:09.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[4593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:13:41.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[4594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:15:14.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[4595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:20:00.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:20:00.308
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:33:10.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[4598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:34:42.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[4599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:34:42.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[4600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:35:04.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the stopped state.

Event[4601]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T02:37:00.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Program Files\AVAST Software\Avast\Setup\Instup.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Application: Installation (Planned)
 Reason Code: 0x80040002
 Shutdown Type: restart
 Comment: 

Event[4602]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:37:03.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[4603]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T02:37:03.265
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[4604]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T02:37:03.390
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[4605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[4606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[4607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.733
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[4608]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T02:37:03.733
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[4609]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T02:37:03.733
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[4610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.733
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[4611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[4612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[4613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.765
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[4614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[4615]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:37:57.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[4616]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:37:57.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[4617]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:37:57.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 28 seconds.

Event[4618]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:37:03.780
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[4619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[4620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[4621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[4622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.796
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[4623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.796
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[4624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.796
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[4625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.796
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[4626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.796
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[4627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[4628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[4629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[4630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[4631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[4632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[4633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[4634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[4635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:03.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[4636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:04.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[4637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:04.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[4638]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T02:37:04.513
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[4639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:04.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[4640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:04.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[4641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:04.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[4642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:04.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[4643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:04.810
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[4644]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T02:37:08.741
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[4645]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T02:37:09.833
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T07:37:09.833485300Z.

Event[4646]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T02:37:30.874
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T07:37:29.610798400Z.

Event[4647]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:37:35.616
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4648]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T02:37:45.039
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[4649]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:37:45.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4650]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:37:45.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4651]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:37:45.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4652]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:37:45.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4653]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:37:45.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4654]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:37:45.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4655]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:37:45.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4656]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:37:45.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:57.597
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[4658]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:37:57.597
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[4659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:57.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[4660]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:37:57.659
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4661]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:37:57.659
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:57.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[4663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:57.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[4664]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:57.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[4665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:57.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[4666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:57.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[4667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:57.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.018
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[4669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[4670]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[4671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[4672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[4673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[4674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[4675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[4676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[4677]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T02:37:58.112
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[4678]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[4679]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[4680]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T02:37:58.127
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[4681]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T02:37:58.127
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[4682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[4683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[4684]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[4685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[4686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[4687]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T02:37:58.174
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[4688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:58.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[4689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:37:59.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[4690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:02.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[4691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:02.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[4692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:02.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[4693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:02.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[4694]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T02:38:02.500
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[4695]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:38:02.520
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:02.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[4697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:02.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[4698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:03.060
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[4699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:03.521
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[4700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:03.537
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[4701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:03.537
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[4702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:03.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[4703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:03.599
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[4704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:05.144
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[4705]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T02:38:06.127
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[4706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:06.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[4707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:07.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[4708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:07.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[4709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:08.825
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[4710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:09.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[4711]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T02:38:10.011
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[4712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:10.011
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[4713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:10.042
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[4714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:10.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[4715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:12.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[4716]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:38:16.345
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[4717]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T02:38:28.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[4718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:28.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[4719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:28.705
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[4720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:28.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[4721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:29.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[4722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:29.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[4723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:29.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[4724]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T02:38:40.732
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[4725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:38:40.732
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[4726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:39:12.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[4727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[4730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[4731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[4732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[4733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[4734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[4735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[4736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:10.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[4737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:11.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[4738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:12.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[4739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:12.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[4740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:13.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[4741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:13.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[4742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:13.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[4743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:14.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[4744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:16.034
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[4745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:40:19.012
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[4746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:41:07.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[4747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:43:12.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[4748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:45:15.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[4749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:09.961
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[4750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:19.685
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[4751]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T02:47:21.758
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[4752]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T02:47:27.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Users\Andrew\Downloads\avastclear.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Application: Installation (Planned)
 Reason Code: 0x80040002
 Shutdown Type: restart
 Comment: 

Event[4753]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:47:30.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[4754]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T02:47:30.047
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[4755]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T02:47:30.156
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[4756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[4757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.249
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[4758]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T02:47:30.437
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[4759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.437
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[4760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.437
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[4761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.437
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[4762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.437
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[4763]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T02:47:30.437
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[4764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.437
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[4765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[4766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[4767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[4768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[4769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[4770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[4771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[4772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[4773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[4774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[4775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.733
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[4776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[4777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[4778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[4779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[4780]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:48:43.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[4781]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:48:43.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[4782]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:48:43.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 31 seconds.

Event[4783]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:47:30.967
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[4784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[4785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[4786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[4787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:30.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[4788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:31.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[4789]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T02:47:31.139
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[4790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:31.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[4791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:31.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[4792]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:31.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[4793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:47:31.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[4794]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T02:47:35.444
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[4795]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T02:47:36.427
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T07:47:36.427562100Z.

Event[4796]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T02:48:13.765
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T07:48:12.595198400Z.

Event[4797]:
  Log Name: System
  Source: vmci
  Date: 2013-12-06T02:48:14.467
  Event ID: 2
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
VMCI: Not supported in Safe Boot Mode.


Event[4798]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:48:29.131
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:43.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[4800]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:48:43.514
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[4801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:43.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[4802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:43.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[4803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:43.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[4804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:43.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[4805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:43.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[4806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[4807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[4812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[4815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.949
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[4820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.980
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4821]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:44.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[4822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:45.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[4823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:48:45.480
  Event ID: 7026
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The following boot-start or system-start driver(s) failed to load: 
AFD
AsIO
AsUpIO
CSC
DfsC
discache
NetBIOS
NetBT
nsiproxy
Psched
rdbss
spldr
tdx
vwififlt
Wanarpv6
WfpLwf
ws2ifsl

Event[4824]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T02:48:53.623
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[4825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:50:45.491
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service depends on the Function Discovery Provider Host service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[4826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:50:45.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[4827]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T02:51:08.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\Temp\aswClear.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Application: Installation (Planned)
 Reason Code: 0x80040002
 Shutdown Type: restart
 Comment: 

Event[4828]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:51:09.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[4829]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T02:51:09.671
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[4830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:09.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[4831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:09.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[4832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:09.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[4833]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:51:09.795
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[4834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:09.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[4835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:09.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[4836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:09.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[4837]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:51:50.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[4838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:09.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[4839]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:51:50.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[4840]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:51:50.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 21 seconds.

Event[4841]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T02:51:10.310
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[4842]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T02:51:10.560
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T07:51:10.560308700Z.

Event[4843]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T02:51:30.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T07:51:29.610798400Z.

Event[4844]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:51:35.757
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4845]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T02:51:45.460
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[4846]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:51:46.146
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4847]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:51:46.146
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4848]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:51:46.146
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4849]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:51:46.146
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4850]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:51:46.146
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4851]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:51:46.146
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4852]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:51:46.146
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4853]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:51:46.146
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[4854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:50.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[4855]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:51:50.546
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[4856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:50.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[4857]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:51:50.592
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4858]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:51:50.592
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:50.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[4860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:50.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[4861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:50.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[4862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:50.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[4863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:50.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[4864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:50.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[4865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:50.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[4866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[4867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[4868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[4869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[4870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[4871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[4872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[4873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[4874]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T02:51:51.060
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[4875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[4876]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T02:51:51.076
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[4877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[4878]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T02:51:51.092
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[4879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[4880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[4881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[4882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[4883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[4884]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T02:51:51.123
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[4885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[4886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.830
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[4887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:51.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[4888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:52.110
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[4889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:52.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[4890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:52.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[4891]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T02:51:52.190
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[4892]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:51:52.210
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:52.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[4894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:52.460
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[4895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:52.530
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[4896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:52.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[4897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:52.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[4898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:52.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[4899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:53.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[4900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:53.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[4901]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T02:51:55.190
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[4902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:55.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[4903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:55.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[4904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:55.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[4905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:56.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[4906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:56.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[4907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:58.223
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[4908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:58.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[4909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:58.551
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[4910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:51:58.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[4911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:00.251
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[4912]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T02:52:14.135
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[4913]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T02:52:22.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[4914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:22.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[4915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:22.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[4916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:22.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[4917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:22.829
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[4918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:22.829
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[4919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:23.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[4920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:33.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[4921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:42.527
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[4922]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T02:52:45.037
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[4923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:52:45.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[4924]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T02:53:04.615
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[4925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:05.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[4926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:58.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[4927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:58.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[4928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:58.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[4929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:58.825
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[4930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:58.825
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[4931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:59.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[4932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:59.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[4933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:59.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[4934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:59.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[4935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:59.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[4936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:59.995
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PsExec
Service File Name:  %SystemRoot%\PSEXESVC.EXE
Service Type:  user mode service
Service Start Type:  demand start
Service Account:  LocalSystem

Event[4937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:53:59.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[4938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:00.026
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PsExec service entered the running state.

Event[4939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:00.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[4940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:00.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[4941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:00.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PsExec service entered the stopped state.

Event[4942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:01.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[4943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:02.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[4944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:02.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[4945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:02.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[4946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:05.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[4947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:54:23.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[4948]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T02:57:00.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[4949]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T02:57:03.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[4950]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T02:57:03.305
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[4951]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T02:57:04.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[4952]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:57:05.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[4953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:04.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[4954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:04.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[4955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:04.677
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[4956]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T02:57:04.771
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[4957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:04.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[4958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:04.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[4959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[4960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[4961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[4962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[4963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[4964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[4965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[4966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[4967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[4968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[4969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[4970]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:57:05.130
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[4971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[4972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[4973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.145
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[4974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[4975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[4976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[4977]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T02:57:05.192
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[4978]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T02:57:05.192
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[4979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[4980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[4981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.239
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[4982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[4983]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:57:51.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[4984]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:57:51.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[4985]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T02:57:51.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 21 seconds.

Event[4986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[4987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[4988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[4989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.457
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[4990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[4991]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T02:57:05.754
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[4992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[4993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:05.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[4994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:06.331
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[4995]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T02:57:10.028
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[4996]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T02:57:10.964
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T07:57:10.964793400Z.

Event[4997]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T02:57:31.983
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T07:57:30.610798500Z.

Event[4998]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:57:36.772
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[4999]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T02:57:46.569
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[5000]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:57:47.240
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5001]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:57:47.240
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5002]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:57:47.240
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5003]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:57:47.240
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5004]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:57:47.240
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5005]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:57:47.240
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5006]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:57:47.240
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5007]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T02:57:47.240
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:51.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[5009]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:57:51.670
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[5010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:51.702
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[5011]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:57:51.702
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5012]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:57:51.717
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:51.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[5014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:51.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[5015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:51.733
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[5016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:51.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[5017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:51.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[5018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:51.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[5020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.138
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[5021]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[5022]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[5023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[5024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[5025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[5026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[5027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[5028]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T02:57:52.170
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[5029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.201
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[5030]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T02:57:52.201
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[5031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.201
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[5032]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T02:57:52.201
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[5033]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.201
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[5034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.201
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[5035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.216
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[5036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.216
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[5037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[5038]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T02:57:52.232
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[5039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:52.248
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[5040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:53.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[5041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:53.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[5042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:53.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[5043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:53.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[5044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:53.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[5045]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T02:57:53.843
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[5046]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T02:57:53.853
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:54.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[5048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:54.113
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[5049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:54.343
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[5050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:54.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[5051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:54.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[5052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:54.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[5053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:54.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[5054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:55.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[5055]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T02:57:58.230
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[5056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:58.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[5057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:58.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[5058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:58.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[5059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:57:59.244
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[5060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:58:00.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[5061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:58:00.929
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[5062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:58:01.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[5063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:58:01.038
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[5064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:58:01.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[5065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:58:02.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[5066]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T02:58:05.188
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[5067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:59:04.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[5068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T02:59:04.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[5069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:01.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[5070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:01.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[5071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:01.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[5072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:01.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[5073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:01.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[5074]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:01.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[5075]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:01.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[5076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:01.860
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[5077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:01.860
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[5078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:02.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[5079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:02.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[5080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:02.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[5081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:02.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[5082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:03.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[5083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:03.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[5084]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T03:00:03.451
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[5085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:03.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[5086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:03.779
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[5087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:04.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[5088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:04.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[5089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:05.089
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[5090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:09.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[5091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:10.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[5092]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T03:00:13.654
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[5093]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T03:00:25.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[5094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:24.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[5095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:24.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[5096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:00:25.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[5097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:01:12.003
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[5098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:01:25.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[5099]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T03:01:30.784
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[5100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:01:34.496
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  dyffzrjk
Service File Name:  dyffzrjk.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[5101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:05:06.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[5102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:05:16.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[5103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:02.917
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[5104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:03.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[5105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:30.113
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:37.663
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  avast! Antivirus
Service File Name:  "C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
Service Type:  user mode service
Service Start Type:  auto start
Service Account:  LocalSystem

Event[5107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:37.663
  Event ID: 7030
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.

Event[5108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:38.053
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  aswRdr
Service File Name:  C:\Windows\system32\drivers\aswRdr2.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5109]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:38.100
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  aswFsBlk
Service File Name:  C:\Windows\system32\drivers\aswFsBlk.sys
Service Type:  kernel mode driver
Service Start Type:  auto start
Service Account:  

Event[5110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:38.131
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  aswMonFlt
Service File Name:  C:\Windows\system32\drivers\aswMonFlt.sys
Service Type:  kernel mode driver
Service Start Type:  auto start
Service Account:  

Event[5111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:38.178
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  aswSP
Service File Name:  C:\Windows\system32\drivers\aswSP.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:38.194
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  aswSnx
Service File Name:  C:\Windows\system32\drivers\aswSnx.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:38.225
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  avast! Revert
Service File Name:  C:\Windows\system32\drivers\aswRvrt.sys
Service Type:  kernel mode driver
Service Start Type:  boot start
Service Account:  

Event[5114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:38.272
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  avast! VM Monitor
Service File Name:  C:\Windows\system32\drivers\aswVmm.sys
Service Type:  kernel mode driver
Service Start Type:  boot start
Service Account:  

Event[5115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:38.318
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  aswTdi
Service File Name:  C:\Windows\system32\drivers\aswTdi.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5116]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:06:42.421
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswFsBlk' (6.0, ?2013?-?11?-?06T07:36:05.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5117]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:06:42.437
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswMonFlt' (6.0, ?2013?-?11?-?06T07:36:00.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5118]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:06:42.452
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aswSnx' (6.0, ?2013?-?11?-?06T07:37:52.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:06:44.075
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The avast! Antivirus service entered the running state.

Event[5120]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:09:26.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[5121]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T03:11:44.749
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T08:11:43.610798500Z.

Event[5122]:
  Log Name: System
  Source: vmci
  Date: 2013-12-06T03:11:45.467
  Event ID: 2
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
VMCI: Not supported in Safe Boot Mode.


Event[5123]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:12:11.000
  Event ID: 6008
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The previous system shutdown at 3:10:43 AM on ?12/?6/?2013 was unexpected.

Event[5124]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:12:11.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[5125]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:12:11.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[5126]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:12:11.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 27 seconds.

Event[5127]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:12:00.084
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5128]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T03:12:02.845
  Event ID: 41
  Task: N/A
  Level: Critical
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Event[5129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[5130]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T03:12:11.035
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[5131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[5132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[5133]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[5134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[5135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.534
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[5136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[5137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.628
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[5138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.628
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[5139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.628
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[5140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.628
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[5141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[5142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.690
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.706
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.706
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: 
A device attached to the system is not functioning.

Event[5145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.706
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.706
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5147]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.706
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.706
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[5150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.800
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[5152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.987
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[5153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:11.987
  Event ID: 7026
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The following boot-start or system-start driver(s) failed to load: 
AFD
AsIO
AsUpIO
aswRdr
aswRvrt
aswSnx
aswSP
aswTdi
aswVmm
CSC
DfsC
discache
NetBIOS
NetBT
nsiproxy
Psched
rdbss
spldr
tdx
vwififlt
Wanarpv6
WfpLwf
ws2ifsl

Event[5154]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T03:12:35.527
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[5155]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T03:12:36.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}

Event[5156]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T03:12:41.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Event[5157]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T03:12:42.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server:
{9E175B6D-F52A-11D8-B9A5-505054503030}

Event[5158]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T03:12:42.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server:
{BA126AD1-2166-11D1-B1D0-00805FC1270E}

Event[5159]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T03:12:42.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server:
{A47979D2-C419-11D9-A5B4-001185AD2B89}

Event[5160]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2013-12-06T03:12:42.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server:
{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Event[5161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:42.500
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:42.516
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:43.312
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:43.312
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:43.312
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:43.312
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:43.312
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:12:43.312
  Event ID: 7001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: 
The dependency service or group failed to start.

Event[5169]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T03:13:21.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Users\Andrew\Downloads\avastclear.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Application: Installation (Planned)
 Reason Code: 0x80040002
 Shutdown Type: restart
 Comment: 

Event[5170]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:13:22.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[5171]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T03:13:22.374
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[5172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:13:22.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[5173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:13:22.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[5174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:13:22.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[5175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:13:22.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[5176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:13:22.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[5177]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:14:09.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[5178]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:14:09.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[5179]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:14:09.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[5180]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T03:13:22.998
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[5181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:13:22.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[5182]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T03:13:23.528
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[5183]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T03:13:24.854
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T08:13:24.854975000Z.

Event[5184]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T03:13:45.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T08:13:44.595198400Z.

Event[5185]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:13:50.726
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5186]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T03:13:55.811
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[5187]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:13:56.482
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5188]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:13:56.482
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5189]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:13:56.482
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5190]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:13:56.482
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5191]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:13:56.482
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5192]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:13:56.482
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5193]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:13:56.482
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5194]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:13:56.482
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:07.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[5196]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T03:14:07.480
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[5197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:07.527
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[5198]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:14:07.558
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5199]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:14:07.574
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:07.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[5201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:08.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[5202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:08.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[5203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:09.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[5204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:09.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[5205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:09.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:09.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[5207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:09.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[5208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:10.850
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[5209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:10.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[5210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:10.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[5211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:10.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[5212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:10.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[5213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:10.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[5214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:10.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[5215]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T03:14:11.084
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[5216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:11.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[5217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:11.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[5218]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T03:14:11.286
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[5219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:11.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[5220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:11.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[5221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:11.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[5222]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T03:14:11.302
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[5223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:11.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[5224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:12.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[5225]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T03:14:12.923
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[5226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:12.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[5227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[5228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.273
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[5229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[5230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[5231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[5232]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T03:14:13.563
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[5233]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:14:13.573
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[5235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[5236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.803
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[5237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[5238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[5239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:13.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[5240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:14.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[5241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:14.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[5242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:15.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[5243]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T03:14:15.383
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[5244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:15.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[5245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:15.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[5246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:16.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[5247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:16.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[5248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:16.803
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[5249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:16.893
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[5250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:16.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[5251]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T03:14:18.157
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[5252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:20.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[5253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:22.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[5254]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T03:14:28.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[5255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:28.705
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[5256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:28.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[5257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:29.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[5258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:29.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[5259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:29.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[5260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:29.829
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[5261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:14:37.707
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[5262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:15:18.702
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[5263]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:16.921
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[5264]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:16.921
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[5265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:17.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[5266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:17.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[5267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:17.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[5268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:17.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[5269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:17.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[5270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:17.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[5271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:17.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[5272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:17.857
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[5273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:18.216
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[5274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:18.481
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[5275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:18.481
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[5276]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T03:16:18.544
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[5277]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:18.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[5278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:18.824
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[5279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:19.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[5280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:20.026
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[5281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:20.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[5282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:23.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[5283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:16:26.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[5284]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T03:17:04.418
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[5285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:06.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[5286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:06.321
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PsExec
Service File Name:  %SystemRoot%\PSEXESVC.EXE
Service Type:  user mode service
Service Start Type:  demand start
Service Account:  LocalSystem

Event[5287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:06.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PsExec service entered the running state.

Event[5288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:07.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PsExec service entered the stopped state.

Event[5289]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T03:17:33.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[5290]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T03:17:35.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[5291]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T03:17:35.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[5292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:35.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[5293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:35.563
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[5294]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T03:17:35.625
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[5295]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:17:37.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[5296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[5297]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T03:17:37.154
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[5298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.201
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[5299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.295
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[5300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.435
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[5301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[5302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[5303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[5304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[5305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[5306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[5307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[5308]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:18:23.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[5309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[5310]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:18:23.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[5311]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T03:18:23.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 20 seconds.

Event[5312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[5313]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T03:17:37.560
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[5314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[5315]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T03:17:37.560
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[5316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[5317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[5318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[5319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[5320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[5321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[5322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[5323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[5324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[5325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.685
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[5326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[5327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.747
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[5328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[5329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:37.825
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[5330]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T03:17:38.075
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[5331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:38.075
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[5332]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T03:17:38.215
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[5333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:38.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[5334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:38.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[5335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:38.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[5336]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T03:17:42.443
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[5337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:17:43.113
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[5338]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T03:17:43.363
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T08:17:43.363415100Z.

Event[5339]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T03:18:03.952
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T08:18:02.595198400Z.

Event[5340]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:18:08.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5341]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T03:18:18.366
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[5342]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:18:18.990
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5343]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:18:18.990
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5344]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:18:18.990
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5345]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:18:18.990
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5346]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:18:18.990
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5347]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:18:18.990
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5348]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:18:18.990
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5349]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T03:18:18.990
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[5351]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T03:18:23.093
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[5352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[5353]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:18:23.140
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5354]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:18:23.140
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.140
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[5356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[5357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[5358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[5359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[5360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[5361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[5363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[5364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[5365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[5366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[5367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[5368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[5369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[5370]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T03:18:23.764
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[5371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[5372]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T03:18:23.795
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[5373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[5374]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T03:18:23.795
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[5375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[5376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[5377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[5378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:23.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[5379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:24.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[5380]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T03:18:24.045
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[5381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:24.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[5382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:24.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[5383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:24.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[5384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:25.200
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[5385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:25.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[5386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:25.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[5387]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T03:18:25.400
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[5388]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T03:18:25.420
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:25.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[5390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:25.810
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[5391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:25.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[5392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:26.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[5393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:26.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[5394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:26.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[5395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:26.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[5396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:27.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[5397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:28.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[5398]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T03:18:28.690
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[5399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:28.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[5400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:28.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[5401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:29.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[5402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:29.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[5403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:30.031
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[5404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:30.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[5405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:30.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[5406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:30.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[5407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:32.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[5408]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T03:18:34.789
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[5409]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T03:18:34.789
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[5410]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T03:18:42.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[5411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:42.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[5412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:42.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[5413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:43.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[5414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:43.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[5415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:43.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[5416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:18:43.857
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[5417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:19:15.803
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[5418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:19:34.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[5419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:19:41.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[5420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:01.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[5421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:01.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[5422]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T03:20:06.413
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[5423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:06.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[5424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:30.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[5425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:30.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[5426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:30.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[5427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:30.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[5428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:30.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[5429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:30.719
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[5430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:30.719
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[5431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:30.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[5432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:31.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[5433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:31.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[5434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:31.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[5435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:31.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[5436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:31.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[5437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:31.733
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[5438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:32.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[5439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:32.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[5440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:33.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[5441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:35.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[5442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:20:43.308
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[5443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:23:36.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[5444]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:24:51.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:25:34.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[5446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:28:08.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[5447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:28:10.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:28:11.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the running state.

Event[5449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:28:13.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the running state.

Event[5450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:28:15.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the running state.

Event[5451]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5452]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5453]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5454]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5455]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5456]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5457]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5458]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5459]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5460]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5461]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5462]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5463]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5464]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5465]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5466]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5467]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5468]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5469]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5470]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5471]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5472]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5473]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5474]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5475]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5476]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5477]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5478]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T03:28:17.796
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[5479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:28:17.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the running state.

Event[5480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:28:21.852
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the running state.

Event[5481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:28:24.738
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the running state.

Event[5482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:28:26.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the running state.

Event[5483]:
  Log Name: System
  Source: VMnetAdapter
  Date: 2013-12-06T03:28:29.169
  Event ID: 36
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Adapter Driver for VMware Virtual Networks.

Event[5484]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T03:28:29.574
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[5485]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T03:28:41.555
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[5486]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T03:28:53.910
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0005 with the following status: 0.

Event[5487]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:31:36.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[5488]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:31:37.349
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[5489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:44:16.324
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:44:57.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[5491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:47:00.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[5492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:48:12.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:48:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[5494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T03:57:21.133
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:00:31.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[5496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:03:59.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5497]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2013-12-06T04:04:34.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[5498]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2013-12-06T04:08:35.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[5499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:13:09.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:16:36.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:20:00.259
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[5502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:20:00.259
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[5503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:29:17.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[5504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:31:10.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:31:46.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:33:46.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[5507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:41:29.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:47:05.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:48:07.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the stopped state.

Event[5510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:48:07.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the stopped state.

Event[5511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:48:10.456
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the stopped state.

Event[5512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:48:12.468
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the stopped state.

Event[5513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:48:13.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the stopped state.

Event[5514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:48:16.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the stopped state.

Event[5515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:48:18.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the stopped state.

Event[5516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:53:06.492
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:53:11.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T04:58:11.945
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:04.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[5520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.811
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINKnc
Service File Name:  system32\DRIVERS\psinknc.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.811
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINFile
Service File Name:  system32\DRIVERS\PSINFile.sys
Service Type:  kernel mode driver
Service Start Type:  auto start
Service Account:  

Event[5522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.811
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINProc
Service File Name:  system32\DRIVERS\PSINProc.sys
Service Type:  kernel mode driver
Service Start Type:  auto start
Service Account:  

Event[5523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.889
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Panda Cloud Antivirus Service
Service File Name:  "C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe"
Service Type:  user mode service
Service Start Type:  auto start
Service Account:  LocalSystem

Event[5524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.904
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Panda Product Service
Service File Name:  "C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe"
Service Type:  user mode service
Service Start Type:  auto start
Service Account:  LocalSystem

Event[5525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.936
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSPrv
Service File Name:  system32\DRIVERS\NNSPrv.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.936
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSAlpc
Service File Name:  system32\DRIVERS\NNSAlpc.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.951
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSTlsc
Service File Name:  system32\DRIVERS\NNSTlsc.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.951
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSStrm
Service File Name:  system32\DRIVERS\NNSStrm.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.951
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSIds
Service File Name:  system32\DRIVERS\NNSIds.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.967
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSPicc
Service File Name:  system32\DRIVERS\NNSPicc.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.967
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSPihsw
Service File Name:  system32\DRIVERS\NNSPihsw.sys
Service Type:  kernel mode driver
Service Start Type:  disabled
Service Account:  

Event[5532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:16.967
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSProt
Service File Name:  system32\DRIVERS\NNSProt.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:17.107
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSHttp
Service File Name:  system32\DRIVERS\NNSHttp.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:17.123
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSHttps
Service File Name:  system32\DRIVERS\NNSHttps.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:17.154
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSPop3
Service File Name:  system32\DRIVERS\NNSPop3.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:17.170
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  NNSSmtp
Service File Name:  system32\DRIVERS\NNSSmtp.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:17.248
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINReg
Service File Name:  system32\DRIVERS\PSINReg.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[5538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:17.248
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINProt
Service File Name:  system32\DRIVERS\PSINProt.sys
Service Type:  kernel mode driver
Service Start Type:  auto start
Service Account:  

Event[5539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:17.279
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINAflt
Service File Name:  system32\DRIVERS\PSINAflt.sys
Service Type:  kernel mode driver
Service Start Type:  auto start
Service Account:  

Event[5540]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:01:39.868
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5541]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:01:39.930
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:41.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[5543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:42.988
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINanoRun_ECD2
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\ECD2\PSINanoRun_ECD2.exe
Service Type:  user mode service
Service Start Type:  demand start
Service Account:  LocalSystem

Event[5544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:43.253
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PSINanoRun_ECD2 service entered the running state.

Event[5545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:43.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PSINanoRun_ECD2 service entered the stopped state.

Event[5546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:44.267
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINanoRun_F1D4
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\F1D4\PSINanoRun_F1D4.exe
Service Type:  user mode service
Service Start Type:  demand start
Service Account:  LocalSystem

Event[5547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:44.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PSINanoRun_F1D4 service entered the running state.

Event[5548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:45.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PSINanoRun_F1D4 service entered the stopped state.

Event[5549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:01:50.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[5550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:06:33.680
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Network Activity Hook Server LightWeight Filter Driver
Service File Name:  system32\DRIVERS\NNSNAHSL.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[5551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:06:34.475
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the NNSPihsw service was changed from disabled to system start.

Event[5552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:06:51.822
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the NNSPihsw service was changed from system start to disabled.

Event[5553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:06:56.097
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the NNSPihsw service was changed from disabled to system start.

Event[5554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:09:00.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:10:08.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[5556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:12:08.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[5557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:14:25.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:14:41.779
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:16:34.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[5560]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T05:17:11.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[5561]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T05:17:14.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[5562]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T05:17:14.100
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[5563]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T05:17:15.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[5564]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T05:17:16.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[5565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:15.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[5566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:15.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[5567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:15.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[5568]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T05:17:15.909
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[5569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:15.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[5570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.018
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[5571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[5572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[5573]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T05:17:16.128
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[5574]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T05:17:16.128
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[5575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[5576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[5577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[5578]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T05:17:16.128
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[5579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[5580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[5581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[5582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[5583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[5584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[5585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[5586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[5587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[5588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[5589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[5590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[5591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[5592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[5593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[5594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[5595]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T05:18:17.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[5596]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T05:18:17.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[5597]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T05:18:17.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 34 seconds.

Event[5598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[5599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[5600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[5601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[5602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[5603]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T05:17:16.798
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[5604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:16.798
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[5605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:17.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[5606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:17:20.012
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[5607]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T05:17:21.135
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[5608]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T05:17:22.602
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T10:17:22.602084200Z.

Event[5609]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T05:17:43.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T10:17:42.595198400Z.

Event[5610]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:17:48.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5611]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T05:17:55.309
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[5612]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:17:55.980
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5613]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:17:55.980
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5614]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:17:55.980
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5615]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:17:55.980
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5616]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:17:55.980
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5617]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:17:55.980
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5618]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:17:55.980
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5619]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:17:55.980
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:14.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[5621]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T05:18:14.310
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[5622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:14.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[5623]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:18:14.356
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5624]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:18:16.899
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5625]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:18:17.102
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5626]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:18:17.289
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:17.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[5628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:17.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[5629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:17.492
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[5630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:17.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[5631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:17.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[5632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:17.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:17.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[5634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[5635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.022
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[5636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.022
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[5637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.038
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[5638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[5639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[5640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[5641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[5642]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T05:18:18.054
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[5643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[5644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[5645]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T05:18:18.100
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[5646]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T05:18:18.100
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[5647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[5648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[5649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[5650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[5651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.223
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[5652]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T05:18:18.223
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[5653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.223
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[5654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.343
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[5655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[5656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[5657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[5658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.493
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[5659]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T05:18:18.493
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[5660]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:18:18.513
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[5662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[5663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:18.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[5664]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:20.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[5665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:20.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[5666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:20.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[5667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:20.783
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[5668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:20.833
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[5669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:24.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[5670]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T05:18:29.516
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[5671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:30.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[5672]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T05:18:35.210
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[5673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:35.319
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[5674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:35.382
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[5675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:35.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[5676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:36.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[5677]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:36.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[5678]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:37.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[5679]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:38.049
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[5680]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:38.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[5681]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:38.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[5682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:38.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[5683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:40.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[5684]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T05:18:45.771
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[5685]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T05:18:52.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[5686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:52.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[5687]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:52.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[5688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:53.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[5689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:53.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[5690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:53.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[5691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:18:53.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[5692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:19:20.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[5693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:19:40.367
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[5694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:01.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[5695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:01.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[5696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:37.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[5697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:37.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[5698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:38.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[5699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:38.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[5700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:38.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[5701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:38.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[5702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:39.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[5703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:39.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[5704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:39.429
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[5705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:39.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[5706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:39.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[5707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:40.053
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[5708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:40.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[5709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:40.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[5710]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T05:20:40.708
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[5711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:40.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[5712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:40.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[5713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:41.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[5714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:42.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[5715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:20:44.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[5716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:21:45.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[5717]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T05:21:46.930
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[5718]:
  Log Name: System
  Source: hasplms
  Date: 2013-12-06T05:21:59.000
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Sentinel LDK License Manager starting


Event[5719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:21:59.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Sentinel Local License Manager service entered the running state.

Event[5720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:22:08.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[5721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:22:16.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[5722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:22:23.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[5723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:23:13.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[5724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:23:24.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[5725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:23:34.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[5726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:23:36.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[5727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:24:16.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[5728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:24:24.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[5729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:25:43.657
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[5730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:29:31.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[5731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:31:35.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[5732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:31:36.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[5733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:32:41.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:33:11.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:35:44.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[5736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:35:55.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[5737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:36:48.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[5738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:37:57.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[5739]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T05:39:13.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[5740]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T05:39:15.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[5741]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T05:39:16.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[5742]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T05:39:15.979
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[5743]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T05:39:16.104
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[5744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[5745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[5746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[5747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[5748]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T05:39:16.369
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[5749]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T05:39:16.369
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[5750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[5751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[5752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[5753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[5754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[5755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[5756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[5757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[5758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[5759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[5760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[5761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[5762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[5763]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T05:39:16.431
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[5764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[5765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[5766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[5767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[5768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[5769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.462
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[5770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[5771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[5772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[5773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[5774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[5775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:16.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[5776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:17.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[5777]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T05:40:09.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[5778]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T05:40:09.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[5779]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T05:40:09.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[5780]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T05:39:17.055
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[5781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:17.055
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[5782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:17.414
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[5783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:17.492
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[5784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:17.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[5785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:39:19.723
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[5786]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T05:39:21.376
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[5787]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T05:39:23.451
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T10:39:23.451757600Z.

Event[5788]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T05:39:45.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T10:39:44.610798500Z.

Event[5789]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:39:50.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5790]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T05:39:57.215
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[5791]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:39:57.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5792]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:39:57.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5793]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:39:57.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5794]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:39:57.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5795]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:39:57.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5796]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:39:57.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5797]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:39:57.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5798]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T05:39:57.902
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:06.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[5800]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T05:40:06.388
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[5801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:06.435
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[5802]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:40:06.450
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5803]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:40:08.946
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5804]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:40:08.978
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5805]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:40:08.993
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:08.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[5807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[5808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[5809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[5810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.087
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[5811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[5813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[5814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.492
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[5815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.492
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[5816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.492
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[5817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[5818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[5819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[5820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[5821]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T05:40:09.524
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[5822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[5823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[5824]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T05:40:09.555
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[5825]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T05:40:09.555
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[5826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.555
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[5827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.555
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[5828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[5829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[5830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[5831]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T05:40:09.622
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[5832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.625
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[5833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[5834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[5835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[5836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[5837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:09.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[5838]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T05:40:09.957
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[5839]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T05:40:09.977
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:10.177
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[5841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:10.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[5842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:10.217
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[5843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:10.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[5844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:10.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[5845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:10.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[5846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:10.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[5847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:10.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[5848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:20.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[5849]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T05:40:21.304
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[5850]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T05:40:32.551
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[5851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:32.598
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[5852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:32.629
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[5853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:32.707
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[5854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:33.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[5855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:33.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[5856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:40:33.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[5857]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T05:41:30.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[5858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:30.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[5859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:30.228
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[5860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:30.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[5861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:30.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[5862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:30.945
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[5863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:31.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[5864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:31.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[5865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:31.491
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[5866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:33.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[5867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:33.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[5868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:37.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[5869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:38.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[5870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:38.493
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[5871]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T05:41:39.163
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[5872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:43.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[5873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:41:54.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[5874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:42:00.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[5875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:42:39.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[5876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:10.685
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[5877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:30.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[5878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:30.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[5879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:31.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[5880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:31.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[5881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:31.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[5882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:31.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[5883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:31.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[5884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:31.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[5885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:31.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[5886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:31.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[5887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:31.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[5888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:32.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[5889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:32.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[5890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:32.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[5891]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T05:43:32.962
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[5892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:32.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[5893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:33.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[5894]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T05:43:35.895
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[5895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:37.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[5896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:43:40.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[5897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:45:10.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[5898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:45:31.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[5899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:47:06.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[5900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:53:16.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[5901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:53:30.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[5902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:53:31.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[5903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:53:36.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[5904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:54:01.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[5905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:54:06.929
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[5906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:54:44.135
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[5907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:54:44.338
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[5908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:54:44.416
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[5909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:54:46.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[5910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:55:05.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[5911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:55:52.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[5912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:56:46.943
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[5913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:56:47.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[5914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:57:55.904
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[5915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:57:57.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[5916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:57:58.010
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[5917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:57:59.211
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\1679475c-389a-436d-8234-7dd843ca4768
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[5918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:58:03.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[5919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:59:48.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[5920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T05:59:56.133
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[5921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:00:06.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[5922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:00:06.460
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[5923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:00:32.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[5924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:00:47.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[5925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:00:56.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[5926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:02:48.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[5927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:02:56.715
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[5928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:05:55.676
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[5929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:05:55.865
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[5930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:05:55.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[5931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:06:06.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[5932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:07:51.084
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  getbus
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\getbus.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[5933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:10:02.717
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  AtiDCM
Service File Name:  C:\AMD\Support\13-9_win7_win8_64_dd_ccc_whql\Bin64\atdcm64a.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[5934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:11:18.719
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[5935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:11:18.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[5936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:11:30.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[5937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:11:30.934
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[5938]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T06:12:22.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[5939]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T06:12:25.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[5940]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T06:12:25.316
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[5941]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T06:12:26.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[5942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[5943]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T06:12:26.174
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[5944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[5945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[5946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[5947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[5948]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T06:12:26.455
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[5949]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T06:12:26.455
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[5950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[5951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[5952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[5953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[5954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[5955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[5956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[5957]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T06:12:26.486
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[5958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[5959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[5960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[5961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[5962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[5963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[5964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[5965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[5966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[5967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[5968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[5969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[5970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[5971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[5972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[5973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[5974]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T17:40:56.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[5975]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T17:40:56.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[5976]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T17:40:56.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 22 seconds.

Event[5977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[5978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[5979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[5980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:26.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[5981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:27.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[5982]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T06:12:27.188
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[5983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:27.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[5984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:27.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[5985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:27.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[5986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:29.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[5987]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T06:12:31.463
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[5988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T06:12:33.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[5989]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T06:12:33.428
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?06T11:12:33.428760300Z.

Event[5990]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T17:40:34.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?06T22:40:33.610798400Z.

Event[5991]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T17:40:39.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[5992]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-06T17:40:46.621
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[5993]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T17:40:49.600
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5994]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T17:40:49.600
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5995]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T17:40:49.600
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5996]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T17:40:49.600
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5997]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T17:40:49.600
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5998]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T17:40:49.600
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[5999]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T17:40:49.600
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6000]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-06T17:40:49.600
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:53.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[6002]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T17:40:53.157
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[6003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:53.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[6004]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T17:40:53.188
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6005]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T17:40:55.731
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6006]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T17:40:55.762
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6007]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T17:40:56.277
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[6009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[6010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.308
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[6011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[6012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[6013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[6015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[6016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[6017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[6018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[6019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[6020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[6021]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[6022]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[6023]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-06T17:40:56.808
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[6024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[6025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[6026]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T17:40:56.839
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[6027]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T17:40:56.839
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[6028]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[6029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[6030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[6031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[6032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[6033]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T17:40:56.908
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[6034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:56.911
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[6035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[6036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[6037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[6038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[6039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[6040]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-06T17:40:57.231
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[6041]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-06T17:40:57.241
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[6043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[6044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[6045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[6046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.701
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[6047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:57.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[6048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:58.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[6049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:58.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[6050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:58.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[6051]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-06T17:40:58.221
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[6052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:58.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[6053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:58.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[6054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:58.231
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[6055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:59.031
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[6056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:40:59.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[6057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:00.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[6058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:06.060
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[6059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:08.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[6060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:08.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:08.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[6062]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T17:41:13.548
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[6063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:13.657
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[6064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:14.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[6065]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T17:41:20.334
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[6066]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-06T17:41:26.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[6067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:26.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[6068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:26.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[6069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:27.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[6070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:27.445
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[6071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:27.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[6072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:41:27.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[6073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:42:17.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[6074]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:05.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[6075]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:06.225
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:06.225
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:06.615
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[6078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:06.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[6079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:06.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[6080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:07.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[6081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:07.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[6082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:07.426
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[6083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:07.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[6084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:07.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[6085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:07.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[6086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:08.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[6087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:08.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[6088]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T17:43:08.549
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[6089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:08.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[6090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:09.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:10.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[6092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:10.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[6093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:11.997
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:13.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[6095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:43:22.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[6096]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-06T17:43:27.613
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[6097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:46:16.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[6098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:47:07.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[6099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:48:10.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:50:20.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[6101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:53:48.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[6102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:53:58.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[6103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:54:15.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[6104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:54:17.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[6105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T17:54:48.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[6106]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2013-12-06T18:00:27.423
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name avg.clickhereformoreinfo.com timed out after none of the configured DNS servers responded.

Event[6107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:06:09.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[6108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:06:17.831
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PsExec
Service File Name:  %SystemRoot%\PSEXESVC.EXE
Service Type:  user mode service
Service Start Type:  demand start
Service Account:  LocalSystem

Event[6109]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:06:19.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PsExec service entered the running state.

Event[6110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:06:22.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PsExec service entered the stopped state.

Event[6111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:09:55.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:17:31.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the running state.

Event[6113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:17:34.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the running state.

Event[6114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:17:38.025
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the running state.

Event[6115]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6116]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6117]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6118]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6119]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6120]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6121]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6122]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6123]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6124]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6125]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6126]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6127]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6128]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6129]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6130]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6131]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6132]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6133]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6134]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6135]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6136]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6137]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6138]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6139]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6140]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6141]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6142]:
  Log Name: System
  Source: hcmon
  Date: 2013-12-06T18:17:41.965
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[6143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:17:41.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the running state.

Event[6144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:17:51.615
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the running state.

Event[6145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:17:55.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the running state.

Event[6146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:17:57.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the running state.

Event[6147]:
  Log Name: System
  Source: VMnetAdapter
  Date: 2013-12-06T18:18:06.755
  Event ID: 36
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Adapter Driver for VMware Virtual Networks.

Event[6148]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T18:18:08.165
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[6149]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T18:18:38.835
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0005 with the following status: 0.

Event[6150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:19:55.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:20:00.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:20:00.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:21:23.488
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[6154]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2013-12-06T18:23:08.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[6155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:23:07.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[6156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:23:23.493
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[6157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:29:08.374
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[6158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:34:12.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:35:57.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:38:02.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the stopped state.

Event[6161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:38:02.492
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the stopped state.

Event[6162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:38:05.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the stopped state.

Event[6163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:38:07.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the stopped state.

Event[6164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:38:08.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the stopped state.

Event[6165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:38:11.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the stopped state.

Event[6166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:38:13.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the stopped state.

Event[6167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:38:46.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[6168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:39:13.844
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:40:45.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the running state.

Event[6170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:40:54.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the stopped state.

Event[6171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:42:11.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[6172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:16.365
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:16.555
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:16.645
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[6175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:37.465
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[6176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:37.465
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:37.765
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[6178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:39.585
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\d565b53f-c907-4d1f-93b0-c5995199a182
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:41.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[6180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:52.919
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:52:53.289
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:53:13.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[6183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T18:55:13.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[6184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:01:06.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[6185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:01:21.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:02:02.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[6187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:06:22.456
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:09:30.530
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:12:20.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:16:43.852
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[6191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:20:00.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:20:00.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:41:41.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:41:48.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:41:53.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6196]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T19:42:53.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[6197]:
  Log Name: System
  Source: USER32
  Date: 2013-12-06T19:42:55.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[6198]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-06T19:42:55.919
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[6199]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-06T19:42:57.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[6200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.058
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[6201]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-06T19:42:57.136
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[6202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[6203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[6204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[6205]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-06T19:42:57.417
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[6206]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-06T19:42:57.417
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[6207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[6208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[6209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.448
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[6210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[6211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[6212]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-06T19:42:57.495
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[6213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[6214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[6215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[6216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[6217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[6218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[6219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[6220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[6221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[6222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[6223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[6224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.557
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[6225]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[6226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[6227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[6228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.729
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[6229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.760
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[6230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[6231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[6232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.916
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[6233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[6234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:57.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[6235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:58.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[6236]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-09T00:34:04.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[6237]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-09T00:34:04.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[6238]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-09T00:34:04.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 22 seconds.

Event[6239]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-06T19:42:58.368
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[6240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:58.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[6241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:58.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[6242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:58.914
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[6243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:58.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[6244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-06T19:42:59.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[6245]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-06T19:43:02.424
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[6246]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-06T19:43:03.750
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?07T00:43:03.750899100Z.

Event[6247]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-09T00:33:43.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?09T05:33:42.595198400Z.

Event[6248]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T00:33:48.616
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6249]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-09T00:33:55.371
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[6250]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T00:33:58.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6251]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T00:33:58.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6252]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T00:33:58.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6253]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T00:33:58.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6254]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T00:33:58.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6255]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T00:33:58.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6256]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T00:33:58.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6257]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T00:33:58.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:02.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[6259]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-09T00:34:02.126
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[6260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:02.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[6261]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T00:34:02.204
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6262]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T00:34:04.622
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6263]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T00:34:04.622
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6264]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T00:34:04.622
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:04.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[6266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:04.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[6267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:04.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[6268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:04.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[6269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:04.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[6270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:04.965
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[6272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.324
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[6273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[6274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[6275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[6276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[6277]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[6278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[6279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[6280]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-09T00:34:05.371
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[6281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[6282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[6283]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-09T00:34:05.402
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[6284]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-09T00:34:05.402
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[6285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[6286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[6287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[6288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[6289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[6290]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-09T00:34:05.472
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[6291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[6292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[6293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[6294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[6295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.852
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[6296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:05.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[6297]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-09T00:34:05.872
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[6298]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T00:34:05.892
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[6300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[6301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[6302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[6303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[6304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[6305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[6306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[6307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[6308]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-09T00:34:06.392
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[6309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[6310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[6311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:06.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[6312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:07.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[6313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:07.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[6314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:07.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[6315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:13.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[6316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:13.701
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:17.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[6318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:20.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[6319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:21.002
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[6320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:21.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[6321]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-09T00:34:25.027
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[6322]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-09T00:34:29.972
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[6323]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-09T00:34:40.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[6324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:40.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[6325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:40.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[6326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:41.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[6327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:41.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[6328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:41.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[6329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:34:41.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[6330]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-09T00:35:21.127
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[6331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:35:21.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[6332]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-09T00:35:21.532
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[6333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:35:23.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[6334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:35:28.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[6335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:35:31.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:35:48.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[6337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:35:51.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[6338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:13.838
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:14.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[6340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:14.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[6341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:14.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:14.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[6343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:14.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[6344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:14.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[6345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:14.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[6346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:14.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[6347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:14.893
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[6348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:15.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[6349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:15.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[6350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:15.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:15.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[6352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:16.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[6353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:18.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[6354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:36:38.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[6355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:37:16.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[6356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:38:09.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[6357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:38:10.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[6358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:38:23.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[6359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:38:51.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[6360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:39:23.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[6361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:41:16.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:42:43.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Management service entered the running state.

Event[6363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:44:12.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[6364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:44:16.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[6365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:44:56.357
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Citrix USB Monitor Driver
Service File Name:  system32\DRIVERS\ctxusbm.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[6366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:47:29.170
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:47:29.371
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:47:29.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[6369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:47:31.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[6370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:47:32.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[6371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:52:30.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:53:06.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:55:00.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[6374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:56:43.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[6375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:57:03.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:58:43.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T00:59:39.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:05:29.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:08:43.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:16:14.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[6381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:16:33.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:20:00.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:20:00.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:29:03.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:29:03.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:34:04.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:37:42.502
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:39:32.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T01:58:34.855
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:03:50.684
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:03:51.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:03:56.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:03:57.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:04:20.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[6395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:09:03.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:12:30.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:12:46.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:13:39.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[6399]:
  Log Name: System
  Source: Microsoft-Windows-DriverFrameworks-UserMode
  Date: 2013-12-09T02:13:45.089
  Event ID: 10114
  Task: Startup of the UMDF reflector
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The UMDF reflector was unable to complete startup because the WUDFPf service was not found.  This service may be started later during boot, at which point Windows will attempt to start the device again.

Event[6400]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-PnP
  Date: 2013-12-09T02:13:45.089
  Event ID: 219
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_LEXAR&PROD_USB_FLASH_DRIVE&REV_8.07#2012010713564134377C&0#.

Event[6401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:13:47.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.

Event[6402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:15:08.899
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:15:09.117
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:15:09.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[6405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:20:00.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:20:00.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:20:20.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[6408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:22:05.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:22:54.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:24:26.965
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:27:55.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:28:32.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[6413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:30:41.914
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:30:43.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[6415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:30:43.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[6416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:30:48.725
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[6417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:30:50.254
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\383c7f1f-1020-47d5-abf6-30bbfac36f27
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:31:17.233
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:31:19.464
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\dbdd07fa-aa26-4066-ad29-4c82e804a043
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:32:51.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[6421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:32:52.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[6422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:33:27.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:33:59.530
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[6424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:35:40.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[6425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:35:40.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Listener service entered the running state.

Event[6426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:35:41.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Grouping service entered the running state.

Event[6427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:35:59.551
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[6428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:36:11.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[6429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:36:31.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6430]:
  Log Name: System
  Source: USER32
  Date: 2013-12-09T02:36:59.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[6431]:
  Log Name: System
  Source: USER32
  Date: 2013-12-09T02:37:01.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[6432]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-09T02:37:01.569
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[6433]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-09T02:37:02.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[6434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.427
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[6435]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-09T02:37:02.474
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[6436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[6437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[6438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[6439]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-09T02:37:02.755
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[6440]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-09T02:37:02.755
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[6441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[6442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[6443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[6444]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-09T02:37:02.755
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[6445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[6446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[6447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[6448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[6449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[6450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[6451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[6452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.802
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[6453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.802
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[6454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[6455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[6456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[6457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Grouping service entered the stopped state.

Event[6458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.848
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[6459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.848
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[6460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[6461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[6462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[6463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[6464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[6465]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-09T17:52:10.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[6466]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-09T17:52:10.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[6467]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-09T17:52:10.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 25 seconds.

Event[6468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.911
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[6469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:02.911
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[6470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:03.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:03.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[6472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:03.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[6473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:03.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[6474]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-09T02:37:03.504
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[6475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:03.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[6476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:03.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[6477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:03.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[6478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:06.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[6479]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-09T02:37:07.747
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[6480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T02:37:08.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[6481]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-09T02:37:09.182
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?09T07:37:09.182488000Z.

Event[6482]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-09T17:51:45.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?09T22:51:44.595198400Z.

Event[6483]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T17:51:50.694
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6484]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-09T17:52:00.444
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[6485]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T17:52:01.022
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6486]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T17:52:01.022
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6487]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T17:52:01.022
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6488]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T17:52:01.022
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6489]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T17:52:01.022
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6490]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T17:52:01.022
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6491]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T17:52:01.022
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6492]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-09T17:52:01.022
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:07.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[6494]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-09T17:52:07.745
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[6495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:07.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[6496]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T17:52:07.808
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6497]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T17:52:10.241
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6498]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T17:52:10.241
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6499]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T17:52:10.241
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[6501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[6502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[6503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.319
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[6504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[6505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[6507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.740
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[6508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[6509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[6510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[6511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[6512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[6513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[6514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[6515]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-09T17:52:10.787
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[6516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.803
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[6517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[6518]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-09T17:52:10.818
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[6519]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-09T17:52:10.818
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[6520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[6521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[6522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[6523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.891
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[6524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[6525]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-09T17:52:10.931
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[6526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:10.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[6527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[6528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.181
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[6529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.231
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[6530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.251
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[6531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[6532]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-09T17:52:11.271
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[6533]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-09T17:52:11.291
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[6535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[6536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.491
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[6537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[6538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[6539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.551
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[6540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[6541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.651
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[6542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[6543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[6544]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-09T17:52:11.721
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[6545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.731
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[6546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.731
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[6547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:11.741
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[6548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:12.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[6549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:12.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[6550]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-09T17:52:19.411
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[6551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:19.723
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[6552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:19.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:23.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[6554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:23.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[6555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:24.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[6556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:24.169
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[6557]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-09T17:52:29.644
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[6558]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-09T17:52:36.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[6559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:35.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[6560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:36.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[6561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:36.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[6562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:36.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[6563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:36.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[6564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:52:36.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[6565]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-09T17:53:11.517
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[6566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:53:11.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[6567]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-09T17:53:11.813
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[6568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:53:17.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[6569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:53:18.460
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[6570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:53:22.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:53:36.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[6572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:19.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:19.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:20.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[6575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:20.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[6576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:20.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[6577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:20.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[6578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:20.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[6579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:20.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[6580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:20.684
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[6581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:20.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[6582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:21.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[6583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:21.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[6584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:21.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:22.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[6586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:22.731
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[6587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:24.739
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[6588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:54:33.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[6589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:57:13.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[6590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:57:15.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[6591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:57:27.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[6592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:57:38.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[6593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:58:27.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[6594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T17:59:22.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:02:35.104
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:03:22.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:05:26.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[6598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:05:26.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[6599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:05:41.324
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:13:19.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[6601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:20:00.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:20:00.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:29:24.263
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:44:24.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:45:54.263
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[6606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:49:20.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[6607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T18:57:52.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:00:25.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:12:38.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:16:55.767
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[6611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:17:41.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:20:00.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:20:00.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:29:54.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:02.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6616]:
  Log Name: System
  Source: USER32
  Date: 2013-12-09T19:30:22.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[6617]:
  Log Name: System
  Source: USER32
  Date: 2013-12-09T19:30:25.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[6618]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-09T19:30:26.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[6619]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-09T19:30:25.304
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[6620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[6621]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-09T19:30:26.583
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[6622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[6623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[6624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[6625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[6626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[6627]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-09T19:30:26.817
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[6628]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-09T19:30:26.817
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[6629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[6630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[6631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[6632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[6633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[6634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[6635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[6636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.848
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[6637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[6638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[6639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[6640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[6641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[6642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[6643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:26.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[6644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[6645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[6646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[6647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[6648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[6649]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-11T15:53:28.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[6650]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-11T15:53:28.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[6651]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-11T15:53:28.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 22 seconds.

Event[6652]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-09T19:30:27.347
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[6653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[6654]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-09T19:30:27.472
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[6655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[6656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[6657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[6658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:27.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[6659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-09T19:30:30.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[6660]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-09T19:30:31.809
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[6661]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-09T19:30:37.877
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?10T00:30:37.877641100Z.

Event[6662]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-11T15:53:06.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?11T20:53:05.595198400Z.

Event[6663]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-11T15:53:11.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6664]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-11T15:53:20.696
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[6665]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-11T15:53:21.288
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6666]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-11T15:53:21.288
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6667]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-11T15:53:21.288
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6668]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-11T15:53:21.288
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6669]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-11T15:53:21.288
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6670]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-11T15:53:21.288
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6671]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-11T15:53:21.288
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6672]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-11T15:53:21.288
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:25.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[6674]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-11T15:53:25.828
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[6675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:25.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[6676]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-11T15:53:25.890
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6677]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-11T15:53:28.324
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6678]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-11T15:53:28.402
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6679]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-11T15:53:28.402
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6680]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[6681]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[6682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[6683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[6684]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.527
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[6685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.542
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[6687]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[6688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[6689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[6690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[6691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[6692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[6693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[6694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[6695]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-11T15:53:28.792
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[6696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[6697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[6698]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-11T15:53:28.823
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[6699]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-11T15:53:28.823
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[6700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[6701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[6702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[6703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[6704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[6705]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-11T15:53:28.886
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[6706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:28.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[6707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.081
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[6708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[6709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[6710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[6711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.201
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[6712]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-11T15:53:29.211
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[6713]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-11T15:53:29.231
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[6715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[6716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[6717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.491
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[6718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[6719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[6720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.551
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[6721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[6722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[6723]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-11T15:53:29.691
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[6724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.701
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[6725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:29.701
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[6726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:30.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[6727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:30.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[6728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:35.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[6729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:37.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[6730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:37.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[6731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:37.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:39.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[6733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:39.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[6734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:42.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[6735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:53:44.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[6736]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-11T15:53:47.701
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[6737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:54:45.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[6738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:54:45.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[6739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:37.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:37.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[6741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:38.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[6742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:38.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[6743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:38.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[6744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:38.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[6745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:38.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[6746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:38.945
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[6747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:39.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[6748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:39.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[6749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:39.398
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[6750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:39.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[6751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:39.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[6752]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-11T15:55:40.100
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[6753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:40.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[6754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:40.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:42.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[6756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:42.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[6757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:42.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[6758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:48.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:51.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:52.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[6761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:55:55.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[6762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:56:35.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[6763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:56:53.217
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[6764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:57:06.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[6765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:57:17.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[6766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:57:28.613
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:57:29.955
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:07.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[6769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:31.575
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:31.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[6771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:32.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[6772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:33.790
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:33.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[6774]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T15:58:35.506
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.163.1607.0)

Event[6775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:35.522
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:41.247
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:42.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[6778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:42.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the stopped state.

Event[6779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:57.908
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:58:58.906
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6781]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T15:59:04.008
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)

Event[6782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:59:06.488
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:59:10.372
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:59:15.567
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:59:21.027
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:59:26.316
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T15:59:28.390
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6788]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T15:59:32.197
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6789]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T15:59:32.197
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2892074)
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6790]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T15:59:38.296
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2892074)
- Security Update for Windows 7 for x64-based Systems (KB2887069)
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6791]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T16:00:19.574
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.163.1607.0)

Event[6792]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T16:00:19.574
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2892074)
- Security Update for Windows 7 for x64-based Systems (KB2887069)
- Update for Windows 7 for x64-based Systems (KB2904266)
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6793]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T16:00:19.574
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2892074)
- Security Update for Windows 7 for x64-based Systems (KB2887069)
- Update for Windows 7 for x64-based Systems (KB2904266)
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Security Update for Windows 7 for x64-based Systems (KB2893294)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6794]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T16:00:19.574
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2892074)
- Security Update for Windows 7 for x64-based Systems (KB2887069)
- Update for Windows 7 for x64-based Systems (KB2904266)
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Security Update for Windows 7 for x64-based Systems (KB2893294)
- Update for Windows 7 for x64-based Systems (KB2913152)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6795]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T16:00:19.574
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2892074)
- Security Update for Windows 7 for x64-based Systems (KB2887069)
- Update for Windows 7 for x64-based Systems (KB2904266)
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Security Update for Windows 7 for x64-based Systems (KB2893294)
- Update for Windows 7 for x64-based Systems (KB2913152)
- Security Update for Windows 7 for x64-based Systems (KB2893984)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6796]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T16:00:19.574
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2892074)
- Security Update for Windows 7 for x64-based Systems (KB2887069)
- Update for Windows 7 for x64-based Systems (KB2904266)
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Security Update for Windows 7 for x64-based Systems (KB2893294)
- Update for Windows 7 for x64-based Systems (KB2913152)
- Security Update for Windows 7 for x64-based Systems (KB2893984)
- Update for Windows 7 for x64-based Systems (KB2891804)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:00:41.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:02:20.989
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[6799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:02:56.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[6800]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-11T16:03:37.445
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[6801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:03:40.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6802]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-11T16:03:46.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[6803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:03:46.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[6804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:03:46.605
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[6805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:03:46.605
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[6806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:05:20.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[6807]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-11T16:06:34.520
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[6808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:06:36.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[6809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:08:39.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[6810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:10:18.748
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:10:21.230
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:10:21.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[6813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:16:39.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[6814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:16:39.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[6815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:19:09.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[6816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:20:00.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:20:10.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:28:07.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[6819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:30:17.011
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:33:00.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6821]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:33:56.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:35:38.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[6823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:39:01.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:43:34.672
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:43:36.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[6826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:43:36.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[6827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:43:39.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[6828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:43:42.997
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\ca8f6910-d811-4474-b3ec-8ca9e304ab2c
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[6829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:44:05.437
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:44:52.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:45:05.860
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[6832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:45:08.025
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[6833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:45:43.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[6834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:45:43.317
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[6835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:46:44.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[6836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:51:43.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[6837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:57:12.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[6838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T16:59:08.855
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:14:10.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:18:01.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[6841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:18:01.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:18:05.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[6843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:18:16.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[6844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:19:05.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[6845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:20:00.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[6846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:20:00.787
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[6847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:24:10.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:29:58.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[6849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:29:59.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[6850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:29:59.678
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[6851]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T17:30:01.693
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?December ?11, ?2013 at 8:00 PM: 
- Security Update for Windows 7 for x64-based Systems (KB2892074)
- Windows Malicious Software Removal Tool x64 - December 2013 (KB890830)
- Security Update for Windows 7 for x64-based Systems (KB2887069)
- Update for Windows 7 for x64-based Systems (KB2904266)
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Security Update for Windows 7 for x64-based Systems (KB2893294)
- Update for Windows 7 for x64-based Systems (KB2913152)
- Security Update for Windows 7 for x64-based Systems (KB2893984)
- Update for Windows 7 for x64-based Systems (KB2891804)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:30:08.333
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:30:13.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:30:15.428
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6855]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T17:30:20.763
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2892074)

Event[6856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:30:23.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:31:31.890
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[6858]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T17:31:36.545
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Windows Malicious Software Removal Tool x64 - December 2013 (KB890830)

Event[6859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:35:48.297
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[6860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:35:53.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[6861]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T17:36:33.467
  Event ID: 21
  Task: Automatic Updates
  Level: Information
  Opcode: Reboot
  Keyword: Reboot
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Restart Required: To complete the installation of the following updates, the computer must be restarted. Until this computer has been restarted, Windows cannot search for or download new updates: 
- Security Update for Windows 7 for x64-based Systems (KB2892074)
- Windows Malicious Software Removal Tool x64 - December 2013 (KB890830)
- Security Update for Windows 7 for x64-based Systems (KB2887069)
- Update for Windows 7 for x64-based Systems (KB2904266)
- Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)
- Security Update for Windows 7 for x64-based Systems (KB2893294)
- Update for Windows 7 for x64-based Systems (KB2913152)
- Security Update for Windows 7 for x64-based Systems (KB2893984)
- Update for Windows 7 for x64-based Systems (KB2891804)
- Update for Windows 7 for x64-based Systems (KB2847077)

Event[6862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:38:48.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[6863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:45:01.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[6864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T17:50:18.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[6865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:08.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6866]:
  Log Name: System
  Source: USER32
  Date: 2013-12-11T18:08:25.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[6867]:
  Log Name: System
  Source: USER32
  Date: 2013-12-11T18:08:28.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[6868]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-11T18:08:28.584
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[6869]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-11T18:08:28.740
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[6870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:28.833
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[6871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:28.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[6872]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-11T18:08:29.067
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'true' 


Event[6873]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-11T18:08:32.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[6874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:32.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[6875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:32.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[6876]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-11T18:08:41.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[6877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[6878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[6879]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-11T18:08:41.407
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[6880]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-11T18:08:41.407
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[6881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[6882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[6883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[6884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[6885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[6886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[6887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[6888]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-12T01:25:15.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[6889]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-12T01:25:15.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[6890]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-12T01:25:16.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 44 seconds.

Event[6891]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-11T18:08:41.423
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[6892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[6893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[6894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[6895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[6896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[6897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[6898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[6899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[6900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[6901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[6902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[6903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[6904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[6905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[6906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.594
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[6907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[6908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:41.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[6909]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-11T18:08:42.078
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[6910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:42.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[6911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:42.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[6912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:42.437
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[6913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:43.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[6914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:43.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[6915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-11T18:08:45.104
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[6916]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-11T18:08:46.415
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[6917]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-11T18:08:52.889
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?11T23:08:52.889108800Z.

Event[6918]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-12T01:24:32.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?12T06:24:31.595198400Z.

Event[6919]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T01:24:37.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6920]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-12T01:24:45.853
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[6921]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T01:24:46.446
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6922]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T01:24:46.446
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6923]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T01:24:46.446
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6924]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T01:24:46.446
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6925]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T01:24:46.446
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6926]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T01:24:46.446
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6927]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T01:24:46.446
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6928]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T01:24:46.446
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[6929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:13.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[6930]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-12T01:25:13.372
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'true' 


Event[6931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:13.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[6932]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T01:25:13.434
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6933]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T01:25:15.868
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6934]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T01:25:15.868
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6935]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T01:25:15.868
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:15.883
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[6937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:15.899
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[6938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:15.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[6939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[6940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.055
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[6941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[6942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[6943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.554
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[6944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[6945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[6946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.585
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[6947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[6948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:16.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[6949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[6950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[6951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[6952]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-12T01:25:17.553
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[6953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[6954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[6955]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-12T01:25:17.583
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[6956]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-12T01:25:17.583
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[6957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[6958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[6959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[6960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.723
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[6961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[6962]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-12T01:25:17.763
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[6963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:17.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[6964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[6965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[6966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[6967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.223
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[6968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[6969]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-12T01:25:18.233
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[6970]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T01:25:18.253
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[6971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[6972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[6973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[6974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[6975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.663
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[6976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[6977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[6978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.833
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[6979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:18.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[6980]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-12T01:25:19.163
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[6981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:19.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[6982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:19.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[6983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:20.863
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[6984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:21.003
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[6985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:21.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[6986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:24.319
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[6987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:27.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[6988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:28.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[6989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:28.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[6990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:28.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[6991]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-12T01:25:28.173
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[6992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:28.297
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[6993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:30.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[6994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:32.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[6995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:33.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[6996]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-12T01:25:35.473
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[6997]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-12T01:25:36.019
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[6998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:36.753
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[6999]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-12T01:25:49.170
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[7000]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:25:55.223
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[7001]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-12T01:26:08.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[7002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:26:08.969
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[7003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:26:11.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[7004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:26:11.777
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[7005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:26:12.838
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[7006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:26:12.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[7007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:26:12.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[7008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:26:33.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[7009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:28.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:28.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:28.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[7012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:28.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[7013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:28.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[7014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:29.138
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[7015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:29.138
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[7016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:29.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[7017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:29.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[7018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:29.434
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[7019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:29.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[7020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:30.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[7021]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:30.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[7022]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-12T01:27:30.370
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[7023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:30.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[7024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:30.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[7025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:31.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[7026]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-12-12T01:27:32.367
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[7027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:34.317
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[7028]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-12-12T01:27:46.770
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[7029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:27:58.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[7030]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T01:28:22.306
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Update for Windows 7 for x64-based Systems (KB2847077)

Event[7031]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T01:28:22.306
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Update for Windows 7 for x64-based Systems (KB2891804)

Event[7032]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T01:28:22.306
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2893984)

Event[7033]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T01:28:22.306
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Update for Windows 7 for x64-based Systems (KB2913152)

Event[7034]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T01:28:22.306
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2893294)

Event[7035]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T01:28:22.306
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2898785)

Event[7036]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T01:28:22.306
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Update for Windows 7 for x64-based Systems (KB2904266)

Event[7037]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T01:28:22.306
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2887069)

Event[7038]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-12T01:28:24.896
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[7039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:28:35.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[7040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:29:07.398
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[7041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:29:12.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[7042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:29:18.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[7043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:29:20.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[7044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:30:35.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:30:52.701
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[7046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:38:51.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[7047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:38:52.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[7048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:39:18.033
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[7049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:39:20.953
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[7050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:39:21.049
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[7051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:49:28.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[7052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T01:51:01.291
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T02:00:33.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T02:07:29.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[7055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T02:16:21.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T02:20:01.375
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T02:20:01.375
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T02:38:39.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T02:48:46.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:12:54.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:20:00.398
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:20:00.398
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:22:54.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:34.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:43.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7066]:
  Log Name: System
  Source: USER32
  Date: 2013-12-12T03:41:45.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[7067]:
  Log Name: System
  Source: USER32
  Date: 2013-12-12T03:41:52.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[7068]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-12T03:41:52.900
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[7069]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T03:41:53.072
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[7070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.119
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[7071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[7072]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-12T03:41:53.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[7073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[7074]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[7075]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-12T03:41:53.306
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[7076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[7077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[7078]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-12T03:41:53.306
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[7079]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-12T03:41:53.306
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[7080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[7081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[7082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[7083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[7084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[7085]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-12T03:41:53.353
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?12T08:41:53.353000000Z from ?2013?-?12?-?12T08:41:53.353076500Z.

Event[7086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[7087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[7088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[7089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[7090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[7091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[7092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[7093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[7094]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-12T12:52:00.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[7095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[7096]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-12T12:52:00.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[7097]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-12T12:52:00.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[7098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[7099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[7100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[7101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[7102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[7103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.961
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[7104]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-12T03:41:53.992
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[7105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:53.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[7106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:54.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[7107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:54.367
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[7108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T03:41:56.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[7109]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-12T03:41:58.313
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[7110]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-12T03:42:04.834
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?12T08:42:04.834620000Z.

Event[7111]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-12T12:51:37.983
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?12T17:51:36.595198400Z.

Event[7112]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T12:51:42.726
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7113]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-12T12:51:52.054
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[7114]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T12:51:52.647
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7115]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T12:51:52.647
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7116]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T12:51:52.647
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7117]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T12:51:52.647
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7118]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T12:51:52.647
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7119]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T12:51:52.647
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7120]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T12:51:52.647
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7121]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-12T12:51:52.647
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:51:57.468
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[7123]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-12T12:51:57.468
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[7124]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:51:57.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[7125]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T12:51:57.530
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7126]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T12:51:59.995
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7127]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T12:51:59.995
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7128]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T12:51:59.995
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.010
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[7130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.026
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[7131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[7132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.135
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[7133]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[7134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[7136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[7137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[7138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[7139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[7140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[7141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[7142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[7143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[7144]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-12T12:52:00.588
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[7145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[7146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[7147]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-12T12:52:00.619
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[7148]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-12T12:52:00.619
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[7149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[7150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[7151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[7152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[7153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[7154]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-12T12:52:00.710
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[7155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[7156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[7157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:00.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[7158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:01.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[7159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:01.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[7160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:01.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[7161]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-12T12:52:01.055
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[7162]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-12T12:52:01.065
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:01.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[7164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:01.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[7165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:01.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[7166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:01.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[7167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:01.435
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[7168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:01.445
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[7169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:02.555
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[7170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:02.625
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[7171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:02.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[7172]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-12T12:52:02.735
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[7173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:02.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[7174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:03.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[7175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:03.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[7176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:03.405
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[7177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:03.665
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[7178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:04.635
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[7179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:08.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[7180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:08.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:13.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[7182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:14.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[7183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:15.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[7184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:15.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[7185]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-12T12:52:17.436
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[7186]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-12T12:52:31.507
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[7187]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-12T12:52:42.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[7188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:42.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[7189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:42.416
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[7190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:42.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[7191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:43.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[7192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:43.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[7193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:52:43.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[7194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:53:16.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[7195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:53:39.239
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[7196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:08.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:08.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:09.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[7199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:09.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[7200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:09.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[7201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:09.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[7202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:09.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[7203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:09.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[7204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:10.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[7205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:10.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[7206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:10.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[7207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:11.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[7208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:11.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[7209]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-12T12:54:11.154
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[7210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:11.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[7211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:11.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:12.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:12.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[7214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:13.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[7215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:16.135
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[7216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:54:41.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[7217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:55:09.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[7218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:57:03.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[7219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:57:06.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[7220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:57:20.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[7221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:57:30.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[7222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:58:20.563
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[7223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T12:59:12.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7224]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-12T13:00:59.087
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[7225]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:04:15.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:33.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[7227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:33.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[7228]:
  Log Name: System
  Source: USER32
  Date: 2013-12-12T13:05:45.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[7229]:
  Log Name: System
  Source: USER32
  Date: 2013-12-12T13:05:47.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[7230]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-12T13:05:47.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[7231]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-12T13:05:47.297
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[7232]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-12T13:05:47.422
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[7233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.484
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[7234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[7235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[7236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[7237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[7238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[7239]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-12T13:05:47.656
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[7240]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-12T13:05:47.656
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[7241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[7242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[7243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[7244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[7245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[7246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[7247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[7248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[7249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[7250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[7251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[7252]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T00:51:00.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[7253]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T00:51:00.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[7254]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T00:51:00.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 21 seconds.

Event[7255]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-12T13:05:47.734
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[7256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[7257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[7258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[7259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[7260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[7261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[7262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.765
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[7263]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.781
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[7264]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[7265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[7267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:47.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[7268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:48.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[7269]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-12T13:05:48.327
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[7270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:48.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[7271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:48.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[7272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:48.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[7273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-12T13:05:51.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[7274]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-12T13:05:52.663
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[7275]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-12T13:05:54.114
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?12T18:05:54.114612800Z.

Event[7276]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-13T00:50:39.874
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?13T05:50:38.610798500Z.

Event[7277]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T00:50:44.616
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7278]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-13T00:50:52.884
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[7279]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T00:50:53.462
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7280]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T00:50:53.462
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7281]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T00:50:53.462
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7282]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T00:50:53.462
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7283]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T00:50:53.462
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7284]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T00:50:53.462
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7285]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T00:50:53.462
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7286]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T00:50:53.462
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:50:57.767
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[7288]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T00:50:57.767
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[7289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:50:57.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[7290]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T00:50:57.830
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7291]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T00:51:00.279
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7292]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T00:51:00.279
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7293]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T00:51:00.279
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.294
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[7295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[7296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[7297]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.435
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[7298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[7299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.762
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[7301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.840
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[7302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.856
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[7303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.856
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[7304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[7305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[7306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[7307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[7308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[7309]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-13T00:51:00.887
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[7310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[7311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[7312]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-13T00:51:00.903
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[7313]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-13T00:51:00.918
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[7314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[7315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[7316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.934
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[7317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.934
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[7318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[7319]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-13T00:51:00.981
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[7320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:00.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[7321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:01.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[7322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:01.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[7323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:01.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[7324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:01.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[7325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:01.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[7326]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-13T00:51:01.316
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[7327]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T00:51:01.336
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:01.576
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[7329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:01.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[7330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:01.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[7331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:02.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[7332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:02.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[7333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:02.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[7334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:02.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[7335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:03.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[7336]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-13T00:51:03.816
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[7337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:03.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[7338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:03.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[7339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:04.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[7340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:04.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[7341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:04.566
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[7342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:04.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[7343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:04.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[7344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:11.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[7345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:11.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:13.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[7347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:15.719
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[7348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:16.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[7349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:16.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[7350]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T00:51:18.855
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[7351]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-13T00:51:24.455
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[7352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:34.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[7353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:34.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[7354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:34.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[7355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:34.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[7356]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-13T00:51:35.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[7357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:35.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[7358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:51:35.521
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[7359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:52:17.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[7360]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-13T00:52:19.069
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[7361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:52:19.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[7362]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-13T00:52:19.911
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[7363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:52:26.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[7364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:52:33.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:52:46.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[7366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:11.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:11.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[7368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:11.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[7369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:11.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:11.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[7371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:11.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[7372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:11.860
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[7373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:11.965
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[7374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:11.965
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[7375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:12.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[7376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:12.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[7377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:12.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[7378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:12.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:14.064
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[7380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:14.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[7381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:18.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[7382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:53:33.914
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[7383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:54:09.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[7384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:56:26.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[7385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:58:00.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[7386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:58:11.228
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[7387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:58:13.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:59:00.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[7389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T00:59:43.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[7390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:02:24.089
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ampa
Service File Name:  C:\Windows\system32\ampa.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[7391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:04:26.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[7392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:04:26.860
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[7393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:11:13.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:15:53.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:15:56.117
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:17:22.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[7397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:17:30.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7398]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-13T01:17:42.324
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.163.1876.0)

Event[7399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:20:00.460
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:20:00.460
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:27:41.919
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[7402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:27:42.149
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[7403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:27:42.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[7404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:33:11.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[7405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:34:00.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:40:41.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[7407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:43:40.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:53:11.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:53:33.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:53:40.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T01:55:06.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:05:06.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:20:00.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:20:00.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:20:15.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[7416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:20:16.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:20:16.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:22:15.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[7419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:22:37.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[7420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:24:37.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[7421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:25:02.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[7422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:25:13.089
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[7423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:25:16.259
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[7424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:25:19.039
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[7425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:30:04.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:30:16.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:31:26.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:35:29.740
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:36:26.914
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:45:46.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[7431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:47:20.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:53:38.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T02:58:39.543
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:09:29.378
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:20:00.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:20:00.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:39:22.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:42:56.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7439]:
  Log Name: System
  Source: USER32
  Date: 2013-12-13T03:42:57.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[7440]:
  Log Name: System
  Source: USER32
  Date: 2013-12-13T03:43:05.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[7441]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-13T03:43:05.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[7442]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-13T03:43:05.542
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[7443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:05.760
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[7444]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:05.760
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[7445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[7446]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-13T03:43:06.431
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[7447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.462
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[7448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[7449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[7450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[7451]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-13T03:43:06.712
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[7452]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-13T03:43:06.712
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[7453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[7454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[7455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[7456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[7457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[7458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[7459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[7460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[7461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[7462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[7463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[7464]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T03:43:06.774
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[7465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[7466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[7467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[7468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[7469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[7470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[7471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[7472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[7473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:06.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[7474]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T03:43:07.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[7475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:07.039
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[7476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:07.133
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[7477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:07.242
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[7478]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T19:05:46.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[7479]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-13T03:43:07.382
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[7480]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T19:05:46.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[7481]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T19:05:46.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[7482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:07.382
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[7483]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:07.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[7484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:07.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[7485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T03:43:09.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[7486]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-13T03:43:11.719
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[7487]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-13T03:43:17.772
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?13T08:43:17.772617500Z.

Event[7488]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-13T19:05:21.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?14T00:05:20.595198400Z.

Event[7489]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T19:05:27.443
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7490]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-13T19:05:35.696
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[7491]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T19:05:36.366
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7492]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T19:05:36.366
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7493]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T19:05:36.366
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7494]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T19:05:36.366
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7495]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T19:05:36.366
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7496]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T19:05:36.366
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7497]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T19:05:36.366
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7498]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T19:05:36.366
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:44.010
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[7500]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T19:05:44.010
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[7501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:44.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[7502]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T19:05:44.120
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7503]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T19:05:46.725
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7504]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T19:05:46.725
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7505]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T19:05:46.725
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:46.740
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[7507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:46.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[7508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:46.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[7509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:46.803
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[7510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:46.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[7511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:46.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[7513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[7514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[7515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[7516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[7517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[7518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[7519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[7520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[7521]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-13T19:05:47.271
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[7522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[7523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[7524]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-13T19:05:47.302
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[7525]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-13T19:05:47.302
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[7526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[7527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[7528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[7529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[7530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[7531]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-13T19:05:47.364
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[7532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[7533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[7534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[7535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[7536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[7537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[7538]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-13T19:05:47.730
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[7539]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T19:05:47.740
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.960
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[7541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.960
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[7542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:47.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[7543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:48.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[7544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:48.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[7545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:48.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[7546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:48.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[7547]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-13T19:05:48.450
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[7548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:48.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[7549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:49.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[7550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:49.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[7551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:49.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[7552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:49.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[7553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:50.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[7554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:50.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[7555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:55.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[7556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:56.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:59.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[7558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:05:59.358
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[7559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:06:00.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[7560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:06:01.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[7561]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T19:06:04.288
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[7562]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-13T19:06:06.550
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[7563]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-13T19:06:19.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[7564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:06:18.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[7565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:06:19.259
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[7566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:06:19.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[7567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:06:19.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[7568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:06:19.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[7569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:06:19.883
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[7570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:06:35.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:08.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[7572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:17.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[7573]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-13T19:07:24.565
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[7574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:24.565
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[7575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:26.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[7576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:56.077
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:56.077
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:56.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[7579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:56.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[7580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:56.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[7581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:57.435
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[7582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:57.435
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[7583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:57.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[7584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:57.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[7585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:57.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[7586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:07:59.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[7587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:01.225
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[7588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:01.225
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[7589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:07.044
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[7590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:07.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[7591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:07.902
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[7592]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-13T19:08:11.334
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[7593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:11.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[7594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:15.234
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Citrix USB Monitor Driver
Service File Name:  system32\DRIVERS\ctxusbm.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[7595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:15.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[7596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:40.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[7597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:08:48.026
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:09:08.457
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[7599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:10:49.149
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[7600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:10:53.891
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[7601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:12:05.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:15:51.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[7603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:16:01.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[7604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:16:51.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[7605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:17:04.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:18:20.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[7607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:18:21.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:19:09.098
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[7609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:19:09.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[7610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:19:22.358
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[7611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:19:22.592
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[7612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:19:22.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[7613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:20:00.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:20:00.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:22:24.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Check Point Mobile service entered the running state.

Event[7616]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T19:22:37.932
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[7617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:23:10.830
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the running state.

Event[7618]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:23:16.416
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[7619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:25:16.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[7620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:30:35.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Check Point Mobile service entered the stopped state.

Event[7621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:31:26.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[7622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:32:33.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the stopped state.

Event[7623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:40:55.144
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:46:55.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:47:57.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[7626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T19:48:41.248
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:01:07.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:02:05.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[7629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:04:05.294
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[7630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:11:28.965
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:17:52.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:20:00.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:20:00.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:25:29.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:27:58.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[7636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:32:07.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:32:08.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:32:21.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:37:08.652
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:39:48.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:43:10.760
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:54:34.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T20:58:44.777
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:04:29.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:04:54.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[7646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:06:54.554
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[7647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:14:44.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[7648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:15:14.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[7649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:18:56.055
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Tablet PC Input Service service entered the running state.

Event[7650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:18:57.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:20:00.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:20:00.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:20:11.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:25:14.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:25:18.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:36.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7657]:
  Log Name: System
  Source: USER32
  Date: 2013-12-13T21:29:45.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[7658]:
  Log Name: System
  Source: USER32
  Date: 2013-12-13T21:29:47.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[7659]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-13T21:29:47.899
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[7660]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T21:29:49.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[7661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.022
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[7662]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-13T21:29:49.084
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[7663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[7664]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[7665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[7666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[7667]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T21:29:49.271
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[7668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[7669]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-13T21:29:49.271
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[7670]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-13T21:29:49.271
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[7671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[7672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[7673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[7674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[7675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[7676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[7677]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[7678]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[7679]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[7680]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[7681]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[7682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[7683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[7684]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.303
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[7685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[7686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[7687]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T21:30:47.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[7688]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T21:30:47.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[7689]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T21:30:47.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 27 seconds.

Event[7690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[7691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[7692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[7693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[7695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[7696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[7697]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-13T21:29:49.927
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[7698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:49.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[7699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:50.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[7700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:50.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[7701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:29:52.719
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[7702]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-13T21:29:54.263
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[7703]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-13T21:30:00.410
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?14T02:30:00.410324900Z.

Event[7704]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-13T21:30:20.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?14T02:30:19.595198400Z.

Event[7705]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T21:30:25.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7706]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-13T21:30:32.371
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[7707]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T21:30:33.307
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7708]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T21:30:33.307
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7709]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T21:30:33.307
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7710]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T21:30:33.307
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7711]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T21:30:33.307
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7712]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T21:30:33.307
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7713]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T21:30:33.307
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7714]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-13T21:30:33.307
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:42.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[7716]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T21:30:42.574
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[7717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:42.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[7718]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T21:30:42.761
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7719]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T21:30:45.226
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7720]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T21:30:45.257
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7721]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T21:30:45.272
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:45.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[7723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:46.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[7724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:47.160
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[7725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:47.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[7726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:47.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[7727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:47.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[7729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[7730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[7731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.502
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[7732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[7733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[7734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[7735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[7736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[7737]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-13T21:30:48.626
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[7738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[7739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[7740]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-13T21:30:48.736
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[7741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[7742]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-13T21:30:48.751
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[7743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[7744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[7745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:48.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[7746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[7747]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-13T21:30:49.083
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[7748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[7749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.343
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[7750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[7751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[7752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[7753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.543
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[7754]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-13T21:30:49.543
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[7755]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-13T21:30:49.573
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[7757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.863
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[7758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:49.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[7759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:50.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[7760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:50.613
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[7761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:50.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[7762]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-13T21:30:50.803
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[7763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:50.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[7764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:50.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[7765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:50.943
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[7766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:51.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[7767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:51.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[7768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:51.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[7769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:53.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[7770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:53.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[7771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:58.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[7772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:30:58.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:02.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[7774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:04.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[7775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:04.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[7776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:04.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[7777]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T21:31:07.712
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[7778]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-13T21:31:09.927
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[7779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:21.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[7780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:21.427
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[7781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:21.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[7782]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-13T21:31:22.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[7783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:22.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[7784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:22.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[7785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:22.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[7786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:31:22.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[7787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:32:19.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[7788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:32:57.554
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[7789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:32:59.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:32:59.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:32:59.723
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[7792]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:00.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[7793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:00.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[7794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:00.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[7795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:00.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[7796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:00.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[7797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:00.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[7798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:00.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[7799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:00.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[7800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:03.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[7801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:05.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[7802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:05.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[7803]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-13T21:33:05.475
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[7804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:05.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[7805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:06.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:09.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[7807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:09.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[7808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:10.779
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[7809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:16.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[7810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:18.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[7811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:21.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[7812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:33:57.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[7813]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-13T21:34:36.344
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[7814]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-13T21:34:38.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[7815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:34:38.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[7816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:34:38.434
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[7817]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-13T21:34:51.710
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[7818]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-13T21:34:59.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[7819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:34:59.757
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[7820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:35:57.135
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[7821]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-13T21:36:10.926
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[7822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:38:09.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:39:51.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:39:53.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[7825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:40:54.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[7826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:42:21.468
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the running state.

Event[7827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:42:45.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the stopped state.

Event[7828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:43:16.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the running state.

Event[7829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:43:45.058
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[7830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:44:53.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[7831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:47:53.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[7832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:47:53.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[7833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:50:28.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[7834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:53:52.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the stopped state.

Event[7835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:54:00.279
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[7836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:54:01.434
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[7837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:54:01.855
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[7838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:54:14.491
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.

Event[7839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:54:14.491
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[7840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:54:14.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the running state.

Event[7841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:55:05.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the stopped state.

Event[7842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T21:59:14.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[7843]:
  Log Name: System
  Source: USER32
  Date: 2013-12-13T22:02:06.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[7844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:06.752
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7845]:
  Log Name: System
  Source: USER32
  Date: 2013-12-13T22:02:08.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[7846]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-13T22:02:09.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[7847]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-13T22:02:08.809
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[7848]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-13T22:02:08.996
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[7849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.027
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[7850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.089
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[7851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[7852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[7853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[7854]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-13T22:02:09.230
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[7855]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-13T22:02:09.230
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[7856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[7857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[7858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[7859]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-13T22:02:09.230
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[7860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[7861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[7862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[7863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[7864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[7865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[7866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[7867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[7868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[7869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[7870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[7871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[7872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[7873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[7874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[7875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[7876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[7877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[7878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[7879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[7880]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-13T22:02:09.901
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[7881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:09.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[7882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:10.228
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[7883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:10.259
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[7884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:10.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[7885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-13T22:02:12.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[7886]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-14T06:54:31.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[7887]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-14T06:54:31.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[7888]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-14T06:54:31.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 28 seconds.

Event[7889]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-13T22:02:14.237
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[7890]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-13T22:02:15.891
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?14T03:02:15.891474400Z.

Event[7891]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-14T06:54:04.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?14T11:54:03.595198400Z.

Event[7892]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-14T06:54:09.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7893]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-14T06:54:17.682
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[7894]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-14T06:54:18.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7895]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-14T06:54:18.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7896]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-14T06:54:18.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7897]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-14T06:54:18.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7898]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-14T06:54:18.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7899]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-14T06:54:18.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7900]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-14T06:54:18.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7901]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-14T06:54:18.306
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[7902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:29.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[7903]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-14T06:54:29.148
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[7904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:29.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[7905]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-14T06:54:29.226
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7906]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-14T06:54:31.644
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7907]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-14T06:54:31.644
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7908]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-14T06:54:31.644
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:31.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[7910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:31.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[7911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:31.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[7912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:31.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[7913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:31.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[7914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:31.768
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[7915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[7916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[7917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[7918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[7919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[7920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[7921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[7922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[7923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[7924]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-14T06:54:32.174
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[7925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[7926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[7927]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-14T06:54:32.205
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[7928]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-14T06:54:32.205
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[7929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[7930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[7931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[7932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[7933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[7934]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-14T06:54:32.277
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[7935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[7936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[7937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[7938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.576
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[7939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.596
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[7940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[7941]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-14T06:54:32.616
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[7942]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-14T06:54:32.636
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[7943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[7944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[7945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[7946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[7947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[7948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[7949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.916
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[7950]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-14T06:54:32.916
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[7951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.916
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[7952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:32.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[7953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:33.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[7954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:33.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[7955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:33.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[7956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:33.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[7957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:35.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[7958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:37.373
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[7959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:37.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[7960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:40.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[7961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:41.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[7962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:41.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[7963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:41.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[7964]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-14T06:54:43.660
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[7965]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-14T06:54:47.092
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[7966]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-14T06:54:57.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[7967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:56.613
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[7968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:56.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[7969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:57.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[7970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:57.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[7971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:57.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[7972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:54:58.095
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[7973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:55:14.537
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[7974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:55:25.040
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Check Point Mobile service entered the running state.

Event[7975]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-14T06:55:34.649
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[7976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:55:34.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[7977]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-14T06:55:48.596
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[7978]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-14T06:55:50.972
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[7979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:55:55.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[7980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:55:56.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the running state.

Event[7981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:02.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[7982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:37.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[7983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:37.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[7984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:37.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[7985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:38.200
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[7986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:38.200
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[7987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:38.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[7988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:38.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[7989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:38.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[7990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:38.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[7991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:38.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[7992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:38.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[7993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:39.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[7994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:39.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[7995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:39.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[7996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:41.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[7997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:42.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[7998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:44.389
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[7999]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:47.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[8000]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:48.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:50.566
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[8002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:56:55.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[8003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:57:46.697
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:58:02.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[8005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T06:59:49.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[8006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:01:40.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[8007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:01:43.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[8008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:02:23.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[8009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:02:53.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[8010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:03:23.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[8011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:07:45.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[8012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:07:48.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[8013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:07:49.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[8014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:07:52.445
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[8015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:07:52.767
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[8016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:07:52.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:12:43.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:18:37.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:20:00.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:20:00.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8021]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:27:29.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8022]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:36:38.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[8023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T07:41:37.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T08:20:00.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T08:20:00.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:14:32.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[8027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:14:36.367
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8028]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:20:00.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:20:00.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:44:36.374
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[8031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:45:33.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:45:39.382
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[8033]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:54:36.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:55:33.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:55:37.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[8036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:55:38.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[8037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:57:19.246
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:58:47.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[8039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T09:59:02.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:01:47.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[8041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:01:58.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[8042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:15:32.138
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:18:24.131
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[8044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:18:24.374
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[8045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:18:24.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:20:00.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:20:00.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:40:59.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T10:50:59.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T11:20:00.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T11:20:00.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T11:39:36.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[8053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T11:45:57.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T11:47:09.899
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T11:47:48.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T11:57:13.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8057]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-14T12:00:15.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 18371 seconds.

Event[8058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T12:05:48.762
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T12:20:00.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T12:20:00.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T12:36:54.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[8062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T12:45:19.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[8063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T12:52:09.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[8064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T12:54:51.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T13:04:29.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8066]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T13:20:00.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T13:20:00.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T13:20:59.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T13:46:55.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T14:03:25.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T14:09:50.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T14:17:51.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[8073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T14:17:57.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8074]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T14:20:00.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8075]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T14:20:00.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T14:29:54.429
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T14:38:20.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T15:20:00.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T15:20:00.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T15:33:21.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T15:40:24.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T15:49:51.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T15:50:24.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T15:57:20.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:02:32.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the stopped state.

Event[8086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:03:28.018
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[8087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:04:24.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Check Point Mobile service entered the stopped state.

Event[8088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:04:43.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[8089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:05:55.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:10:59.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[8091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:14:53.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[8092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:16:06.302
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[8093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:16:06.492
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[8094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:16:06.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:20:00.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:20:00.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T16:21:20.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:20:00.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:20:00.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:22:54.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8101]:
  Log Name: System
  Source: USER32
  Date: 2013-12-14T17:24:36.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[8102]:
  Log Name: System
  Source: USER32
  Date: 2013-12-14T17:24:41.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[8103]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-14T17:24:41.657
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[8104]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-14T17:24:42.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[8105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8106]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-14T17:24:42.609
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[8107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[8108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[8109]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[8110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[8111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[8112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[8113]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-14T17:24:42.811
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[8114]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-14T17:24:42.811
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[8115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[8116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.843
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[8117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[8118]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[8119]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-14T17:24:42.889
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[8120]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-15T06:57:41.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[8121]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-15T06:57:41.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[8122]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-15T06:57:41.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[8123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[8124]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[8125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[8126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[8127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[8128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:42.921
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[8129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[8130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[8131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[8133]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[8134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.077
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[8135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.108
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[8136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[8137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.373
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[8138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.404
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[8139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.404
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[8140]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-14T17:24:43.529
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[8141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.529
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[8142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:43.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[8143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:44.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[8144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-14T17:24:45.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[8145]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-14T17:24:47.819
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[8146]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-14T17:24:54.012
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?14T22:24:54.012705800Z.

Event[8147]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-15T06:57:15.874
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?15T11:57:14.610798500Z.

Event[8148]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T06:57:20.632
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8149]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-15T06:57:27.964
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[8150]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T06:57:28.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8151]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T06:57:28.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8152]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T06:57:28.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8153]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T06:57:28.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8154]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T06:57:28.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8155]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T06:57:28.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8156]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T06:57:28.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8157]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T06:57:28.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:38.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[8159]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-15T06:57:38.447
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[8160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:38.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[8161]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T06:57:38.525
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8162]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T06:57:41.193
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8163]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T06:57:41.349
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8164]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T06:57:41.349
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:41.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[8166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:41.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[8167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:41.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[8168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:41.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[8169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:41.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[8170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:41.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[8171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[8172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.534
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[8173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[8174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[8175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[8176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[8177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[8178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[8179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[8180]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-15T06:57:42.675
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[8181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[8182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[8183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[8184]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-15T06:57:42.846
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[8185]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-15T06:57:42.846
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[8186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[8187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:42.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[8189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.198
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[8190]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-15T06:57:43.198
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[8191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.198
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[8192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[8193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[8194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[8195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[8196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.548
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[8197]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-15T06:57:43.558
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[8198]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T06:57:43.568
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[8200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.768
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[8201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:43.798
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[8202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:44.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[8203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:44.888
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[8204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:44.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[8205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:45.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[8206]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-15T06:57:45.968
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[8207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:45.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[8208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:46.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[8209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:47.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[8210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:47.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[8211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:47.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[8212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:47.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[8213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:47.518
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[8214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:52.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[8215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:52.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:55.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[8217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:55.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[8218]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-15T06:57:55.875
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[8219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:56.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[8220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:57:56.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[8221]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-15T06:57:58.948
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[8222]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-15T06:58:07.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[8223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:06.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[8224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:07.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[8225]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:07.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[8226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:07.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[8227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:07.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[8228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:09.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[8229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:10.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[8230]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-15T06:58:14.031
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[8231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:14.031
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[8232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:21.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[8233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:46.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Check Point Mobile service entered the running state.

Event[8234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:58:50.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8235]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-15T06:58:51.417
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[8236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:05.317
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[8237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:14.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the running state.

Event[8238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:19.510
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Citrix USB Monitor Driver
Service File Name:  system32\DRIVERS\ctxusbm.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[8239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:52.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:52.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:52.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[8242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:52.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[8243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:52.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[8244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:53.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[8245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:53.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[8246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:53.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[8247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:53.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[8248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:53.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[8249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:53.646
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[8250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:53.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[8251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:53.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[8252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:54.220
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[8253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:55.966
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[8254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:56.557
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[8255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:57.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[8256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T06:59:59.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[8257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:00:04.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[8258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:02:58.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[8259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:04:55.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[8260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:05:46.518
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[8261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:06:03.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[8262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:06:13.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[8263]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:07:03.702
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[8264]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:09:24.775
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[8265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:10:58.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[8266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:10:58.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[8267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:20:00.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:20:00.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:21:52.303
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:22:01.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:39:52.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[8272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:39:53.453
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[8273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:46:52.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:46:54.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[8275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:46:55.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[8276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:49:58.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[8277]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:52:58.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[8278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T07:55:20.665
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[8279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T08:03:22.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T08:20:00.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T08:20:00.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T08:22:42.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[8283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T08:33:15.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8284]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T08:53:15.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[8285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T08:58:02.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T09:05:38.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T09:15:38.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T09:20:00.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T09:20:00.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T09:48:02.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[8291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T09:57:51.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T10:00:17.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T10:16:47.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T10:20:00.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T10:20:00.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T10:32:19.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8297]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T10:48:49.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T10:50:52.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T11:07:22.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T11:14:15.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T11:20:00.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T11:20:00.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T11:30:45.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T11:31:54.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8305]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-15T12:00:26.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 18191 seconds.

Event[8306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:03:42.510
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:11:01.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:13:54.587
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[8309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:13:54.860
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[8310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:13:54.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:14:43.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[8312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:20:00.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:20:00.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:26:01.220
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T12:46:54.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T13:20:00.331
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T13:20:00.331
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T13:22:08.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T13:40:08.582
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T13:40:58.730
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:06:28.730
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:20:00.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:20:00.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:24:23.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:40:39.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[8326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:40:39.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Listener service entered the running state.

Event[8327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:40:40.615
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[8328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:40:40.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[8329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:40:41.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Grouping service entered the running state.

Event[8330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:40:51.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[8331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:40:58.791
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[8332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:41:09.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[8333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:43:11.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[8334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:43:17.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:45:11.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[8336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T14:53:27.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T15:01:53.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T15:19:42.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T15:20:00.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T15:20:00.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T15:36:12.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T15:42:24.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:00:24.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:01:19.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Check Point Mobile service entered the stopped state.

Event[8345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:02:46.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[8346]:
  Log Name: System
  Source: USER32
  Date: 2013-12-15T16:03:00.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[8347]:
  Log Name: System
  Source: USER32
  Date: 2013-12-15T16:03:02.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[8348]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-15T16:03:03.005
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[8349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:03.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8350]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-15T16:03:03.972
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[8351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[8352]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-15T16:03:04.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[8353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.144
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[8354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[8355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[8356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[8357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[8358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Grouping service entered the stopped state.

Event[8359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[8360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[8361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[8362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[8363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[8364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[8365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[8366]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-15T16:03:04.705
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[8367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.705
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[8368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[8369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[8370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[8371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.768
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[8372]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-15T16:03:04.799
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[8373]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-15T16:03:04.799
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[8374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.799
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[8375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[8376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.830
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[8377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[8378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[8379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[8381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[8382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:04.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[8383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:05.002
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[8384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:05.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[8385]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-15T23:48:30.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[8386]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-15T23:48:30.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[8387]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-15T23:48:30.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[8388]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-15T16:03:05.376
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[8389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:05.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[8390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:05.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[8391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:05.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the stopped state.

Event[8392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:05.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[8393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:05.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[8394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:07.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[8395]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-15T16:03:09.557
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[8396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T16:03:10.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[8397]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-15T16:03:11.148
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?15T21:03:11.148479500Z.

Event[8398]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-15T23:48:04.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?16T04:48:03.595198400Z.

Event[8399]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T23:48:09.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8400]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-15T23:48:17.026
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[8401]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T23:48:17.728
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8402]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T23:48:17.728
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8403]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T23:48:17.728
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8404]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T23:48:17.728
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8405]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T23:48:17.728
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8406]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T23:48:17.728
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8407]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T23:48:17.728
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8408]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-15T23:48:17.728
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:27.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[8410]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-15T23:48:27.915
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[8411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:27.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[8412]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T23:48:27.978
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8413]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T23:48:30.427
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8414]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T23:48:30.458
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8415]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T23:48:30.458
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:30.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[8417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:30.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[8418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:30.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[8419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:30.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[8420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:30.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[8421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:30.598
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[8422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[8423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[8424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.144
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[8425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.160
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[8426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.160
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[8427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.160
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[8428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[8429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[8430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[8431]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-15T23:48:31.176
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[8432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[8433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[8434]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-15T23:48:31.207
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[8435]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-15T23:48:31.207
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[8436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[8437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[8438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[8440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[8441]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-15T23:48:31.327
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[8442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[8443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[8444]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[8445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.597
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[8446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.677
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[8447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[8448]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-15T23:48:31.827
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[8449]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-15T23:48:31.837
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[8451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:31.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[8452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:32.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[8453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:32.107
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[8454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:32.767
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[8455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:32.777
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[8456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:32.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[8457]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-15T23:48:32.797
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[8458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:32.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[8459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:32.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[8460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:33.487
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[8461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:33.767
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[8462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:34.057
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[8463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:35.107
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[8464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:37.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[8465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:38.590
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[8466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:38.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:42.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[8468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:42.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[8469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:43.863
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[8470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:48:43.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[8471]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-15T23:48:46.031
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[8472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:38.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:38.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8474]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:39.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[8475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:39.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[8476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:39.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[8477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:39.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[8478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:39.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[8479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:39.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[8480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:40.317
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[8481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:40.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[8482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:40.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[8483]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:40.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[8484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:41.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[8485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:41.425
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[8486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:41.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[8487]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:41.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[8488]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-15T23:50:41.877
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[8489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:41.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[8490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:42.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[8491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:43.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[8492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:47.275
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[8493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:48.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[8494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:48.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[8495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:53.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[8496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:50:54.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[8497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:53:36.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[8498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:53:41.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[8499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:53:41.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the stopped state.

Event[8500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:53:59.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[8501]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-15T23:54:08.188
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[8502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:54:15.863
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[8503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:54:19.705
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[8504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:54:19.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[8505]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-15T23:54:21.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[8506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:54:21.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[8507]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-15T23:54:23.293
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[8508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:54:29.681
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[8509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:54:45.426
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[8510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:55:46.055
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[8511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:59:10.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[8512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-15T23:59:59.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[8513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:00:09.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[8514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:00:59.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[8515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:07:10.964
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[8516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:07:11.416
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[8517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:17:08.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:20:00.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:20:00.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:21:43.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:30:40.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[8522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T00:31:43.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:20:00.349
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:20:00.349
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:23:59.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:24:11.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:24:37.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:28:55.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[8529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:29:07.723
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[8530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:29:09.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[8531]:
  Log Name: System
  Source: USER32
  Date: 2013-12-16T01:32:19.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[8532]:
  Log Name: System
  Source: USER32
  Date: 2013-12-16T01:32:22.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[8533]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-16T01:32:23.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[8534]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-16T01:32:22.681
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[8535]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-16T01:32:22.946
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[8536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[8537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.040
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[8538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[8539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[8540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[8541]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-16T01:32:23.212
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[8542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[8543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[8544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[8545]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-16T01:32:23.243
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[8546]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-16T01:32:23.243
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[8547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[8548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[8549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[8550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[8551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[8552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[8553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[8554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[8555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[8556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[8557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[8558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[8559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[8561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[8562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[8563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[8564]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-16T01:32:23.945
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[8565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:23.945
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[8566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:24.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[8567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:24.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[8568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:25.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[8569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-16T01:32:25.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[8570]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-19T21:21:36.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[8571]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-19T21:21:36.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[8572]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-19T21:21:36.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[8573]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-16T01:32:28.204
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[8574]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-16T01:32:29.701
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?16T06:32:29.701799100Z.

Event[8575]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-19T21:21:13.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?20T02:21:12.595198400Z.

Event[8576]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-19T21:21:18.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8577]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-19T21:21:25.574
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[8578]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-19T21:21:26.198
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8579]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-19T21:21:26.198
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8580]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-19T21:21:26.198
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8581]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-19T21:21:26.198
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8582]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-19T21:21:26.198
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8583]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-19T21:21:26.198
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8584]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-19T21:21:26.198
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8585]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-19T21:21:26.198
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:33.702
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[8587]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-19T21:21:33.702
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[8588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:33.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[8589]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-19T21:21:34.435
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8590]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-19T21:21:36.853
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8591]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-19T21:21:36.868
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8592]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-19T21:21:36.868
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:36.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[8594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:36.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[8595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:36.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[8596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:36.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[8597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:36.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[8598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[8599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[8600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[8601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[8602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[8603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[8604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[8605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[8606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.414
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[8607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.414
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[8608]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-19T21:21:37.414
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[8609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[8610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:37.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[8611]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-19T21:21:37.446
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[8612]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-19T21:21:38.070
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[8613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[8614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[8615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[8616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[8618]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-19T21:21:38.413
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[8619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[8620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.565
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[8621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[8622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.655
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[8623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[8624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.685
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[8625]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-19T21:21:38.695
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[8626]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-19T21:21:38.715
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[8628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[8629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[8630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.955
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[8631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:38.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[8632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:39.005
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[8633]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-19T21:21:39.025
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[8634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:39.025
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[8635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:39.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[8636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:39.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[8637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:39.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[8638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:39.055
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[8639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:39.125
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[8640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:39.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[8641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:39.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[8642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:44.484
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[8643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:44.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:48.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[8645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:48.899
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[8646]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-19T21:21:49.040
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[8647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:50.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[8648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:21:50.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[8649]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-19T21:21:53.220
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[8650]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-19T21:22:00.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[8651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:22:00.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[8652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:22:00.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[8653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:22:00.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[8654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:22:01.678
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[8655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:22:01.678
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[8656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:22:01.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[8657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:22:59.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[8658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:45.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:45.681
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:45.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[8661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:45.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[8662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:45.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[8663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:46.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[8664]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:46.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[8665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:46.555
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[8666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:46.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[8667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:46.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[8668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:47.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[8669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:47.460
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[8670]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:47.460
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[8671]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-19T21:23:47.538
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[8672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:47.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[8673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:47.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[8674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:51.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[8675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:52.966
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[8676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:54.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[8677]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-12-19T21:23:54.589
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[8678]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:57.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[8679]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:23:59.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[8680]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-12-19T21:24:08.992
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[8681]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:24:53.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:25:39.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[8683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:25:40.456
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[8684]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-19T21:25:44.077
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Friday, ?December ?20, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.165.32.0)

Event[8685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:26:08.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8686]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-19T21:26:38.423
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.32.0)

Event[8687]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:26:53.744
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[8688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:27:58.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[8689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:28:22.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[8690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:28:50.155
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[8691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:28:54.200
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[8692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:29:18.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[8693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:29:22.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[8694]:
  Log Name: System
  Source: USER32
  Date: 2013-12-19T21:30:31.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[8695]:
  Log Name: System
  Source: USER32
  Date: 2013-12-19T21:30:36.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[8696]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-19T21:30:36.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[8697]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-19T21:30:36.029
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[8698]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-19T21:30:36.279
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[8699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[8700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[8701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[8702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[8703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[8704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[8705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[8706]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-19T21:30:36.575
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[8707]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-19T21:30:36.575
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[8708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[8709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[8710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[8711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[8712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[8713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[8714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[8715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[8716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[8717]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-19T21:30:36.638
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[8718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[8719]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-19T21:30:36.700
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?20T02:30:36.700000000Z from ?2013?-?12?-?20T02:30:36.700521100Z.

Event[8720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[8721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.731
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[8722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.731
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[8723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.762
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[8724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[8725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[8726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[8727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:36.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:37.012
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[8729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:37.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[8730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:37.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[8731]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-19T21:30:37.433
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[8732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:37.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[8733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:37.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[8734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:38.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[8735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:38.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[8736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-19T21:30:39.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[8737]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-20T19:04:00.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[8738]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-20T19:04:00.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[8739]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-20T19:04:00.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 25 seconds.

Event[8740]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-19T21:30:41.536
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[8741]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-19T21:30:43.298
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?20T02:30:43.298811500Z.

Event[8742]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-20T19:03:36.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?21T00:03:35.595198400Z.

Event[8743]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-20T19:03:41.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8744]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-20T19:03:48.512
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[8745]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-20T19:03:49.182
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8746]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-20T19:03:49.182
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8747]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-20T19:03:49.182
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8748]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-20T19:03:49.182
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8749]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-20T19:03:49.182
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8750]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-20T19:03:49.182
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8751]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-20T19:03:49.182
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8752]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-20T19:03:49.182
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:03:58.028
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[8754]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-20T19:03:58.028
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[8755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:03:58.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[8756]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-20T19:03:58.106
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8757]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-20T19:04:00.836
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8758]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-20T19:04:00.836
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8759]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-20T19:04:00.851
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:00.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[8761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:00.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[8762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:00.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[8763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:00.914
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[8764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:00.960
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[8765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:00.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[8766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[8767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[8768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[8769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[8770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[8771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[8772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[8773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[8774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[8775]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-20T19:04:01.382
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[8776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[8777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[8778]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-20T19:04:01.397
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[8779]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-20T19:04:01.413
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[8780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[8781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[8782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[8783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[8785]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-20T19:04:01.475
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[8786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[8787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.681
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[8788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[8789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[8790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.791
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[8791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:01.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[8792]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-20T19:04:01.801
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[8793]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-20T19:04:01.821
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[8795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[8796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[8797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.061
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[8798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[8799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[8800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[8801]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-20T19:04:02.131
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[8802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[8803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[8804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[8805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[8806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[8807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.651
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[8808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:02.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[8809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:08.747
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[8810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:08.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:12.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[8812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:12.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[8813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:13.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[8814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:13.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[8815]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-20T19:04:14.628
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[8816]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-20T19:04:15.455
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[8817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:24.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[8818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:24.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[8819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:25.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[8820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:25.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[8821]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-20T19:04:26.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[8822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:26.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[8823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:04:27.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[8824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:05:23.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[8825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:09.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:09.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:09.615
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[8828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:09.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[8829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:09.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[8830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:10.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[8831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:10.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[8832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:10.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[8833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:10.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[8834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:10.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[8835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:10.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[8836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:11.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[8837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:11.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[8838]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-20T19:06:11.316
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[8839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:11.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[8840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:11.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[8841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:16.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[8842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:17.883
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[8843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:18.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[8844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:22.548
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[8845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:06:23.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[8846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:07:04.527
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[8847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:07:26.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[8848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:07:28.785
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:07:55.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[8850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:08:06.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[8851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:08:11.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8852]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-20T19:08:14.493
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Friday, ?December ?20, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.165.262.0)

Event[8853]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-20T19:08:22.165
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.262.0)

Event[8854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:08:34.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[8855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:08:55.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[8856]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2013-12-20T19:09:05.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[8857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:09:05.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[8858]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2013-12-20T19:10:04.000
  Event ID: 4
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service stopped.

Event[8859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:10:04.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the stopped state.

Event[8860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:10:21.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[8861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:10:22.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[8862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:11:15.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[8863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:15:19.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[8864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:17:21.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[8865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:17:21.738
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[8866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:18:39.987
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[8867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:18:41.625
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[8868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:18:41.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:20:00.281
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:20:00.281
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:20:18.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:23:38.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8873]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-20T19:24:38.648
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[8874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:24:40.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:32:43.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[8876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:35:39.777
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:43:38.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:43:59.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[8879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:44:23.984
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  TeamViewer 9
Service File Name:  "C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
Service Type:  user mode service
Service Start Type:  auto start
Service Account:  LocalSystem

Event[8880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:44:29.039
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[8881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:46:10.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[8882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T19:54:43.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T20:01:13.259
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[8884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T20:04:01.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[8885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T20:04:09.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T20:19:11.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[8887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T20:20:00.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T20:20:00.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T20:23:00.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:08:15.960
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[8891]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:13:16.034
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[8892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:13:47.905
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the running state.

Event[8893]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2013-12-20T21:13:48.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[8894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:13:48.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[8895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:13:48.997
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[8896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:14:29.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[8897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:20:00.465
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[8898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:20:00.465
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[8899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:23:49.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[8900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:24:46.757
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[8901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:24:47.006
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[8902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:24:47.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[8903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:38:27.038
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[8904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:41:27.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[8905]:
  Log Name: System
  Source: USER32
  Date: 2013-12-20T21:43:32.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[8906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:33.781
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[8907]:
  Log Name: System
  Source: USER32
  Date: 2013-12-20T21:43:36.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[8908]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-20T21:43:36.274
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[8909]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-20T21:43:37.382
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[8910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[8911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[8912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[8913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.694
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[8914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.787
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[8915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.850
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[8916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.850
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[8917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[8918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[8919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[8920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[8921]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-20T21:43:38.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[8922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:37.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[8923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[8924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[8925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[8926]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-20T21:43:38.084
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[8927]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-26T21:47:12.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[8928]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-26T21:47:12.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[8929]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-26T21:47:12.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 21 seconds.

Event[8930]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-20T21:43:38.084
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[8931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[8932]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-20T21:43:38.130
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[8933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[8934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.146
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[8935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[8936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[8937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[8938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[8939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[8940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.739
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[8941]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-20T21:43:38.848
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[8942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:38.848
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[8943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:39.098
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[8944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:39.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[8945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:39.768
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[8946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:40.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[8947]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-20T21:43:42.732
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[8948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-20T21:43:44.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[8949]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-20T21:43:44.511
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?21T02:43:44.511354900Z.

Event[8950]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-26T21:46:51.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2013?-?12?-?27T02:46:50.610798400Z.

Event[8951]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-26T21:46:56.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8952]:
  Log Name: System
  Source: vna_ap
  Date: 2013-12-26T21:47:05.493
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[8953]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-26T21:47:06.086
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8954]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-26T21:47:06.086
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8955]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-26T21:47:06.086
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8956]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-26T21:47:06.086
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8957]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-26T21:47:06.086
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8958]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-26T21:47:06.086
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8959]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-26T21:47:06.086
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8960]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2013-12-26T21:47:06.086
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[8961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:10.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[8962]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-26T21:47:10.048
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[8963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:10.095
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[8964]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-26T21:47:10.110
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8965]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-26T21:47:12.544
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8966]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-26T21:47:12.544
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8967]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-26T21:47:12.544
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[8968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:12.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[8969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:12.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[8970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:12.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[8971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:12.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[8972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:12.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[8973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:12.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[8974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:12.965
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[8975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.028
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[8976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[8977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[8978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[8979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[8980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[8981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[8982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[8983]:
  Log Name: System
  Source: VMnetBridge
  Date: 2013-12-26T21:47:13.074
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[8984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[8985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[8986]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-26T21:47:13.106
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[8987]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-26T21:47:13.121
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[8988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[8989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[8990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[8991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[8992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[8993]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-26T21:47:13.168
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[8994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[8995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[8996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[8997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[8998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.534
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[8999]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[9000]:
  Log Name: System
  Source: vmx86
  Date: 2013-12-26T21:47:13.554
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[9001]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2013-12-26T21:47:13.574
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.744
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[9003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.744
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[9004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[9005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[9006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.844
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[9007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[9008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[9009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.934
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[9010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:13.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[9011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:17.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[9012]:
  Log Name: System
  Source: VMnetuserif
  Date: 2013-12-26T21:47:17.654
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[9013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:17.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[9014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:17.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[9015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:17.684
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[9016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:18.702
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[9017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:19.249
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[9018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:23.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[9019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:26.924
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[9020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:26.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[9021]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:26.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[9022]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:26.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[9023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:26.955
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[9024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:27.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:28.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[9026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:29.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[9027]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-26T21:47:31.432
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[9028]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-26T21:47:33.523
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[9029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:45.405
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[9030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:46.107
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[9031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:46.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[9032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:46.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[9033]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2013-12-26T21:47:47.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[9034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:47.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[9035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:48.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[9036]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2013-12-26T21:47:58.462
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[9037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:47:58.462
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[9038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:48:31.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[9039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:23.342
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[9040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:23.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[9041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:23.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[9042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:23.872
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[9043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:24.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[9044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:24.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[9045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:24.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[9046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:24.434
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[9047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:24.512
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[9048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:24.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[9049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:24.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[9050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:25.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[9051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:25.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[9052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:25.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[9053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:25.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[9054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:26.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[9055]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-12-26T21:49:27.320
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->64.4.10.33:123).

Event[9056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:28.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[9057]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-26T21:49:46.281
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?27T02:49:46.281037600Z from ?2013?-?12?-?27T02:49:41.718895300Z.

Event[9058]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2013-12-26T21:49:46.281
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->64.4.10.33:123).

Event[9059]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-26T21:49:46.281
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?27T02:49:46.281000000Z from ?2013?-?12?-?27T02:49:46.281037600Z.

Event[9060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:47.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:49:49.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[9062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:50:26.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[9063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:51:25.481
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[9064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:51:25.887
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[9065]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-26T21:51:29.709
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Friday, ?December ?27, ?2013 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.165.538.0)

Event[9066]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-26T21:52:14.013
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.538.0)

Event[9067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:52:36.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[9068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:52:43.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[9069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:54:57.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[9070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:55:40.729
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[9071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:56:20.275
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[9072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:56:38.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[9073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:57:06.498
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[9074]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:57:15.702
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[9075]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T21:57:38.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[9076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:00:07.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[9077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:00:08.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:00:37.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[9079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:00:38.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[9080]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2013-12-26T22:01:28.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[9081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:01:28.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the running state.

Event[9082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:01:28.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[9083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:13.767
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[9084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:14.157
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[9085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:14.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[9086]:
  Log Name: System
  Source: USER32
  Date: 2013-12-26T22:02:22.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[9087]:
  Log Name: System
  Source: USER32
  Date: 2013-12-26T22:02:25.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[9088]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2013-12-26T22:02:25.147
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[9089]:
  Log Name: System
  Source: EventLog
  Date: 2013-12-26T22:02:26.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[9090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[9091]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2013-12-26T22:02:26.177
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[9092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[9093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[9094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[9095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[9096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[9097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[9098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[9099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[9100]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2013-12-26T22:02:26.411
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[9101]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2013-12-26T22:02:26.411
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[9102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[9103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[9104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[9105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[9106]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-26T22:02:26.411
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2013?-?12?-?27T03:02:26.411000000Z from ?2013?-?12?-?27T03:02:26.411127100Z.

Event[9107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[9108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[9109]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.426
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[9110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[9111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.457
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[9112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[9113]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-01T20:09:30.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[9114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[9115]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-01T20:09:30.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[9116]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-01T20:09:30.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[9117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[9118]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[9119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[9120]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.535
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[9121]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.551
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[9122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.645
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[9123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[9124]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.707
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[9125]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2013-12-26T22:02:26.910
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[9126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[9127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:26.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[9128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:27.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[9129]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2013-12-26T22:02:27.050
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[9130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:27.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[9131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:27.425
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[9132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:27.565
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[9133]:
  Log Name: System
  Source: Service Control Manager
  Date: 2013-12-26T22:02:29.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[9134]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2013-12-26T22:02:31.403
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[9135]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2013-12-26T22:02:33.509
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2013?-?12?-?27T03:02:33.509012400Z.

Event[9136]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-01T20:09:06.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?02T01:09:05.595198400Z.

Event[9137]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-01T20:09:11.585
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9138]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-01T20:09:18.964
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[9139]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-01T20:09:19.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9140]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-01T20:09:19.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9141]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-01T20:09:19.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9142]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-01T20:09:19.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9143]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-01T20:09:19.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9144]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-01T20:09:19.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9145]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-01T20:09:19.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9146]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-01T20:09:19.619
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9147]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:27.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[9148]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-01T20:09:27.185
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[9149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:27.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[9150]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-01T20:09:27.263
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9151]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-01T20:09:30.290
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9152]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-01T20:09:30.290
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9153]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-01T20:09:30.321
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[9155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[9156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[9157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[9158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.414
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[9159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.726
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[9161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[9162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[9163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[9164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[9165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[9166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[9167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[9168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[9169]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-01T20:09:30.836
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[9170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[9171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[9172]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-01T20:09:30.867
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[9173]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-01T20:09:30.867
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[9174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[9175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[9176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[9177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:30.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[9178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[9179]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-01T20:09:31.054
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[9180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[9181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[9182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[9183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[9184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[9185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[9186]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-01T20:09:31.380
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[9187]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-01T20:09:31.400
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[9189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[9190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.590
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[9191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[9192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[9193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[9194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[9195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[9196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:31.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[9197]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-01T20:09:34.570
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[9198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:34.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[9199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:34.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[9200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:34.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[9201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:37.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[9202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:40.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[9203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:42.195
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[9204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:42.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[9205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:42.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:45.439
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[9207]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-01T20:09:45.533
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[9208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:47.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[9209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:47.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[9210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:09:47.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[9211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:10:20.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[9212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:11:56.453
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[9213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:11:57.795
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Media Player Network Sharing Service service to connect.

Event[9214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:11:57.795
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[9215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:12:28.917
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Media Player Network Sharing Service service to connect.

Event[9216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:12:28.917
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[9217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:12:58.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[9218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:12:58.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[9219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:00.569
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[9220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:01.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[9221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:02.488
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[9222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:02.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[9223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:02.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[9224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:03.034
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[9225]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:03.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[9226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:03.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[9227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:04.064
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[9228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:04.064
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[9229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:04.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[9230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:04.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[9231]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2014-01-01T20:13:04.532
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[9232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:04.625
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[9233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:05.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[9234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:05.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[9235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:05.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[9236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:05.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[9237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:06.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[9238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:06.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[9239]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-01T20:13:06.731
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[9240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:06.731
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[9241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:07.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[9242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:08.104
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[9243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:11.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[9244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:12.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[9245]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-01T20:13:21.274
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?02T01:13:21.274672100Z from ?2014?-?01?-?02T01:13:18.933438600Z.

Event[9246]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2014-01-01T20:13:21.274
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[9247]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-01T20:13:21.274
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?02T01:13:21.274000000Z from ?2014?-?01?-?02T01:13:21.274672100Z.

Event[9248]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-01T20:13:21.274
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?02T01:13:21.274000000Z from ?2014?-?01?-?02T01:13:21.274000000Z.

Event[9249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:21.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[9250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:13:32.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[9251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:14:01.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[9252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:14:09.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[9253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:14:15.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:14:32.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[9255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:14:46.883
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[9256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:14:47.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[9257]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-01T20:14:51.158
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Thursday, ?January ?02, ?2014 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.165.887.0)

Event[9258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:15:04.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[9259]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-01T20:15:40.513
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.887.0)

Event[9260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:17:11.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[9261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:17:15.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[9262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:18:13.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[9263]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:18:24.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[9264]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-01T20:18:39.598
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[9265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:19:36.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the running state.

Event[9266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:19:38.783
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the running state.

Event[9267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:19:41.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the running state.

Event[9268]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9269]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9270]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9271]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9272]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9273]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9274]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9275]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9276]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9277]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9278]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9279]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9280]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9281]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9282]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9283]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9284]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9285]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9286]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9287]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9288]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9289]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9290]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9291]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9292]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9293]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9294]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9295]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-01T20:19:44.134
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[9296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:19:44.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the running state.

Event[9297]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:19:49.484
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the running state.

Event[9298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:19:52.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the running state.

Event[9299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:19:54.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the running state.

Event[9300]:
  Log Name: System
  Source: VMnetAdapter
  Date: 2014-01-01T20:19:59.141
  Event ID: 36
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Adapter Driver for VMware Virtual Networks.

Event[9301]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-01T20:20:00.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[9302]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-01T20:19:59.999
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[9303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:20:00.685
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[9304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:20:00.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[9305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:20:00.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[9306]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-01T20:20:37.010
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0005 with the following status: 0.

Event[9307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:21:24.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[9308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:21:54.966
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[9309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:22:50.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[9310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:22:50.793
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[9311]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-01T20:24:36.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[9312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:24:48.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[9313]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-01T20:27:47.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[9314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:29:33.641
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[9315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:29:33.938
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[9316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:29:34.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[9317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:31:59.267
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[9318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:39:50.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[9319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:40:33.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:41:48.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:44:14.863
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[9322]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-01T20:44:59.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[9323]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-01T20:50:18.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[9324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:51:48.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[9325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:52:28.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T20:53:06.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[9327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T21:00:38.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[9328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T21:01:22.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T21:01:44.155
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T21:08:16.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[9331]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-01T21:12:42.989
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[9332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T21:20:00.349
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[9333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T21:20:00.349
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[9334]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-01T21:22:02.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[9335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T21:40:44.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[9336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T21:44:34.135
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9337]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-01T21:49:01.515
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[9338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:02:49.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[9339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:04:04.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[9340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:04:09.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:04:41.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9342]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-01T22:06:43.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[9343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:08:49.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[9344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:10:49.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[9345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:11:48.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:11:49.987
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the stopped state.

Event[9347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:11:50.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the stopped state.

Event[9348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:11:53.138
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the stopped state.

Event[9349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:11:55.181
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the stopped state.

Event[9350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:11:56.242
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the stopped state.

Event[9351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:11:58.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the stopped state.

Event[9352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:12:01.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the stopped state.

Event[9353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:16:48.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[9354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:20:00.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[9355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:20:00.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[9356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:21:48.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[9357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:23:16.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:23:24.011
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[9359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:23:24.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:03.682
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:06.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[9362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:06.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[9363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:12.792
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\79fd060d-6602-4474-bb8f-8af97901b2d8
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:12.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[9365]:
  Log Name: System
  Source: USER32
  Date: 2014-01-01T22:24:29.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[9366]:
  Log Name: System
  Source: USER32
  Date: 2014-01-01T22:24:32.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[9367]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-01T22:24:32.836
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[9368]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-01T22:24:34.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[9369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:33.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[9370]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-01T22:24:33.990
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[9371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[9372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[9373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[9374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[9375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[9376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[9377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[9378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[9379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[9380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[9381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[9382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[9383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[9384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[9385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[9386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[9387]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-01T22:24:34.333
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[9388]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-01T22:24:34.333
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[9389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[9390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[9391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[9392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[9393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[9394]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-03T18:49:09.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[9395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[9396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[9397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[9398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[9399]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-03T18:49:09.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[9400]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-03T18:49:09.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[9401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[9402]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-01T22:24:34.754
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[9403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[9404]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-01T22:24:34.942
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[9405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[9406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:34.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[9407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:35.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[9408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:35.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[9409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:35.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[9410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-01T22:24:38.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[9411]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-01T22:24:39.232
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[9412]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-01T22:24:40.729
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?02T03:24:40.729692100Z.

Event[9413]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-03T18:48:46.952
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?03T23:48:45.595198400Z.

Event[9414]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T18:48:51.694
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9415]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-03T18:48:59.572
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[9416]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T18:49:00.228
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9417]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T18:49:00.228
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9418]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T18:49:00.228
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9419]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T18:49:00.228
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9420]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T18:49:00.228
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9421]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T18:49:00.228
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9422]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T18:49:00.228
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9423]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T18:49:00.228
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:07.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[9425]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-03T18:49:07.310
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[9426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:07.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[9427]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T18:49:07.357
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9428]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T18:49:09.806
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9429]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T18:49:09.806
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9430]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T18:49:09.806
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:09.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[9432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:09.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[9433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:09.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[9434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:09.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[9435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:09.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[9436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:09.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[9438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[9439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[9440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[9441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[9442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[9443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[9444]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[9445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[9446]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-03T18:49:10.352
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[9447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[9448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[9449]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-03T18:49:10.383
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[9450]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-03T18:49:10.383
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[9451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[9452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[9453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[9454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[9455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[9456]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-03T18:49:10.446
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[9457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[9458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.637
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[9459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.757
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[9460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[9461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[9462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:10.857
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[9463]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-03T18:49:10.857
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[9464]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T18:49:10.877
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:11.087
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[9466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:11.087
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[9467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:11.117
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[9468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:11.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[9469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:11.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[9470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:11.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[9471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:11.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[9472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:11.267
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[9473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:11.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[9474]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-03T18:49:13.567
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[9475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:13.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[9476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:13.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[9477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:13.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[9478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:14.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[9479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:16.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[9480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:17.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[9481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:17.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[9482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:18.061
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9483]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:21.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[9484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:21.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[9485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:24.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[9486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:24.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[9487]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-03T18:49:27.077
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[9488]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-03T18:49:41.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[9489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:41.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[9490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:41.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[9491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:41.752
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[9492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:42.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[9493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:42.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[9494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:49:42.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[9495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:50:28.677
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[9496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:18.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[9497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:18.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[9498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:18.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[9499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:18.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[9500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:18.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[9501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:19.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[9502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:19.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[9503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:19.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[9504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:19.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[9505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:19.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[9506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:20.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[9507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:20.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[9508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:20.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[9509]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-03T18:51:21.140
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[9510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:21.140
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[9511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:21.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[9512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:21.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[9513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:25.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[9514]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-03T18:51:25.679
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[9515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:32.543
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the running state.

Event[9516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:33.844
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[9517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:51:35.576
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[9518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:52:30.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[9519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:53:09.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9520]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-03T18:53:13.201
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Friday, ?January ?03, ?2014 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.165.1076.0)

Event[9521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:53:17.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[9522]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-03T18:53:21.501
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.1076.0)

Event[9523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:53:29.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[9524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:53:57.599
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[9525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:54:08.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[9526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:54:57.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[9527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T18:57:35.838
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[9528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:01:44.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[9529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:02:31.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[9530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:02:31.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[9531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:03:06.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[9532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:03:10.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[9533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:03:11.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:03:16.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:03:21.182
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[9536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:03:21.463
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[9537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:03:21.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[9538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:08:44.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[9539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:13:36.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[9540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:15:38.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:20:00.426
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[9542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:20:00.426
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[9543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:20:48.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[9544]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-03T19:21:49.969
  Event ID: 4100
  Task: Diagnosis Success
  Level: Information
  Opcode: Info
  Keyword: Core Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The Network Diagnostics Framework has completed the diagnosis phase of operation, but no network problem was identified.

Event[9545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:21:58.565
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[9546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:23:41.026
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:27:05.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[9548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:27:06.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:27:15.852
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[9550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:27:18.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[9551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:27:20.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[9552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:27:21.534
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[9553]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-03T19:27:43.821
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[9554]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-03T19:27:44.696
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[9555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:29:15.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[9556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:31:19.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[9557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:31:23.281
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[9558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:34:23.281
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[9559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:36:22.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[9560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:36:23.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:37:19.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[9562]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-03T19:40:05.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?04T00:40:04.595198400Z.

Event[9563]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T19:40:10.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9564]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-03T19:40:16.279
  Event ID: 41
  Task: N/A
  Level: Critical
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Event[9565]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-03T19:40:31.000
  Event ID: 6008
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The previous system shutdown at 7:38:57 PM on ?1/?3/?2014 was unexpected.

Event[9566]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-03T19:40:31.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[9567]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-03T19:40:31.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[9568]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-03T19:40:31.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[9569]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-03T19:40:17.761
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[9570]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T19:40:18.432
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9571]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T19:40:18.432
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9572]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T19:40:18.432
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9573]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T19:40:18.432
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9574]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T19:40:18.432
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9575]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T19:40:18.432
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9576]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T19:40:18.432
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9577]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-03T19:40:18.432
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:28.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[9579]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-03T19:40:28.931
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[9580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:28.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[9581]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T19:40:28.993
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9582]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T19:40:31.411
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9583]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T19:40:31.411
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9584]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T19:40:31.411
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.427
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[9586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[9587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[9588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[9589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.598
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[9590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[9592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[9593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[9594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:31.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[9595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[9596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[9597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[9598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[9599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[9600]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-03T19:40:32.020
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[9601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[9602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[9603]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-03T19:40:32.051
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[9604]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-03T19:40:32.051
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[9605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[9606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[9607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[9608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[9609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[9610]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-03T19:40:32.183
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[9611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[9612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[9613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[9614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[9615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.543
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[9616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:32.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[9617]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-03T19:40:32.563
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[9618]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-03T19:40:32.583
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:33.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[9620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:33.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[9621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:33.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[9622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:33.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[9623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:33.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[9624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:33.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[9625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:33.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[9626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:33.863
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[9627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:35.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[9628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:42.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[9629]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-03T19:40:42.531
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[9630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:42.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[9631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:42.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[9632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:42.765
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[9633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:43.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[9634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:46.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[9635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:47.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[9636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:47.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:52.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[9638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:52.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[9639]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-03T19:40:53.903
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[9640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:54.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[9641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:40:55.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[9642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:41:09.133
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[9643]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-03T19:41:10.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[9644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:41:10.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[9645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:41:10.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[9646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:41:10.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[9647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:41:10.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[9648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:41:10.943
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[9649]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-03T19:41:56.199
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[9650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:41:56.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[9651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:41:57.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[9652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:03.718
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the running state.

Event[9653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:31.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[9654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:47.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[9655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:47.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[9656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:47.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[9657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:48.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[9658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:48.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[9659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:48.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[9660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:48.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[9661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:48.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[9662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:48.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[9663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:48.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[9664]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:49.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[9665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:49.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[9666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:49.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[9667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:49.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[9668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:50.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[9669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:51.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[9670]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:42:52.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[9671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:43:04.095
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[9672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:43:25.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[9673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:43:53.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:44:41.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the stopped state.

Event[9675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:45:25.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[9676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:45:57.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[9677]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:03.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[9678]:
  Log Name: System
  Source: USER32
  Date: 2014-01-03T19:46:04.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[9679]:
  Log Name: System
  Source: USER32
  Date: 2014-01-03T19:46:09.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[9680]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-03T19:46:09.621
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[9681]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-03T19:46:11.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[9682]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-03T19:46:11.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[9683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[9684]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-03T19:46:11.431
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[9685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.462
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[9686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[9687]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[9688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[9689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[9690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[9691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[9692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[9693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[9694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[9695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[9696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[9697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[9698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[9699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[9700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[9701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[9702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[9703]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-06T20:24:04.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[9704]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-06T20:24:04.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[9705]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-06T20:24:04.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[9706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[9707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[9708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[9709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[9710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[9711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[9712]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-03T19:46:11.961
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[9713]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-03T19:46:11.961
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[9714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.961
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[9715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[9716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[9717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:11.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[9718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:12.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[9719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:12.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[9720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:12.055
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[9721]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-03T19:46:12.305
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[9722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:12.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[9723]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-03T19:46:12.445
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[9724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:12.445
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[9725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:12.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[9726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:13.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[9727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-03T19:46:15.097
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[9728]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-03T19:46:16.751
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[9729]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-03T19:46:18.436
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?04T00:46:18.436001700Z.

Event[9730]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-06T20:23:41.983
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?07T01:23:40.595198400Z.

Event[9731]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T20:23:46.741
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9732]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-06T20:23:54.900
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[9733]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T20:23:55.602
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9734]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T20:23:55.602
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9735]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T20:23:55.602
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9736]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T20:23:55.602
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9737]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T20:23:55.602
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9738]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T20:23:55.602
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9739]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T20:23:55.602
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9740]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T20:23:55.602
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:01.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[9742]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:24:01.608
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[9743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:01.655
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[9744]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T20:24:01.670
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9745]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T20:24:04.104
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9746]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T20:24:04.104
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9747]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T20:24:04.104
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[9749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[9750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[9751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[9752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[9753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[9755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[9756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[9757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[9758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[9759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[9760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[9761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[9762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[9763]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-06T20:24:04.915
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[9764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[9765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[9766]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-06T20:24:04.946
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[9767]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-06T20:24:04.946
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[9768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[9769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[9770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[9771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:04.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[9772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[9773]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-06T20:24:05.024
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[9774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[9775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[9776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[9777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[9778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[9779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[9780]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-06T20:24:05.330
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[9781]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T20:24:05.340
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.840
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[9783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.840
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[9784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[9785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[9786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[9787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[9788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:05.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[9789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:06.060
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[9790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:10.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[9791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:12.374
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[9792]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-06T20:24:12.374
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[9793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:12.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[9794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:12.468
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[9795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:13.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[9796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:13.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[9797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:14.153
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[9798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:18.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[9799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:18.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:18.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[9801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:18.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[9802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:18.349
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[9803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:20.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[9804]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-06T20:24:22.779
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[9805]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:24:23.871
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[9806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:31.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[9807]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-06T20:24:33.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[9808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:33.704
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[9809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:33.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[9810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:34.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[9811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:34.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[9812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:24:34.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[9813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:25:22.049
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[9814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:17.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[9815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:18.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[9816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:18.676
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[9817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:18.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[9818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:19.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[9819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:19.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[9820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:19.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[9821]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:19.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[9822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:19.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[9823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:19.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[9824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:19.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[9825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:20.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[9826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:21.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[9827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:21.602
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[9828]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-06T20:26:23.661
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[9829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:23.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[9830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:24.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[9831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:24.550
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:24.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[9833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:25.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[9834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:26.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[9835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:28.903
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\e9418d8a-fca3-4f37-9255-b228fd078b2a
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:32.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[9837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:34.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[9838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:36.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[9839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:36.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[9840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:26:46.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:27:09.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[9842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:27:13.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[9843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:27:23.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[9844]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-06T20:27:33.268
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[9845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:27:38.775
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[9846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:27:49.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[9847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:27:55.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[9848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:28:38.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[9849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:28:38.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[9850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:28:39.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[9851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:30:32.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[9852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:30:33.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[9853]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-06T20:30:57.630
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[9854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:31:39.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[9855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:34:13.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[9856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:34:38.760
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[9857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:37:13.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[9858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:37:25.681
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[9859]:
  Log Name: System
  Source: cdrom
  Date: 2014-01-06T20:37:27.974
  Event ID: 15
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The device, \Device\CdRom0, is not ready for access yet.

Event[9860]:
  Log Name: System
  Source: cdrom
  Date: 2014-01-06T20:37:27.974
  Event ID: 15
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The device, \Device\CdRom0, is not ready for access yet.

Event[9861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:37:27.989
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[9862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:37:35.126
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[9863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:37:35.422
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[9864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:37:35.563
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[9865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:37:36.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[9866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:37:38.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[9867]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:38:03.065
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service HidUsb for Device Instance ID USB\VID_1004&PID_6300\6&1F1B0822&0&1 with the following status: 0.

Event[9868]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:38:03.097
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\input.inf_amd64_neutral_fccb715ac7d8c66d\input.inf for Device Instance ID USB\VID_1004&PID_6300\6&1F1B0822&0&1 with the following status: 0x0.

Event[9869]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:38:03.685
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\input.inf_amd64_neutral_fccb715ac7d8c66d\input.inf for Device Instance ID HID\VID_1004&PID_6300\7&257E8A36&0&0000 with the following status: 0x0.

Event[9870]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:39:44.985
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbccgp for Device Instance ID USB\VID_1004&PID_61FA\6&1F1B0822&0&1 with the following status: 0.

Event[9871]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:39:45.005
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usb.inf_amd64_neutral_efc1d9d1a972acd0\usb.inf for Device Instance ID USB\VID_1004&PID_61FA\6&1F1B0822&0&1 with the following status: 0x0.

Event[9872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:39:48.778
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  LGE AndroidNet USB Serial Port
Service File Name:  system32\DRIVERS\lgandnetdiag64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9873]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:39:48.841
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service AndNetDiag for Device Instance ID USB\VID_1004&PID_61FA&MI_02\7&27E31790&0&0002 with the following status: 0.

Event[9874]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:39:57.577
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\lgandnetdiag64.inf_amd64_neutral_6b850fb2241ebc8b\lgandnetdiag64.inf for Device Instance ID USB\VID_1004&PID_61FA&MI_02\7&27E31790&0&0002 with the following status: 0x0.

Event[9875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:39:57.920
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  LGE AndroidNet USB Modem
Service File Name:  system32\DRIVERS\lgandnetmodem64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9876]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:39:58.014
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service ANDNetModem for Device Instance ID USB\VID_1004&PID_61FA&MI_00\7&27E31790&0&0000 with the following status: 0.

Event[9877]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T20:39:58.638
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\lgandnetmodem64.inf_amd64_neutral_de2b61536d899872\lgandnetmodem64.inf for Device Instance ID USB\VID_1004&PID_61FA&MI_00\7&27E31790&0&0000 with the following status: 0x0.

Event[9878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:42:37.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[9879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:44:31.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[9880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:44:31.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[9881]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-06T20:44:40.659
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[9882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:47:41.411
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:47:41.754
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  ATSZIO
Service File Name:  C:\Program Files (x86)\ASUS\ASUS PC Diagnostics\ATSZIO64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:47:46.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[9885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:48:00.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[9886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:48:40.370
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  getbus
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\getbus.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:49:48.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[9888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:49:49.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[9889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:49:49.775
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[9890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:49:49.978
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[9891]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:49:50.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[9892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:51:00.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[9893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:53:39.189
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[9894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T20:55:48.934
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[9895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:04:48.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[9896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:06:19.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[9897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:06:56.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[9898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:07:16.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[9899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:07:29.173
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  AtiDCM
Service File Name:  C:\AMD\Support\13-12_win7_win8_64_dd_ccc_whql\Bin64\atdcm64a.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[9900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:10:13.378
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[9901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:10:13.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[9902]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-06T21:10:18.152
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[9903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:10:23.955
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[9904]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-06T21:10:24.314
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[9905]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-06T21:10:24.455
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[9906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:10:30.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[9907]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-06T21:10:38.775
  Event ID: 28
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now resumed.

Event[9908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:11:03.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[9909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:11:03.969
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[9910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:11:47.493
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  AMD External Events Utility
Service File Name:  %SystemRoot%\system32\atiesrxx.exe
Service Type:  user mode service
Service Start Type:  auto start
Service Account:  LocalSystem

Event[9911]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:11:49.631
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service amdkmdap for Device Instance ID PCI\VEN_1002&DEV_6818&SUBSYS_042A1043&REV_00\6&37BD113F&0&00400010 with the following status: 0.

Event[9912]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:11:49.662
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service amdkmdag for Device Instance ID PCI\VEN_1002&DEV_6818&SUBSYS_042A1043&REV_00\6&37BD113F&0&00400010 with the following status: 0.

Event[9913]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:11:49.693
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service AMD External Events Utility for Device Instance ID PCI\VEN_1002&DEV_6818&SUBSYS_042A1043&REV_00\6&37BD113F&0&00400010 with the following status: 0.

Event[9914]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:11:50.395
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\c7166389.inf_amd64_neutral_58331bdd832e56a8\c7166389.inf for Device Instance ID PCI\VEN_1002&DEV_6818&SUBSYS_042A1043&REV_00\6&37BD113F&0&00400010 with the following status: 0x0.

Event[9915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:11:50.629
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:11:52.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[9917]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:11:56.754
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service AtiHDAudioService for Device Instance ID HDAUDIO\FUNC_01&VEN_1002&DEV_AA01&SUBSYS_00AA0100&REV_1003\7&2DB59309&0&0001 with the following status: 0.

Event[9918]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:11:57.019
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\atihdw76.inf_amd64_neutral_a184575729e088bd\atihdw76.inf for Device Instance ID HDAUDIO\FUNC_01&VEN_1002&DEV_AA01&SUBSYS_00AA0100&REV_1003\7&2DB59309&0&0001 with the following status: 0x0.

Event[9919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:03.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[9920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:03.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[9921]:
  Log Name: System
  Source: USER32
  Date: 2014-01-06T21:13:31.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[9922]:
  Log Name: System
  Source: USER32
  Date: 2014-01-06T21:13:34.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[9923]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-06T21:13:34.513
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[9924]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-06T21:13:34.762
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[9925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.840
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[9926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[9927]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-06T21:13:35.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[9928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[9929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[9930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[9931]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-06T21:13:34.996
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[9932]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-06T21:13:34.996
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[9933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[9934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[9935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[9936]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:13:34.996
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[9937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[9938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[9939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:34.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[9940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.012
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[9941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[9942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[9943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[9944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[9945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[9946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[9947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[9948]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-06T21:14:37.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[9949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[9950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[9951]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-06T21:14:37.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[9952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[9953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[9954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[9955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[9956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[9957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.246
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[9958]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-06T21:14:37.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 35 seconds.

Event[9959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[9960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[9961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[9962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[9963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[9964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[9965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.527
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[9966]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-06T21:13:35.901
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[9967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[9968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:35.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[9969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:36.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[9970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:13:38.740
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[9971]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-06T21:13:40.004
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[9972]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-06T21:13:42.001
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?07T02:13:42.001156600Z.

Event[9973]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-06T21:14:02.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?07T02:14:01.595198400Z.

Event[9974]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T21:14:07.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9975]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-06T21:14:27.444
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[9976]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T21:14:28.021
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9977]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T21:14:28.021
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9978]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T21:14:28.021
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9979]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T21:14:28.021
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9980]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T21:14:28.021
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9981]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T21:14:28.021
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9982]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T21:14:28.021
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9983]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-06T21:14:28.021
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[9984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:34.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[9985]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:14:34.854
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[9986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:34.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[9987]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T21:14:34.916
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9988]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T21:14:37.350
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9989]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T21:14:37.350
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9990]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T21:14:37.350
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[9991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:37.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[9992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:37.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[9993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:37.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[9994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:37.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[9995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:37.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[9996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:37.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[9997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:37.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[9998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:37.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[9999]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[10000]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[10001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[10002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[10003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[10004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[10005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[10006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[10007]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-06T21:14:38.083
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[10008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[10009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[10010]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-06T21:14:38.114
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[10011]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-06T21:14:38.114
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[10012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[10013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[10014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[10015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[10016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[10017]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-06T21:14:38.237
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[10018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[10019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[10020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[10021]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.667
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[10022]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.687
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[10023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.697
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[10024]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-06T21:14:38.707
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[10025]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-06T21:14:38.727
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[10027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[10028]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[10029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:38.987
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[10030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:39.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[10031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:39.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[10032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:39.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[10033]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:39.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[10034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:39.917
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[10035]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-06T21:14:43.047
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[10036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:43.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[10037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:43.097
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[10038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:43.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[10039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:43.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[10040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:44.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[10041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:44.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[10042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:46.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[10043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:46.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:49.405
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[10045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:50.279
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[10046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:50.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[10047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:14:50.856
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[10048]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:14:54.039
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[10049]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-06T21:15:00.232
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[10050]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-06T21:15:12.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[10051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:15:11.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[10052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:15:12.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[10053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:15:12.317
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[10054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:15:12.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[10055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:15:12.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[10056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:15:12.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[10057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:15:36.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[10058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:15:51.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[10059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:00.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[10060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:01.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:46.394
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:46.394
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:46.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[10064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:47.018
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[10065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:47.018
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[10066]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:47.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[10067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:47.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[10068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:47.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[10069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:47.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[10070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:47.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[10071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:47.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[10072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:48.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[10073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:48.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[10074]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-06T21:16:48.328
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[10075]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:48.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[10076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:48.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[10077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:49.342
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[10078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:16:52.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[10079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:17:09.201
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[10080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:17:50.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:20:00.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:20:00.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:20:03.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[10084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:20:52.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[10085]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-06T21:23:31.472
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[10086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:26:04.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Tablet PC Input Service service entered the running state.

Event[10087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:27:56.344
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[10088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:27:56.593
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[10089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:27:56.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[10090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:28:03.145
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[10091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:28:03.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[10092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:32:47.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:33:28.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:33:35.535
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:33:56.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:35:22.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the running state.

Event[10097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:35:24.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the running state.

Event[10098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:35:26.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the running state.

Event[10099]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10100]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10101]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10102]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10103]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10104]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10105]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10106]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10107]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10108]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10109]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10110]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10111]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10112]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10113]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10114]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10115]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10116]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10117]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10118]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10119]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10120]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10121]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10122]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10123]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10124]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10125]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10126]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-06T21:35:29.604
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[10127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:35:29.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the running state.

Event[10128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:35:34.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the running state.

Event[10129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:35:36.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the running state.

Event[10130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:35:39.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the running state.

Event[10131]:
  Log Name: System
  Source: VMnetAdapter
  Date: 2014-01-06T21:35:42.211
  Event ID: 36
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Adapter Driver for VMware Virtual Networks.

Event[10132]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:35:43.038
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[10133]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-06T21:36:20.469
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0005 with the following status: 0.

Event[10134]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-06T21:37:53.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[10135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:43:16.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:45:44.615
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:45:58.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:49:11.955
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:55:35.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:56:28.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T21:56:47.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[10142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:05:44.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:06:59.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:13:32.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:13:35.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the stopped state.

Event[10146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:13:35.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the stopped state.

Event[10147]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:13:37.869
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the stopped state.

Event[10148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:13:40.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the stopped state.

Event[10149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:13:41.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the stopped state.

Event[10150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:13:43.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the stopped state.

Event[10151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:13:46.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the stopped state.

Event[10152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:18:34.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:20:00.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:20:00.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:20:38.945
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:23:32.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:23:40.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:23:51.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:27:51.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:28:07.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:28:10.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[10162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:28:10.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[10163]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-06T22:28:39.861
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[10164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:32:54.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[10165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:32:54.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[10166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:33:40.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:34:00.588
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[10168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:34:01.555
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[10169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:34:01.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[10170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:34:15.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[10171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:34:22.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:38:39.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[10173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:39:49.056
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[10174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:39:56.747
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[10175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:39:56.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[10176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:39:58.541
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\69f1e8ee-99b8-4a95-8042-5467a5e6a1c1
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[10177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:40:08.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[10178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:40:39.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[10179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:40:49.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[10180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:42:14.997
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[10181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:42:15.715
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[10182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:42:49.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[10183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:45:39.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[10184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:47:39.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[10185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:48:14.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[10186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:50:53.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:51:34.741
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:55:13.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:56:28.590
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[10190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:56:39.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[10191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:58:07.405
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T22:58:39.916
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[10193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T23:02:06.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T23:03:01.966
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T23:03:10.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T23:03:43.687
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[10197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T23:07:23.663
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T23:08:09.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T23:13:10.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T23:20:05.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-06T23:20:05.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T00:20:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T00:20:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10204]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-07T00:37:53.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[10205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T00:37:53.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the running state.

Event[10206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T00:37:53.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[10207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T00:38:33.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T00:48:50.887
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[10209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T00:48:51.106
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[10210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T00:48:51.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[10211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T00:59:11.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[10212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:02:11.527
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[10213]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-07T01:02:53.000
  Event ID: 4
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service stopped.

Event[10214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:02:53.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the stopped state.

Event[10215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:02:53.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the stopped state.

Event[10216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:06:52.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10217]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-07T01:06:54.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[10218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:06:52.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:06:53.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[10220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:06:54.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[10221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:06:54.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the running state.

Event[10222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:06:54.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[10223]:
  Log Name: System
  Source: USER32
  Date: 2014-01-07T01:07:20.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[10224]:
  Log Name: System
  Source: USER32
  Date: 2014-01-07T01:07:23.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[10225]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-07T01:07:23.399
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[10226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:24.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10227]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-07T01:07:25.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[10228]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-07T01:07:24.990
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[10229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[10230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[10231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[10232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[10233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[10234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[10235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[10236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.551
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[10237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[10238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[10239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[10240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[10241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[10242]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-07T01:07:25.583
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[10243]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-07T01:07:25.583
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[10244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[10245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.676
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[10246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[10247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.723
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[10248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[10249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[10250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.785
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[10251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[10252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:25.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[10253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[10254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[10255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[10256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.097
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[10257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.144
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[10258]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-07T01:07:26.175
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[10259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[10260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[10261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[10262]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-07T20:03:23.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[10263]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-07T20:03:23.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[10264]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-07T20:03:23.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[10265]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-07T01:07:26.643
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[10266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[10267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[10268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[10269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:26.768
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[10270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:27.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[10271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:29.841
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[10272]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-07T01:07:30.450
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[10273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T01:07:30.481
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[10274]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-07T01:07:32.384
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?07T06:07:32.384788100Z.

Event[10275]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-07T20:02:59.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?08T01:02:58.595198400Z.

Event[10276]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-07T20:03:04.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10277]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-07T20:03:11.683
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[10278]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-07T20:03:12.338
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10279]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-07T20:03:12.338
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10280]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-07T20:03:12.338
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10281]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-07T20:03:12.338
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10282]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-07T20:03:12.338
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10283]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-07T20:03:12.338
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10284]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-07T20:03:12.338
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10285]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-07T20:03:12.338
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:19.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[10287]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-07T20:03:19.639
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[10288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:19.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[10289]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-07T20:03:19.858
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10290]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-07T20:03:22.338
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10291]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-07T20:03:22.369
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10292]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-07T20:03:22.385
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:22.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[10294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:22.463
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[10295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:22.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[10296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:23.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[10297]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:23.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[10298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:23.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:24.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[10300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:24.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[10301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:24.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[10302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:25.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[10303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:25.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[10304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:25.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[10305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:25.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[10306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:25.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[10307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:25.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[10308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:25.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[10309]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-07T20:03:25.661
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[10310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:25.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[10311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:25.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[10312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:26.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[10313]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-07T20:03:26.035
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[10314]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-07T20:03:26.101
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[10315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:26.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[10316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:26.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[10317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:26.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[10318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:27.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[10319]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-07T20:03:27.441
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[10320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:27.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[10321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:28.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[10322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:29.261
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[10323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:29.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[10324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:29.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[10325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:29.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[10326]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-07T20:03:29.731
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[10327]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-07T20:03:29.811
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:30.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[10329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:30.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[10330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:30.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[10331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:31.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[10332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:31.730
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[10333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:32.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[10334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:32.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[10335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:33.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[10336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:35.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[10337]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-07T20:03:39.140
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[10338]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-07T20:03:39.624
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[10339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:39.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[10340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:39.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[10341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:39.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[10342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:42.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[10343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:43.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[10344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:03:45.209
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[10345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:12.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[10346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:16.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[10347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:28.445
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:28.554
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[10349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:28.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[10350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:29.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[10351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:30.254
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[10352]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-07T20:04:34.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[10353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:34.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[10354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:38.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[10355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:44.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[10356]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-07T20:04:46.209
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[10357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:46.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[10358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:46.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[10359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:46.677
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[10360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:48.518
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[10361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:55.694
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[10362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:04:56.646
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[10363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:05:00.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10364]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-07T20:05:58.857
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[10365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:05:58.857
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[10366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:04.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[10367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:13.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:13.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:13.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[10370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:13.645
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[10371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:13.645
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[10372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:13.948
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[10373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:13.948
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[10374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:14.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[10375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:14.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[10376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:14.244
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[10377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:14.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[10378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:14.852
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[10379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:14.852
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[10380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:15.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[10381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:16.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[10382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:19.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[10383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:28.830
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[10384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:06:30.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[10385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:07:17.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:08:08.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[10387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:08:28.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[10388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:08:29.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[10389]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-07T20:08:32.791
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Wednesday, ?January ?08, ?2014 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.165.1308.0)

Event[10390]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-07T20:09:09.151
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[10391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:09:13.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[10392]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-07T20:09:51.711
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.1308.0)

Event[10393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:09:59.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[10394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:10:08.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[10395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:11:35.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[10396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:11:52.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[10397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:12:24.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[10398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:12:30.108
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[10399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:12:52.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[10400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:15:24.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[10401]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-07T20:15:33.913
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[10402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:16:47.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[10403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:16:48.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[10404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:19:51.272
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[10405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:19:51.542
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[10406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:19:51.652
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[10407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:20:00.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:20:00.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:30:00.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:36:34.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:37:28.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:46:14.220
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[10413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:47:05.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:47:19.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:56:14.297
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:57:13.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T20:57:26.824
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T21:03:31.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T21:14:46.002
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T21:20:00.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T21:20:00.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T21:39:43.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T21:42:09.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T21:53:03.793
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T21:58:39.899
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:15:13.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:15:41.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10428]:
  Log Name: System
  Source: USER32
  Date: 2014-01-07T22:16:59.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[10429]:
  Log Name: System
  Source: USER32
  Date: 2014-01-07T22:17:01.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[10430]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-07T22:17:01.801
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[10431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:02.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10432]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-07T22:17:02.799
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[10433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:02.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[10434]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-07T22:17:03.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[10435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:02.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[10436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[10437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[10438]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-07T22:17:03.080
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[10439]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-07T22:17:03.080
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[10440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[10441]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-07T22:17:03.096
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[10442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[10443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[10444]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[10445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[10446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[10447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[10448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[10449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[10450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[10451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[10452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[10453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[10454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[10455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[10456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[10457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.189
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[10458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[10459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[10460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[10461]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T08:21:59.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[10462]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T08:21:59.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[10463]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T08:22:00.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[10464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[10465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[10466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[10467]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-07T22:17:03.767
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[10468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.767
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[10469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:03.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[10470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:04.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[10471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:04.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[10472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-07T22:17:06.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[10473]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-07T22:17:08.088
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[10474]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-07T22:17:14.453
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?08T03:17:14.453129300Z.

Event[10475]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-08T08:21:34.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?08T13:21:33.610798400Z.

Event[10476]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T08:21:39.601
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10477]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-08T08:21:46.356
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[10478]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T08:21:47.073
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10479]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T08:21:47.073
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10480]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T08:21:47.073
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10481]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T08:21:47.073
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10482]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T08:21:47.073
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10483]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T08:21:47.073
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10484]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T08:21:47.073
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10485]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T08:21:47.073
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:21:56.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[10487]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T08:21:56.683
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[10488]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:21:56.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[10489]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T08:21:56.932
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10490]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T08:21:59.491
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10491]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T08:21:59.491
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10492]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T08:21:59.506
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:21:59.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[10494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:21:59.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[10495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:21:59.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[10496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:21:59.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[10497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[10498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[10500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.427
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[10501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[10502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[10503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[10504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[10505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[10506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[10507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[10508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:00.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[10509]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-08T08:22:00.973
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[10510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:01.098
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[10511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:01.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[10512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:01.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[10513]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-08T08:22:01.191
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[10514]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-08T08:22:01.238
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[10515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:01.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[10516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:01.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[10517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:01.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[10518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:03.110
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[10519]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-08T08:22:03.126
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[10520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:03.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[10521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:03.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[10522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:04.251
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[10523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:04.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[10524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:04.491
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[10525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:04.521
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[10526]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-08T08:22:04.551
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[10527]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T08:22:04.581
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:04.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[10529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:04.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[10530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:05.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[10531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:05.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[10532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:05.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[10533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:06.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[10534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:06.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[10535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:15.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[10536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:20.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[10537]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-08T08:22:26.102
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[10538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:26.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[10539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:26.242
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[10540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:26.273
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[10541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:27.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[10542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:27.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[10543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:22:28.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[10544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:23:24.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[10545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:23:24.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:23:25.038
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[10547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:23:25.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[10548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:23:25.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[10549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:23:26.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[10550]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T08:23:29.188
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[10551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:23:32.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[10552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:23:32.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[10553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:25.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:25.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:25.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[10556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:25.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[10557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:26.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[10558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:26.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[10559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:27.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[10560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:27.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[10561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:27.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[10562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:27.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[10563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:27.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[10564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:28.060
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[10565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:28.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[10566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:29.028
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[10567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:29.028
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[10568]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-08T08:25:29.121
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[10569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:29.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[10570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:29.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[10571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:29.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[10572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:30.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[10573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:34.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[10574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:25:36.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[10575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:27:08.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:28:22.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[10577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:28:22.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the stopped state.

Event[10578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:30:30.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[10579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:31:05.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[10580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:31:20.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[10581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:31:30.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[10582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:32:20.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[10583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:38:49.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[10584]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-08T08:38:56.251
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[10585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:38:58.529
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10586]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-08T08:39:04.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[10587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:39:04.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[10588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:39:04.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[10589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:39:04.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[10590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:39:23.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[10591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:39:27.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:40:04.337
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Check Point Mobile service entered the running state.

Event[10593]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-08T08:40:06.739
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[10594]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T08:40:27.799
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[10595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:40:42.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[10596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:40:43.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the running state.

Event[10597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:41:25.741
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Citrix USB Monitor Driver
Service File Name:  system32\DRIVERS\ctxusbm.sys
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[10598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:43:58.138
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[10599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:51:28.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[10600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:51:58.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[10601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:51:58.684
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[10602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:53:58.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T08:59:24.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T09:05:27.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[10605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T09:13:10.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[10606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T09:13:10.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T09:13:14.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T09:20:00.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T09:20:00.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T09:25:28.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T09:46:10.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T10:20:00.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T10:20:00.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T10:27:01.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[10615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T10:38:38.594
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[10616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T11:07:01.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T11:17:15.594
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10618]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T11:20:00.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T11:20:00.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10620]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T12:00:43.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 13150 seconds.

Event[10621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T12:18:21.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T12:20:00.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T12:20:00.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T12:45:22.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T12:55:22.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T12:58:51.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:20:00.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:20:00.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:28:08.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the stopped state.

Event[10630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:32:24.961
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:37:47.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10632]:
  Log Name: System
  Source: USER32
  Date: 2014-01-08T13:39:25.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[10633]:
  Log Name: System
  Source: USER32
  Date: 2014-01-08T13:39:28.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[10634]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-08T13:39:28.067
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[10635]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T13:39:29.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[10636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10637]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-08T13:39:29.252
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[10638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[10639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[10640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[10641]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-08T13:39:29.424
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[10642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[10643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[10644]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-08T13:39:29.424
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[10645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[10646]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T13:39:29.440
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[10647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[10648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[10649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[10650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[10651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[10652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[10653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[10654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[10655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[10656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[10657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[10658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[10659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.455
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[10660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[10661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[10662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[10663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.502
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[10664]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T13:40:29.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[10665]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T13:40:29.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[10666]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T13:40:29.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 29 seconds.

Event[10667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.502
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[10668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[10669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[10670]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:29.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[10671]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-08T13:39:30.079
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[10672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:30.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[10673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:30.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[10674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:30.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[10675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:39:33.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[10676]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-08T13:39:34.432
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[10677]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-08T13:39:40.781
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?08T18:39:40.781311600Z.

Event[10678]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-08T13:40:00.874
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?08T18:39:59.610798400Z.

Event[10679]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T13:40:05.663
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10680]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-08T13:40:14.103
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[10681]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T13:40:14.758
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10682]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T13:40:14.758
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10683]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T13:40:14.758
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10684]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T13:40:14.758
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10685]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T13:40:14.758
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10686]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T13:40:14.758
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10687]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T13:40:14.758
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10688]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T13:40:14.758
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:26.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[10690]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T13:40:26.364
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[10691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:26.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[10692]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T13:40:26.458
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10693]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T13:40:28.938
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10694]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T13:40:28.954
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10695]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T13:40:28.954
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:28.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[10697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:29.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[10698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:29.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[10699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:29.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[10700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:29.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[10701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:29.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:29.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[10703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:29.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[10704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.108
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[10705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[10706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[10707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[10708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.779
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[10709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.779
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[10710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[10711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[10712]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-08T13:40:30.795
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[10713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[10714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[10715]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-08T13:40:30.826
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[10716]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-08T13:40:30.826
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[10717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[10718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[10719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[10720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[10721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[10722]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-08T13:40:30.944
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[10723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:30.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[10724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[10725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[10726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[10727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.254
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[10728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[10729]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-08T13:40:31.264
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[10730]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T13:40:31.284
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[10732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[10733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[10734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[10735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[10736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[10737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.704
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[10738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[10739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:31.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[10740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:34.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[10741]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-08T13:40:44.348
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[10742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:44.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[10743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:44.457
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[10744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:44.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[10745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:45.081
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[10746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:45.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[10747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:46.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[10748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:46.485
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[10749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:46.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[10750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:40:46.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[10751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:41:50.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[10752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:41:50.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[10753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:46.605
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:46.605
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:46.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[10756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:46.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[10757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:47.198
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[10758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:47.198
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[10759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:48.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[10760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:48.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[10761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:48.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[10762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:48.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[10763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:48.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[10764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:48.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[10765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:48.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[10766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:49.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[10767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:49.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[10768]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-08T13:42:49.195
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[10769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:49.195
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[10770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:49.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[10771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:50.022
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[10772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:50.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[10773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:53.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[10774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:42:55.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[10775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:45:35.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[10776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:45:41.793
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[10777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:45:41.793
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the stopped state.

Event[10778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:46:40.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:46:42.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[10780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:47:50.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[10781]:
  Log Name: System
  Source: USER32
  Date: 2014-01-08T13:57:56.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user NT AUTHORITY\SYSTEM for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[10782]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T13:57:58.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[10783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:57.740
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10784]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-08T13:57:57.850
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[10785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:57.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[10786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:57.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[10787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[10788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[10789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[10790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[10791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[10792]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T13:57:58.068
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[10793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[10794]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-08T13:57:58.068
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[10795]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-08T13:57:58.068
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[10796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[10797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[10798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[10799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[10800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[10801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[10802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[10803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[10804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[10805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[10806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[10807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[10808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[10809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[10810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[10811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[10812]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T14:14:13.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[10813]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T14:14:13.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[10814]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T14:14:13.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 34 seconds.

Event[10815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[10816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[10817]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-08T13:57:58.754
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[10818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:58.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[10819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:57:59.113
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[10820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:58:01.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[10821]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-08T13:58:03.076
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[10822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T13:58:03.824
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[10823]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-08T13:58:04.277
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?08T18:58:04.277288400Z.

Event[10824]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-08T14:13:40.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?08T19:13:39.595198400Z.

Event[10825]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T14:13:45.726
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10826]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-08T14:13:58.128
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[10827]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T14:13:58.814
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10828]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T14:13:58.814
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10829]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T14:13:58.814
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10830]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T14:13:58.814
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10831]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T14:13:58.814
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10832]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T14:13:58.814
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10833]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T14:13:58.814
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10834]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-08T14:13:58.814
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[10835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:08.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[10836]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T14:14:08.564
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[10837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:08.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[10838]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T14:14:08.767
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10839]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T14:14:11.871
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10840]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T14:14:11.887
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10841]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T14:14:12.604
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:12.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[10843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:12.760
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[10844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:12.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[10845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:12.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[10846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:13.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[10847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:13.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[10848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:13.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[10849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[10850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[10851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[10852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[10853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[10854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[10855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[10856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[10857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[10858]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-08T14:14:14.820
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[10859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.835
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[10860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[10861]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-08T14:14:14.851
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[10862]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-08T14:14:14.851
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[10863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[10864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[10865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[10866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:14.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[10867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:15.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[10868]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-08T14:14:15.834
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[10869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:15.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[10870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.013
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[10871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[10872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[10873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[10874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.133
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[10875]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-08T14:14:16.143
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[10876]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-08T14:14:16.153
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[10877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.303
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[10878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[10879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.343
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[10880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[10881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[10882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.453
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[10883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[10884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.543
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[10885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:16.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[10886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:23.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[10887]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-08T14:14:28.014
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[10888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:28.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[10889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:28.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[10890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:28.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[10891]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:28.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[10892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:28.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[10893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:29.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[10894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:29.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:29.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[10896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:29.465
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[10897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:29.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[10898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:31.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[10899]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T14:14:34.550
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[10900]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-08T14:14:36.329
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[10901]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-08T14:14:47.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[10902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:47.378
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[10903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:47.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[10904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:47.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[10905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:48.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[10906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:48.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[10907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:14:48.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[10908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:15:00.155
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[10909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:15:03.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:15:16.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Check Point Mobile service entered the running state.

Event[10911]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-08T14:15:22.567
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[10912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:15:22.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[10913]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-08T14:15:23.019
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[10914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:15:27.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the running state.

Event[10915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:15:33.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[10916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:15:33.295
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[10917]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T14:15:35.412
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[10918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:29.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:29.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:30.429
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[10921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:30.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[10922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:30.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[10923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:31.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[10924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:31.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[10925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:31.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[10926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:31.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[10927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:31.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[10928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:31.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[10929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:32.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[10930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:32.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[10931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:32.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[10932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:32.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[10933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:34.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[10934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:36.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[10935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:16:45.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[10936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:17:33.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[10937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:19:38.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[10938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:20:00.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:20:00.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:21:33.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[10941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:27:38.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[10942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:27:38.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[10943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:28:06.678
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:30:59.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:38:27.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10946]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2014-01-08T14:42:23.267
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name dns.msftncsi.com timed out after none of the configured DNS servers responded.

Event[10947]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-08T14:42:37.553
  Event ID: 4100
  Task: Diagnosis Success
  Level: Information
  Opcode: Info
  Keyword: Core Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The Network Diagnostics Framework has completed the diagnosis phase of operation, but no network problem was identified.

Event[10948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:42:52.548
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[10949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:42:54.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:56:31.457
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[10951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T14:59:30.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T15:03:57.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T15:20:00.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T15:20:00.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T15:24:42.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T15:34:42.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T15:44:14.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[10958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T15:44:42.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[10959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:02:58.704
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:05:46.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:15:46.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:20:00.324
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:20:00.324
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:20:58.704
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:32:33.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:40:54.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[10967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:50:54.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[10968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T16:53:33.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[10969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:04:42.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[10970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:04:42.491
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[10971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:20:00.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[10972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:20:00.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[10973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:26:27.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[10974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:36:28.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[10975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:37:02.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[10976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:37:12.840
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[10977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:38:02.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[10978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:45:38.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:55:52.062
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[10980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:55:52.296
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[10981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T17:55:52.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[10982]:
  Log Name: System
  Source: USER32
  Date: 2014-01-08T18:01:49.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[10983]:
  Log Name: System
  Source: USER32
  Date: 2014-01-08T18:01:53.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[10984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:52.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[10985]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-08T18:01:53.400
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[10986]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-08T18:01:54.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[10987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[10988]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-08T18:01:54.352
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[10989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[10990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[10991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[10992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[10993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[10994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[10995]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-08T18:01:54.648
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[10996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[10997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[10998]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-08T18:01:54.648
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[10999]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-08T18:01:54.648
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[11000]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[11001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[11002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[11003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[11004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[11005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[11006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[11007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[11008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[11009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[11010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[11011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[11012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[11013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[11014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.929
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[11015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.960
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[11016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:54.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[11017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:55.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[11018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:55.038
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[11019]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-10T23:09:32.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[11020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:55.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[11021]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-10T23:09:32.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[11022]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-10T23:09:32.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 28 seconds.

Event[11023]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-08T18:01:55.319
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[11024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:55.319
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[11025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:55.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[11026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:55.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[11027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-08T18:01:57.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[11028]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-08T18:01:59.656
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[11029]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-08T18:02:05.834
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?08T23:02:05.834211000Z.

Event[11030]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-10T23:09:05.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?11T04:09:04.595198400Z.

Event[11031]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-10T23:09:10.663
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11032]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-10T23:09:19.680
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[11033]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-10T23:09:20.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11034]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-10T23:09:20.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11035]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-10T23:09:20.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11036]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-10T23:09:20.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11037]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-10T23:09:20.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11038]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-10T23:09:20.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11039]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-10T23:09:20.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11040]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-10T23:09:20.351
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:30.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[11042]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-10T23:09:30.335
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[11043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:30.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[11044]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-10T23:09:30.475
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11045]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-10T23:09:32.909
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11046]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-10T23:09:32.909
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11047]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-10T23:09:32.909
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:32.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[11049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:32.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[11050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:32.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[11051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:32.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[11052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.002
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[11053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.034
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[11054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.049
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[11055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[11056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[11057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[11058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[11059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[11060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[11061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[11062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[11063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[11064]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-10T23:09:33.439
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[11065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[11066]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[11067]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-10T23:09:33.470
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[11068]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-10T23:09:33.470
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[11069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[11070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[11071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[11072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.486
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[11073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.548
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[11074]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-10T23:09:33.548
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[11075]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.548
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[11076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.694
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[11077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[11078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[11079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[11080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:33.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[11081]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-10T23:09:33.824
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[11082]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-10T23:09:33.834
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:34.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[11084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:34.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[11085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:34.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[11086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:34.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[11087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:34.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[11088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:34.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[11089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:34.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[11090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:34.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[11091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:34.374
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[11092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:38.911
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[11093]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-10T23:09:38.911
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[11094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:38.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[11095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:39.005
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[11096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:40.097
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[11097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:40.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[11098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:40.799
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[11099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:41.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[11100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:41.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[11101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:45.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[11102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:45.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[11103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:45.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[11104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:09:45.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[11105]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-10T23:09:47.569
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[11106]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-10T23:09:51.407
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[11107]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-10T23:10:02.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[11108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:10:02.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[11109]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:10:02.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[11110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:10:03.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[11111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:10:03.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[11112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:10:03.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[11113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:10:03.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[11114]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-10T23:10:43.921
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[11115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:10:43.921
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[11116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:10:46.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[11117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:41.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11118]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:41.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:41.829
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[11120]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:42.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[11121]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:42.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[11122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:42.375
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[11123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:42.375
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[11124]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:42.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[11125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:42.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[11126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:42.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[11127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:42.905
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[11128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:43.248
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[11129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:43.248
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[11130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:43.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[11131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:43.919
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[11132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:44.481
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[11133]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2014-01-10T23:11:45.557
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[11134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:47.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[11135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:11:54.028
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11136]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2014-01-10T23:11:59.956
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[11137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:12:00.565
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[11138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:12:43.760
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[11139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:13:23.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[11140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:13:23.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[11141]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-10T23:13:27.861
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Saturday, ?January ?11, ?2014 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.165.1564.0)

Event[11142]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-10T23:13:50.910
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[11143]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-10T23:13:54.280
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[11144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:14:02.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[11145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:14:05.852
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[11146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:14:25.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[11147]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:14:25.203
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[11148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:14:25.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[11149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:14:26.966
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[11150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:14:34.709
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\f7c2bd21-6781-420b-8b4d-d71453ce8975
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[11151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:14:39.382
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[11152]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-10T23:14:54.878
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.1564.0)

Event[11153]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-10T23:14:59.403
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.1564.0)

Event[11154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:15:59.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[11155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:16:27.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[11156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:17:07.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[11157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:17:07.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[11158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:17:16.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[11159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:17:18.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[11160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:17:46.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[11161]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2014-01-10T23:18:16.551
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name feeds.nbcnews.com timed out after none of the configured DNS servers responded.

Event[11162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:18:31.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[11163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:19:16.278
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[11164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:19:47.535
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[11165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:19:59.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[11166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:20:00.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:20:00.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:20:47.597
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[11169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:20:56.365
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[11170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:21:32.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[11171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:21:52.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[11172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:22:54.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[11173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:22:55.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[11174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:22:58.223
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[11175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:23:07.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[11176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:24:32.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[11177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:24:54.674
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[11178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:24:54.943
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[11179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:24:55.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[11180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:31:32.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[11181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:33:15.278
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[11182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:33:32.425
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[11183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:33:34.399
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\31d60e57-40a7-4615-9d6a-af4223898a37
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[11184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:40:44.532
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[11185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:40:44.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[11186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:40:44.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[11187]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2014-01-10T23:40:44.859
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name images.designermediacdn.com timed out after none of the configured DNS servers responded.

Event[11188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:41:11.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[11189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:41:38.546
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[11190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:41:38.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[11191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:41:44.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[11192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:42:34.540
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[11193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:42:34.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[11194]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.168
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about network adapter diagnosis: 

Network adapter Wireless Network Connection driver information:

   Description . . . . . . . . . . : ASUS EZ N 802.11b/g/n Wireless USB Adapter
   Manufacturer  . . . . . . . . . : ASUSTeK Computer Inc.
   Provider  . . . . . . . . . . . : Realtek Semiconductor Corp.
   Version   . . . . . . . . . . . : 1085.7.922.2009
   Inf File Name . . . . . . . . . : C:\Windows\INF\oem2.inf
   Inf File Date . . . . . . . . . : Tuesday, September 22, 2009  7:35:04 AM
   Section Name  . . . . . . . . . : RTL8192su.ndi
   Hardware ID . . . . . . . . . . : usb\vid_0b05&pid_1786
   Instance Status Flags . . . . . : 0x180600a
   Device Manager Status Code  . . : 0
   IfType  . . . . . . . . . . . . : 71
   Physical Media Type . . . . . . : 9


Event[11195]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.308
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about network adapter diagnosis: 

Network adapter Wireless Network Connection 2 driver information:

   Description . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
   Manufacturer  . . . . . . . . . : Microsoft
   Provider  . . . . . . . . . . . : Microsoft
   Version   . . . . . . . . . . . : 6.1.7600.16385
   Inf File Name . . . . . . . . . : c:\windows\inf\netvwifimp.inf
   Inf File Date . . . . . . . . . : Monday, July 13, 2009  8:42:54 PM
   Section Name  . . . . . . . . . : vwifimp.ndi
   Hardware ID . . . . . . . . . . : {5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp
   Instance Status Flags . . . . . : 0x180200a
   Device Manager Status Code  . . : 0
   IfType  . . . . . . . . . . . . : 71
   Physical Media Type . . . . . . : 9


Event[11196]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.371
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about network adapter diagnosis: 

Network adapter VMware Network Adapter VMnet1 driver information:

   Description . . . . . . . . . . : VMware Virtual Ethernet Adapter for VMnet1
   Manufacturer  . . . . . . . . . : VMware, Inc.
   Provider  . . . . . . . . . . . : VMware, Inc.
   Version   . . . . . . . . . . . : 4.2.1.0
   Inf File Name . . . . . . . . . : C:\Windows\INF\oem8.inf
   Inf File Date . . . . . . . . . : Friday, October 18, 2013  5:44:58 PM
   Section Name  . . . . . . . . . : VMnetAdapter1.Install
   Hardware ID . . . . . . . . . . : *vmnetadapter1
   Instance Status Flags . . . . . : 0x1802401
   Device Manager Status Code  . . : 22
   IfType  . . . . . . . . . . . . : 6
   Physical Media Type . . . . . . : 0


Event[11197]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.433
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about network adapter diagnosis: 

Network adapter VMware Network Adapter VMnet8 driver information:

   Description . . . . . . . . . . : VMware Virtual Ethernet Adapter for VMnet8
   Manufacturer  . . . . . . . . . : VMware, Inc.
   Provider  . . . . . . . . . . . : VMware, Inc.
   Version   . . . . . . . . . . . : 4.2.1.0
   Inf File Name . . . . . . . . . : C:\Windows\INF\oem8.inf
   Inf File Date . . . . . . . . . : Friday, October 18, 2013  5:44:58 PM
   Section Name  . . . . . . . . . : VMnetAdapter8.Install
   Hardware ID . . . . . . . . . . : *vmnetadapter8
   Instance Status Flags . . . . . : 0x1802401
   Device Manager Status Code  . . : 22
   IfType  . . . . . . . . . . . . : 6
   Physical Media Type . . . . . . : 0


Event[11198]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.433
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Auto Configuration
 Initialize status: Success

Information for connection being diagnosed

Result of diagnosis: No problem found





Event[11199]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.433
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Connection incident diagnosed
 Auto Configuration ID: 4
 Connection ID: 4

Connection status summary
 Connection started at: 2014-01-10 23:42:35-160
 Profile match: Success
 Pre-Association: Success
 Association: Fail
 Security and Authentication: Not started

List of visible access point(s): 2 item(s) total, 2 item(s) displayed
        BSSID		BSS Type PHY	Signal(dB)	Chnl/freq    SSID
-------------------------------------------------------------------------
50-63-13-02-80-26	Infra	 g	-45		10	 PS3-7012561
5C-D9-98-E4-92-E3	Infra	 <unknown>	-57		10	 ABg73

Connection History

 Information for Auto Configuration ID 4

  List of visible networks: 2 item(s) total, 2 item(s) displayed
  BSS Type PHY	Security	Signal(RSSI)	Compatible	SSID
  ------------------------------------------------------------------------------
  Infra	 g	Yes		100	Yes		PS3-7012561
  Infra	 <unknown>	Yes		76	Yes		ABg73

  List of preferred networks: 1 item(s)
   Profile: ABg73
    SSID: ABg73
    SSID length: 5
    Connection mode: Infra
    Security: Yes
    Set by group policy: No
    Connect even if network is not broadcasting: No
    Connectable: Yes

 Information for Connection ID 5
 Connection started at: 2014-01-10 23:42:45-173
  Auto Configuration ID: 4
  Profile: ABg73
  SSID: ABg73
  SSID length: 5
  Connection mode: Infra
  Security: Yes
  Pre-Association and Association
   Connectivity settings provided by hardware manufacturer (IHV): No
   Security settings provided by hardware manufacturer (IHV): No
   Profile matches network requirements: Success
   Pre-association status: Success
   Association status: Fail 0x00038002
   Association reason code: 0x00000001

 Information for Connection ID 4
 Connection started at: 2014-01-10 23:42:35-160
  Auto Configuration ID: 4
  Profile: ABg73
  SSID: ABg73
  SSID length: 5
  Connection mode: Infra
  Security: Yes
  Pre-Association and Association
   Connectivity settings provided by hardware manufacturer (IHV): No
   Security settings provided by hardware manufacturer (IHV): No
   Profile matches network requirements: Success
   Pre-association status: Success
   Association status: Fail 0x00038002
   Association reason code: 0x00000000

 Information for Auto Configuration ID 3

  List of visible networks: 2 item(s) total, 2 item(s) displayed
  BSS Type PHY	Security	Signal(RSSI)	Compatible	SSID
  ------------------------------------------------------------------------------
  Infra	 g	Yes		100	Yes		PS3-7012561
  Infra	 <unknown>	Yes		76	Yes		ABg73

  List of preferred networks: 1 item(s)
   Profile: ABg73
    SSID: ABg73
    SSID length: 5
    Connection mode: Infra
    Security: Yes
    Set by group policy: No
    Connect even if network is not broadcasting: No
    Connectable: Yes

 Information for Connection ID 3
 Connection started at: 2014-01-10 23:41:36-892
  Auto Configuration ID: 3
  Profile: ABg73
  SSID: ABg73
  SSID length: 5
  Connection mode: Infra
  Security: Yes
  Pre-Association and Association
   Connectivity settings provided by hardware manufacturer (IHV): No
   Security settings provided by hardware manufacturer (IHV): No
   Profile matches network requirements: Success
   Pre-association status: Success
   Association status: Success
    Last AP:  5c-d9-98-e4-92-e3
  Security and Authentication
   Configured security type: WPA2-PSK
   Configured encryption type: CCMP(AES)
   802.1X protocol: No
   Key exchange initiated: Yes
    Unicast key received: Yes
    Multicast key received: Yes
   Number of security packets received: 0
   Number of security packets sent: 0
   Security attempt status: Success
 Connectivity
   Packet statistics
    Ndis Rx: 0
    Ndis Tx: 0
    Unicast decrypt success: 2756
    Multicast decrypt success: 0
    Unicast decrypt failure: 0
    Multicast decrypt failure: 0
    Rx success: 3620
    Rx failure: 0
    Tx success: 2929
    Tx failure: 0
    Tx retry: 0
    Tx multiple retry: 0
    Tx max lifetime exceeded: 0
    Tx ACK failure: 0
   Roaming history: 2 item(s)
     Times: 2014-01-10 23:42:34-120
    Roamed from BSSID:  5c-d9-98-e4-92-e3
     Reason: 0x00010001
     Times: 2014-01-10 23:42:00-033
    Roamed from BSSID:  5c-d9-98-e4-92-e3
     Reason: 0x00000008
 Disconnected from BSSID:  00-00-00-00-00-00   Reason: 0x00000205

 Information for Auto Configuration ID 2

  List of visible networks: 2 item(s) total, 2 item(s) displayed
  BSS Type PHY	Security	Signal(RSSI)	Compatible	SSID
  ------------------------------------------------------------------------------
  Infra	 g	Yes		100	Yes		PS3-7012561
  Infra	 <unknown>	Yes		76	Yes		ABg73

  List of preferred networks: 1 item(s)
   Profile: ABg73
    SSID: ABg73
    SSID length: 5
    Connection mode: Infra
    Security: Yes
    Set by group policy: No
    Connect even if network is not broadcasting: No
    Connectable: Yes

 Information for Connection ID 2
 Connection started at: 2014-01-10 23:40:42-566
  Auto Configuration ID: 2
  Profile: ABg73
  SSID: ABg73
  SSID length: 5
  Connection mode: Infra
  Security: Yes
  Pre-Association and Association
   Connectivity settings provided by hardware manufacturer (IHV): No
   Security settings provided by hardware manufacturer (IHV): No
   Profile matches network requirements: Success
   Pre-association status: Success
   Association status: Success
    Last AP:  5c-d9-98-e4-92-e3
  Security and Authentication
   Configured security type: WPA2-PSK
   Configured encryption type: CCMP(AES)
   802.1X protocol: No
   Key exchange initiated: Yes
    Unicast key received: Yes
    Multicast key received: Yes
   Number of security packets received: 0
   Number of security packets sent: 0
   Security attempt status: Success
 Connectivity
   Packet statistics
    Ndis Rx: 0
    Ndis Tx: 0
    Unicast decrypt success: 964
    Multicast decrypt success: 0
    Unicast decrypt failure: 0
    Multicast decrypt failure: 0
    Rx success: 1530
    Rx failure: 0
    Tx success: 1314
    Tx failure: 0
    Tx retry: 65535
    Tx multiple retry: 0
    Tx max lifetime exceeded: 0
    Tx ACK failure: 0
   Roaming history: 2 item(s)
     Times: 2014-01-10 23:41:35-862
    Roamed from BSSID:  5c-d9-98-e4-92-e3
     Reason: 0x00010001
     Times: 2014-01-10 23:41:13-019
    Roamed from BSSID:  5c-d9-98-e4-92-e3
     Reason: 0x00000008
 Disconnected from BSSID:  00-00-00-00-00-00   Reason: 0x00000205



Event[11200]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.449
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless connectivity diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Auto Configuration
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi

Result of diagnosis: Problem found
 Issue referred to: RNWF MSM Helper Class

Root cause:
Windows could not connect to "ABg73"
You can try to connect again.

Repair option:
Reset your wireless network adapter
This will disable and then enable the network adapter "Wireless Network Connection" on this computer.



Event[11201]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.449
  Event ID: 6100
  Task: Helper Class Info
  Level: Information
  Opcode: Info
  Keyword: Helper Class Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
Details about wireless network adapter diagnosis: 

For complete information about this session see the wireless connectivity information event.

Helper Class: Native WiFi MSM
 Initialize status: Success

Information for connection being diagnosed
 Interface GUID: 1dec5e89-d26f-4180-a9a0-9c30607b8f0c
 Interface name: ASUS EZ N 802.11b/g/n Wireless USB Adapter
 Interface type: Native WiFi
 Profile: ABg73
 SSID: ABg73
 SSID length: 5
 Connection mode: Infra
 Security: Yes
 Connect even if network is not broadcasting: No

Result of diagnosis: Problem found

Root cause:
Wireless association to "ABg73" failed for an unknown reason

Detailed root cause:
802.11 connection failed due to status code 1: unspecified failure

Repair option:
Try connecting to "ABg73" again
If the problem continues, try resetting the access point, or contact the network administrator or your hardware manufacturer for further assistance.



Event[11202]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.449
  Event ID: 4000
  Task: Diagnosis Success
  Level: Information
  Opcode: Info
  Keyword: Core Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The Network Diagnostics Framework has completed the diagnosis phase of operation. The following repair option was offered: 

Helper Class Name: RNWF MSM Helper Class

Root Cause: Wireless association to "ABg73" failed for an unknown reason 

Root Cause Guid: {5C92E4E9-4699-418C-9DB6-82D57DCBF59F} 

Repair option: Try connecting to "ABg73" again
If the problem continues, try resetting the access point, or contact the network administrator or your hardware manufacturer for further assistance. 

RepairGuid: {B56FDACA-62E3-43EF-8110-BC3E71360B84} 

Seconds required for repair: 300 

Security context required for repair: 0

Interface: Wireless Network Connection ({1DEC5E89-D26F-4180-A9A0-9C30607B8F0C})

Event[11203]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.449
  Event ID: 4000
  Task: Diagnosis Success
  Level: Information
  Opcode: Info
  Keyword: Core Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The Network Diagnostics Framework has completed the diagnosis phase of operation. The following repair option was offered: 

Helper Class Name: Dot3HelperClass

Root Cause: A network cable is not properly plugged in or may be broken 

Root Cause Guid: {4DA030B8-86E5-4B6A-A879-2FFF8443B527} 

Repair option: Plug an Ethernet cable into this computer
An Ethernet cable looks like a telephone cable but with larger connectors on the ends. Plug this cable into the opening on the back or side of the computer.
Make sure the other end of the cable is plugged into the router. If that does not help, try using a different cable. 

RepairGuid: {1296DFF0-D04E-4BE1-A512-90F04DDFA3E6} 

Seconds required for repair: 0 

Security context required for repair: 0

Interface: Local Area Connection* 16 ({D1173DBA-8E0E-428D-89E9-C3B45CFD53E2})

Event[11204]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.449
  Event ID: 4000
  Task: Diagnosis Success
  Level: Information
  Opcode: Info
  Keyword: Core Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The Network Diagnostics Framework has completed the diagnosis phase of operation. The following repair option was offered: 

Helper Class Name: NdisHC

Root Cause: The VMware Network Adapter VMnet8 adapter is disabled 

Root Cause Guid: {60372FD2-AD60-45C2-BD83-6B827FC438DF} 

Repair option: Enable the 'VMware Network Adapter VMnet8' adapter 

RepairGuid: {07D37F7B-FA5E-4443-BDA7-AB107B29AFB6} 

Seconds required for repair: 70 

Security context required for repair: 37

Interface: VMware Network Adapter VMnet8 ({57306F3B-FD76-440A-B72B-B11D3F3C6F23})

Event[11205]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.449
  Event ID: 4000
  Task: Diagnosis Success
  Level: Information
  Opcode: Info
  Keyword: Core Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The Network Diagnostics Framework has completed the diagnosis phase of operation. The following repair option was offered: 

Helper Class Name: NdisHC

Root Cause: The VMware Network Adapter VMnet1 adapter is disabled 

Root Cause Guid: {60372FD2-AD60-45C2-BD83-6B827FC438DF} 

Repair option: Enable the 'VMware Network Adapter VMnet1' adapter 

RepairGuid: {07D37F7B-FA5E-4443-BDA7-AB107B29AFB6} 

Seconds required for repair: 70 

Security context required for repair: 37

Interface: VMware Network Adapter VMnet1 ({76CC605B-A2FA-44AB-9A7C-7AAE2AA5948E})

Event[11206]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:05.449
  Event ID: 4000
  Task: Diagnosis Success
  Level: Information
  Opcode: Info
  Keyword: Core Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The Network Diagnostics Framework has completed the diagnosis phase of operation. The following repair option was offered: 

Helper Class Name: RNWF MSM Helper Class

Root Cause: Wireless association to "ABg73" failed for an unknown reason 

Root Cause Guid: {5C92E4E9-4699-418C-9DB6-82D57DCBF59F} 

Repair option: Reset your wireless network adapter
This will disable and then enable the network adapter "Wireless Network Connection" on this computer. 

RepairGuid: {07D37F7B-FA5E-4443-BDA7-AB107B29AFB9} 

Seconds required for repair: 300 

Security context required for repair: 80

Interface: Wireless Network Connection ({1DEC5E89-D26F-4180-A9A0-9C30607B8F0C})

Event[11207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:43:06.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:43:12.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[11209]:
  Log Name: System
  Source: Microsoft-Windows-Diagnostics-Networking
  Date: 2014-01-10T23:43:12.593
  Event ID: 5000
  Task: Validation Success
  Level: Information
  Opcode: Info
  Keyword: Core Events
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The Network Diagnostics Framework has completed the repair phase of operation. The following repair option or work-around was executed: 

Helper Class Name: RNWF MSM Helper Class 

Repair option: Reset your wireless network adapter
This will disable and then enable the network adapter "Wireless Network Connection" on this computer. 

RepairGuid: {07D37F7B-FA5E-4443-BDA7-AB107B29AFB9} 

The repair option appears to have successfully fixed the diagnosed problem.

Event[11210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:48:19.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[11211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:48:20.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[11212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:50:24.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[11213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:51:03.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[11214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:55:22.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[11215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:56:10.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[11216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:56:30.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[11217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:56:53.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Credential Manager service entered the running state.

Event[11218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:57:55.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[11219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:59:08.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[11220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-10T23:59:09.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[11221]:
  Log Name: System
  Source: USER32
  Date: 2014-01-11T00:00:31.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[11222]:
  Log Name: System
  Source: USER32
  Date: 2014-01-11T00:00:33.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[11223]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-11T00:00:34.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[11224]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-11T00:00:33.723
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[11225]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-11T00:00:34.004
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[11226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[11227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.097
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[11228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[11229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[11230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[11231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[11232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[11233]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-11T00:00:34.206
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[11234]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-11T00:00:34.206
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[11235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[11236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[11237]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-11T00:00:34.222
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[11238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[11239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[11240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[11241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[11242]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-13T22:07:47.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[11243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[11244]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-13T22:07:47.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[11245]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-13T22:07:47.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[11246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[11247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[11248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[11249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[11250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[11251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[11252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[11253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Credential Manager service entered the stopped state.

Event[11254]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-11T00:00:34.238
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?11T05:00:34.238000000Z from ?2014?-?01?-?11T05:00:34.238145600Z.

Event[11255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[11256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[11257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[11258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[11259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[11260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[11261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[11262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.331
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[11263]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[11264]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[11265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.487
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[11266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.487
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[11267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[11268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[11269]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-11T00:00:34.940
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[11270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:34.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[11271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:35.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[11272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:35.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[11273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-11T00:00:38.075
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[11274]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-11T00:00:39.214
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[11275]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-11T00:00:40.712
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?11T05:00:40.712011300Z.

Event[11276]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-13T22:07:25.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?14T03:07:24.595198400Z.

Event[11277]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-13T22:07:30.523
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11278]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-13T22:07:39.555
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[11279]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-13T22:07:40.242
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11280]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-13T22:07:40.242
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11281]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-13T22:07:40.242
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11282]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-13T22:07:40.242
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11283]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-13T22:07:40.242
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11284]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-13T22:07:40.242
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11285]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-13T22:07:40.242
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11286]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-13T22:07:40.242
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:45.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[11288]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-13T22:07:45.296
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[11289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:45.343
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[11290]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-13T22:07:45.358
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11291]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-13T22:07:47.808
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11292]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-13T22:07:47.808
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11293]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-13T22:07:47.808
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:47.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[11295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:47.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[11296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:47.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[11297]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:47.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[11298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:47.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[11299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:47.964
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[11300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:47.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[11301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.244
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[11302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[11303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[11304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.322
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[11305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[11306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[11307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[11308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[11309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[11310]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-13T22:07:48.354
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[11311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[11312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[11313]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-13T22:07:48.385
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[11314]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-13T22:07:48.400
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[11315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[11316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[11317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.416
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[11318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[11319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[11320]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-13T22:07:48.513
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[11321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[11322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[11323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[11324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[11325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[11326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:48.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[11327]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-13T22:07:48.993
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[11328]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-13T22:07:49.013
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:49.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[11330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:49.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[11331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:49.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[11332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:49.263
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[11333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:49.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[11334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:49.303
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[11335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:49.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[11336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:49.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[11337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:49.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[11338]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-13T22:07:53.323
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[11339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:53.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[11340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:53.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[11341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:53.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[11342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:53.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[11343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:54.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[11344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:07:55.242
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[11345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:00.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[11346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:00.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[11347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:00.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[11348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:00.733
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[11349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:00.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[11350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:02.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[11351]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-13T22:08:04.758
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[11352]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-13T22:08:10.233
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[11353]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-13T22:08:21.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[11354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:21.548
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[11355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:21.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[11356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:23.249
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[11357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:24.075
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[11358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:24.075
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[11359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:08:24.075
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[11360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:09:06.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[11361]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-13T22:09:59.298
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[11362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:09:59.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[11363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:01.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:01.295
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[11365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:01.482
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:01.810
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[11367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:01.810
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[11368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:02.231
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[11369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:02.231
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[11370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:02.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[11371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:02.465
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[11372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:02.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[11373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:02.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[11374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:03.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[11375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:03.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[11376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:03.744
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[11377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:03.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[11378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:04.508
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[11379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:07.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[11380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:12.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[11381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:15.569
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[11382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:18.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:51.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[11384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:10:55.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[11385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:11:07.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[11386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:11:36.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[11387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:12:05.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[11388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:12:36.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[11389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:13:29.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[11390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:18:28.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[11391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:20:00.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:20:00.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:20:55.985
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[11394]:
  Log Name: System
  Source: Microsoft-Windows-DriverFrameworks-UserMode
  Date: 2014-01-13T22:21:01.991
  Event ID: 10114
  Task: Startup of the UMDF reflector
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The UMDF reflector was unable to complete startup because the WUDFPf service was not found.  This service may be started later during boot, at which point Windows will attempt to start the device again.

Event[11395]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-PnP
  Date: 2014-01-13T22:21:01.991
  Event ID: 219
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_LEXAR&PROD_USB_FLASH_DRIVE&REV_8.07#2012010713564134377C&0#.

Event[11396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:21:04.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.

Event[11397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:21:06.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[11398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:21:07.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[11399]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-13T22:25:01.410
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[11400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:25:36.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[11401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:30:30.548
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[11402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:30:37.239
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[11403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:31:23.396
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[11404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:31:23.677
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[11405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:31:23.739
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[11406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:45:46.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[11407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:50:02.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[11408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:51:13.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[11409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T22:51:52.905
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[11410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:02:13.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:06:00.938
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINanoRun_A94B
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\A94B\PSINanoRun_A94B.exe
Service Type:  user mode service
Service Start Type:  demand start
Service Account:  LocalSystem

Event[11412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:06:01.781
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PSINanoRun_A94B service entered the running state.

Event[11413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:06:02.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PSINanoRun_A94B service entered the stopped state.

Event[11414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:08:13.705
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  npupnyvp
Service File Name:  npupnyvp.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[11415]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-13T23:08:13.752
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'npupnyvp' (6.0, ?2013?-?12?-?09T02:09:54.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11416]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-13T23:08:27.246
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'npupnyvp' (Version 6.0, ?2013?-?12?-?09T02:09:54.000000000Z) unloaded successfully.

Event[11417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:08:39.857
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Google Update Service (gupdate)
Service File Name:  "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
Service Type:  user mode service
Service Start Type:  auto start
Service Account:  LocalSystem

Event[11418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:08:39.888
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  Google Update Service (gupdatem)
Service File Name:  "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc
Service Type:  user mode service
Service Start Type:  demand start
Service Account:  LocalSystem

Event[11419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:08:40.715
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the running state.

Event[11420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:08:46.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the stopped state.

Event[11421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:12:20.885
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[11422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:13:01.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[11423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:13:06.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the running state.

Event[11424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:13:30.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the stopped state.

Event[11425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:18:15.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the stopped state.

Event[11426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:20:00.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:20:00.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:28:00.987
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[11429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:28:50.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[11430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:30:50.252
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[11431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:30:52.012
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[11432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:30:52.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[11433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:30:53.762
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\f70cb76d-6b79-4bf5-b5c0-93ffb7adf90e
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[11434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:30:54.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[11435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:32:58.705
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[11436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:32:58.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[11437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:35:19.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[11438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:38:03.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:38:58.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[11440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:52:17.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[11441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:56:27.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:59:48.747
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  PSINanoRun_EAAF
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\EAAF\PSINanoRun_EAAF.exe
Service Type:  user mode service
Service Start Type:  demand start
Service Account:  LocalSystem

Event[11443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:59:49.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PSINanoRun_EAAF service entered the running state.

Event[11444]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-13T23:59:49.730
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PSINanoRun_EAAF service entered the stopped state.

Event[11445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T00:20:00.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T00:20:00.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T00:36:45.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[11448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T00:41:11.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T00:44:02.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[11450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T00:51:11.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[11451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:15:08.730
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[11452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:20:00.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:20:00.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11454]:
  Log Name: System
  Source: USER32
  Date: 2014-01-14T01:26:56.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[11455]:
  Log Name: System
  Source: USER32
  Date: 2014-01-14T01:27:02.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[11456]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-14T01:27:02.569
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[11457]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-14T01:27:03.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[11458]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-14T01:27:03.458
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[11459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[11460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[11461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[11462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[11463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[11464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[11465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[11466]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-14T01:27:03.770
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[11467]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-14T01:27:03.770
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[11468]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-14T01:27:03.770
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[11469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[11470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[11471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[11472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[11473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[11474]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[11475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[11476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[11477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[11478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[11479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[11480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[11481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[11482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[11483]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:03.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[11484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:04.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[11485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:04.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[11486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:04.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[11487]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:04.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[11488]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-14T20:15:30.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[11489]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-14T20:15:30.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[11490]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-14T20:15:30.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[11491]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-14T01:27:04.675
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[11492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:04.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[11493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:04.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[11494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:05.377
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[11495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:05.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[11496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:06.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[11497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:07.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[11498]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-14T01:27:08.793
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[11499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T01:27:11.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[11500]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-14T01:27:14.565
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?14T06:27:14.565780400Z.

Event[11501]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-14T20:15:04.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?15T01:15:03.595198400Z.

Event[11502]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T20:15:09.538
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11503]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-14T20:15:16.824
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[11504]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T20:15:17.526
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11505]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T20:15:17.526
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11506]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T20:15:17.526
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11507]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T20:15:17.526
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11508]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T20:15:17.526
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11509]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T20:15:17.526
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11510]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T20:15:17.526
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11511]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T20:15:17.526
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:26.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[11513]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-14T20:15:26.168
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[11514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:26.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[11515]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T20:15:26.308
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11516]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T20:15:29.210
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11517]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T20:15:29.881
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11518]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T20:15:29.896
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:29.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[11520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:29.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[11521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:29.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[11522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:29.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[11523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:30.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[11524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:30.177
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[11525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:30.177
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[11526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[11527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[11528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[11529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[11530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[11531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[11532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[11533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[11534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[11535]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-14T20:15:31.831
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[11536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[11537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:31.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[11538]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-14T20:15:31.846
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[11539]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-14T20:15:32.174
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[11540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[11541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[11542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[11543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[11544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[11545]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-14T20:15:32.571
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[11546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[11547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[11548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[11549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[11550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[11551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:32.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[11552]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-14T20:15:32.891
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[11553]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T20:15:32.911
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:33.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[11555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:33.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[11556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:33.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[11557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:33.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[11558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:33.291
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[11559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:33.301
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[11560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:33.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[11561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:33.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[11562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:33.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[11563]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-14T20:15:38.239
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[11564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:38.239
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[11565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:38.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[11566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:38.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[11567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:39.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[11568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:39.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[11569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:39.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[11570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:41.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[11571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:41.796
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[11572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:45.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[11573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:45.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[11574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:46.850
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[11575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:15:47.365
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[11576]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-14T20:15:49.923
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[11577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:16:48.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[11578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:16:48.829
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[11579]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-14T20:17:10.685
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[11580]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-14T20:17:30.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[11581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:30.174
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[11582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:30.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[11583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:31.437
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[11584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:31.437
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[11585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:31.453
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[11586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:41.921
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:41.921
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:42.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[11589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:42.498
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[11590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:42.498
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[11591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:42.841
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[11592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:42.841
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[11593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:42.997
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[11594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:43.044
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[11595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:43.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[11596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:43.231
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the running state.

Event[11597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:43.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the stopped state.

Event[11598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:43.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[11599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:43.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[11600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:43.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[11601]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-14T20:17:44.027
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[11602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:44.027
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[11603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:44.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[11604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:44.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[11605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:45.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[11606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:17:47.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[11607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:18:22.231
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the stopped state.

Event[11608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:18:37.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[11609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:18:43.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[11610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:18:48.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[11611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:19:02.011
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[11612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:19:12.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[11613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:19:20.856
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[11614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:20:00.125
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:20:00.125
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:20:02.028
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[11617]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-14T20:20:11.279
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[11618]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:24:53.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[11619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:25:02.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[11620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:26:19.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:29:12.039
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[11622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:29:12.273
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[11623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:29:12.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[11624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:30:13.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[11625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:30:14.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[11626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:35:11.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[11627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:36:20.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[11628]:
  Log Name: System
  Source: USER32
  Date: 2014-01-14T20:44:02.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[11629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:04.064
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[11630]:
  Log Name: System
  Source: USER32
  Date: 2014-01-14T20:44:06.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[11631]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-14T20:44:06.073
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[11632]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-14T20:44:07.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[11633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[11634]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-14T20:44:07.509
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[11635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[11636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[11637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[11638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[11639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[11640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[11641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[11642]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-14T20:44:07.696
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[11643]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-14T20:44:07.711
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[11644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[11645]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-14T20:44:07.711
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[11646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[11647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[11648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[11649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[11650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[11651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[11652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[11653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[11654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[11655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[11656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[11657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[11658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[11659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[11660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[11661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[11662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[11663]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-14T23:38:43.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[11664]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-14T23:38:43.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[11665]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-14T23:38:43.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[11666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[11667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:07.914
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[11668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:08.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[11669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:08.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[11670]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-14T20:44:08.367
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[11671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:08.367
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[11672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:08.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[11673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:08.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[11674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T20:44:10.707
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[11675]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-14T20:44:12.703
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[11676]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-14T20:44:14.045
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?15T01:44:14.045449300Z.

Event[11677]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-14T23:38:17.983
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?15T04:38:16.610798400Z.

Event[11678]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T23:38:22.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11679]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-14T23:38:29.558
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[11680]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T23:38:30.214
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11681]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T23:38:30.214
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11682]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T23:38:30.214
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11683]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T23:38:30.214
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11684]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T23:38:30.214
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11685]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T23:38:30.214
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11686]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T23:38:30.214
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11687]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-14T23:38:30.214
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:39.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[11689]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-14T23:38:39.823
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[11690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:39.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[11691]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T23:38:39.886
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11692]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T23:38:43.380
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11693]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T23:38:43.380
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11694]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T23:38:43.380
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[11696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[11697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.427
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[11698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[11699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[11700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[11701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[11702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[11703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[11704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[11705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[11706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[11707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[11708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[11709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[11710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[11711]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-14T23:38:43.926
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[11712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[11713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[11714]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-14T23:38:43.957
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[11715]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-14T23:38:43.957
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[11716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[11717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[11718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[11719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:43.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[11720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[11721]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-14T23:38:44.035
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[11722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[11723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.221
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[11724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.251
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[11725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[11726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[11727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[11728]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-14T23:38:44.361
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[11729]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-14T23:38:44.371
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[11731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[11732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[11733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[11734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.651
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[11735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[11736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[11737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:44.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[11738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:47.311
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[11739]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-14T23:38:49.960
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[11740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:49.960
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[11741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:50.022
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[11742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:50.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[11743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:50.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[11744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:50.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[11745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:51.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[11746]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-14T23:38:52.409
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[11747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:53.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[11748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:53.563
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[11749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:56.527
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[11750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:57.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[11751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:59.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[11752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:38:59.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[11753]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-14T23:39:02.299
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[11754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:39:09.917
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[11755]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-14T23:39:10.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[11756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:39:10.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[11757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:39:11.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[11758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:39:11.555
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[11759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:39:11.571
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[11760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:39:11.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[11761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:01.453
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[11762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:01.453
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[11763]:
  Log Name: System
  Source: Microsoft-Windows-DriverFrameworks-UserMode
  Date: 2014-01-14T23:40:04.916
  Event ID: 10114
  Task: Startup of the UMDF reflector
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The UMDF reflector was unable to complete startup because the WUDFPf service was not found.  This service may be started later during boot, at which point Windows will attempt to start the device again.

Event[11764]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-PnP
  Date: 2014-01-14T23:40:04.916
  Event ID: 219
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_LEXAR&PROD_USB_FLASH_DRIVE&REV_8.07#2012010713564134377C&0#.

Event[11765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:06.775
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.

Event[11766]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-14T23:40:23.389
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[11767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:23.389
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[11768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:24.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[11769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:54.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:54.275
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[11771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:54.509
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:54.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[11773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:54.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[11774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:54.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[11775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:54.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[11776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:55.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[11777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:55.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[11778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:55.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[11779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:55.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the running state.

Event[11780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:55.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the stopped state.

Event[11781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:56.319
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[11782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:56.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[11783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:56.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[11784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:56.943
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[11785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:40:57.582
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[11786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:41:03.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[11787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:41:05.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[11788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:41:59.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11789]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-14T23:43:11.235
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[11790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:46:04.960
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[11791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:49:25.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[11792]:
  Log Name: System
  Source: USER32
  Date: 2014-01-14T23:49:59.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[11793]:
  Log Name: System
  Source: USER32
  Date: 2014-01-14T23:50:02.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[11794]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-14T23:50:03.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[11795]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-14T23:50:03.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[11796]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-14T23:50:02.165
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[11797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.039
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[11798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[11799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.195
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[11800]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-14T23:50:03.257
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[11801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[11802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.398
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[11803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[11804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[11805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[11806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[11807]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-14T23:50:03.507
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[11808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[11809]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-14T23:50:03.507
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[11810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[11811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[11812]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-14T23:50:03.522
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[11813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[11814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[11815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[11816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[11817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[11818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[11819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[11820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[11821]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[11822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[11823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[11824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.569
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[11825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.569
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[11826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.585
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[11827]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-17T21:50:23.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[11828]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-17T21:50:23.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[11829]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-17T21:50:23.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[11830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[11831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[11832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[11833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[11834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[11835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:03.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[11836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:04.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[11837]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-14T23:50:04.162
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[11838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:04.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[11839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:04.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[11840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-14T23:50:07.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[11841]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-14T23:50:08.514
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[11842]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-14T23:50:10.074
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?15T04:50:10.074976700Z.

Event[11843]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-17T21:49:57.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?18T02:49:56.610798500Z.

Event[11844]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T21:50:02.538
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11845]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-17T21:50:10.167
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[11846]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T21:50:10.791
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11847]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T21:50:10.791
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11848]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T21:50:10.791
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11849]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T21:50:10.791
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11850]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T21:50:10.791
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11851]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T21:50:10.791
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11852]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T21:50:10.791
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11853]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T21:50:10.791
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[11854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:20.697
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[11855]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T21:50:20.697
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[11856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:20.744
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[11857]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T21:50:20.759
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11858]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T21:50:23.208
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11859]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T21:50:23.208
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11860]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T21:50:23.208
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[11862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[11863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[11864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the running state.

Event[11865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[11866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[11867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.349
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[11868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[11869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[11870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.723
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[11871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.723
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[11872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.739
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[11873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.739
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[11874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[11875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[11876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[11877]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-17T21:50:23.754
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[11878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[11879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[11880]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-17T21:50:23.786
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[11881]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-17T21:50:23.801
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[11882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[11883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[11884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[11885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.817
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[11886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[11887]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-17T21:50:23.864
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[11888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:23.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[11889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[11890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[11891]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[11892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[11893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.189
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[11894]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-17T21:50:24.189
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[11895]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T21:50:24.209
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[11896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[11897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[11898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.389
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[11899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[11900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[11901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[11902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[11903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.569
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[11904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[11905]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-17T21:50:24.939
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[11906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[11907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[11908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[11909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:24.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[11910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:25.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[11911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:27.449
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[11912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:30.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[11913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:30.646
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[11914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:31.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[11915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:31.426
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[11916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:33.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[11917]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T21:50:33.657
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service monitor for Device Instance ID DISPLAY\DEL4033\7&12280E7E&0&UID263 with the following status: 0.

Event[11918]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T21:50:33.688
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\monitor.inf_amd64_neutral_ab477c4d805d044f\monitor.inf for Device Instance ID DISPLAY\DEL4033\7&12280E7E&0&UID263 with the following status: 0x0.

Event[11919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:34.453
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[11920]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T21:50:36.262
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[11921]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-17T21:50:38.555
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[11922]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-17T21:50:50.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[11923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:50.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[11924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:50.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[11925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:51.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[11926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:51.493
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[11927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:51.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[11928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:50:51.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[11929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:51:23.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[11930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:51:35.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[11931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:30.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:31.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:31.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[11934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:31.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[11935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:31.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[11936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:31.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[11937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:31.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[11938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:32.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[11939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:32.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[11940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:32.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[11941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:32.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the running state.

Event[11942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:32.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the stopped state.

Event[11943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:32.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[11944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:33.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[11945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:33.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[11946]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-17T21:52:33.400
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[11947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:33.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[11948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:33.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[11949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:34.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[11950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:35.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[11951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:36.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[11952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:47.456
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[11953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:52:54.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[11954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:53:27.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[11955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:53:32.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[11956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:53:36.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[11957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:53:55.159
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[11958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:53:55.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[11959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:53:55.799
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[11960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:54:00.697
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[11961]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T21:54:57.753
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Saturday, ?January ?18, ?2014 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - January 2014 (KB890830)

Event[11962]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T21:54:57.753
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Saturday, ?January ?18, ?2014 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - January 2014 (KB890830)
- Definition Update for Windows Defender - KB915597 (Definition 1.165.1783.0)

Event[11963]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-17T21:55:17.300
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[11964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:56:45.990
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[11965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:56:47.175
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[11966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:56:49.795
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[11967]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T21:56:55.586
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.1783.0)

Event[11968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:56:57.318
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[11969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:57:14.439
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[11970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:57:24.969
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[11971]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T21:57:35.891
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Saturday, ?January ?18, ?2014 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - January 2014 (KB890830)
- Definition Update for Windows Defender - KB915597 (Definition 1.165.2095.0)

Event[11972]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T21:57:35.891
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Saturday, ?January ?18, ?2014 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - January 2014 (KB890830)
- Update for Windows 7 for x64-based Systems (KB2913431)

Event[11973]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T21:57:35.891
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Saturday, ?January ?18, ?2014 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - January 2014 (KB890830)
- Update for Windows 7 for x64-based Systems (KB2913431)
- Security Update for Windows 7 for x64-based Systems (KB2913602)

Event[11974]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T21:57:35.891
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Saturday, ?January ?18, ?2014 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - January 2014 (KB890830)
- Update for Windows 7 for x64-based Systems (KB2913431)
- Security Update for Windows 7 for x64-based Systems (KB2913602)
- Security Update for Windows 7 for x64-based Systems (KB2862330)

Event[11975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:58:14.491
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[11976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:58:21.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[11977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T21:59:08.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[11978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:02:08.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[11979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:03:41.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[11980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:03:41.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[11981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:07:34.617
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[11982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:07:36.395
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[11983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:07:36.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[11984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:08:40.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[11985]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-17T22:10:16.233
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[11986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:11:55.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[11987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:11:55.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[11988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:12:07.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[11989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:13:39.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[11990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:15:17.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[11991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:16:21.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the running state.

Event[11992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:18:00.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the stopped state.

Event[11993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:18:07.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the running state.

Event[11994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:18:51.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the stopped state.

Event[11995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:19:00.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[11996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:20:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[11997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:20:00.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[11998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:20:26.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[11999]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:20:47.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Steam Client Service service entered the stopped state.

Event[12000]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:23:07.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[12001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:23:08.389
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[12002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:23:19.309
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Google Update Service (gupdate) service entered the stopped state.

Event[12003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:25:08.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[12004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:27:45.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:31:14.600
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[12006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:31:17.408
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\53d10a6f-4790-4620-8e0f-23cfce845da1
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[12007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:31:19.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[12008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:32:32.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[12009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:33:14.394
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[12010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:33:22.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[12011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:33:22.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[12012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:34:14.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[12013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:34:14.484
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[12014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:34:15.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[12015]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T22:34:16.325
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Saturday, ?January ?18, ?2014 at 8:00 PM: 
- Windows Malicious Software Removal Tool x64 - January 2014 (KB890830)
- Update for Windows 7 for x64-based Systems (KB2913431)
- Security Update for Windows 7 for x64-based Systems (KB2913602)
- Security Update for Windows 7 for x64-based Systems (KB2862330)

Event[12016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:34:22.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[12017]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-17T22:34:26.360
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[12018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:34:30.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[12019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:34:41.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[12020]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T22:35:36.904
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service monitor for Device Instance ID DISPLAY\DEL4033\7&12280E7E&0&UID263 with the following status: 0.

Event[12021]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T22:35:36.951
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\sp2008wfp.inf_amd64_neutral_88c8ccadbcfce5eb\sp2008wfp.inf for Device Instance ID DISPLAY\DEL4033\7&12280E7E&0&UID263 with the following status: 0x0.

Event[12022]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:35:37.765
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[12023]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T22:35:40.011
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Windows Malicious Software Removal Tool x64 - January 2014 (KB890830)

Event[12024]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T22:35:40.011
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Dell Inc. - Bus Controllers and Ports, Display, Other hardware, Streaming Media and Broadcast - Dell SP2008WFP(Digital)

Event[12025]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T22:36:12.069
  Event ID: 21
  Task: Automatic Updates
  Level: Information
  Opcode: Reboot
  Keyword: Reboot
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Restart Required: To complete the installation of the following updates, the computer must be restarted. Until this computer has been restarted, Windows cannot search for or download new updates: 
- Windows Malicious Software Removal Tool x64 - January 2014 (KB890830)
- Dell Inc. - Bus Controllers and Ports, Display, Other hardware, Streaming Media and Broadcast - Dell SP2008WFP(Digital)
- Update for Windows 7 for x64-based Systems (KB2913431)
- Security Update for Windows 7 for x64-based Systems (KB2913602)
- Security Update for Windows 7 for x64-based Systems (KB2862330)

Event[12026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:38:41.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[12027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:39:22.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[12028]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:39:46.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[12029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:39:48.958
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The start type of the Adobe LM Service service was changed from demand start to disabled.

Event[12030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:40:56.911
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The start type of the Adobe LM Service service was changed from disabled to demand start.

Event[12031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:41:41.590
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[12032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:43:08.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The AMD External Events Utility service entered the stopped state.

Event[12033]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:43:31.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:43:31.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:51:45.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[12036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:53:25.548
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[12037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:53:51.887
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Link-Layer Topology Discovery Mapper service entered the running state.

Event[12038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:57:16.815
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[12039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T22:59:35.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[12040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:02:51.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Link-Layer Topology Discovery Mapper service entered the stopped state.

Event[12041]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2014-01-17T23:11:40.111
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[12042]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-17T23:11:43.895
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?18T04:11:43.895667300Z from ?2014?-?01?-?18T04:11:40.111517000Z.

Event[12043]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2014-01-17T23:11:43.895
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->65.55.56.206:123).

Event[12044]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-17T23:11:43.895
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?18T04:11:43.895000000Z from ?2014?-?01?-?18T04:11:43.895667300Z.

Event[12045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:17:41.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:20:00.169
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:20:00.169
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:20:03.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[12049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:20:03.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:30:08.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[12051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:32:24.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[12052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:36:33.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[12053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:38:11.254
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:43:55.767
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:43:56.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12056]:
  Log Name: System
  Source: USER32
  Date: 2014-01-17T23:50:39.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Operating System: Recovery (Planned)
 Reason Code: 0x80020002
 Shutdown Type: restart
 Comment: 

Event[12057]:
  Log Name: System
  Source: USER32
  Date: 2014-01-17T23:50:42.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[12058]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-17T23:50:42.367
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[12059]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T23:50:42.664
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[12060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:42.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[12061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:42.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[12062]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:50:42.913
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'true' 


Event[12063]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-17T23:50:46.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[12064]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-17T23:50:47.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[12065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:46.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[12066]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:46.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[12067]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[12068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[12069]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-17T23:50:47.344
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[12070]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-17T23:50:47.344
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[12071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[12072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[12073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[12074]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[12075]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:50:47.344
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[12076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[12077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[12078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[12079]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-17T23:52:00.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[12080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[12081]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-17T23:52:00.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[12082]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-17T23:52:00.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 42 seconds.

Event[12083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[12084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[12085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[12086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[12087]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-17T23:50:47.359
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?18T04:50:47.359000000Z from ?2014?-?01?-?18T04:50:47.359773000Z.

Event[12088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[12089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[12090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[12091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[12092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[12093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[12094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[12095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[12096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.374
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[12097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[12098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[12099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[12100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:47.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[12101]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-17T23:50:48.014
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[12102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:48.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[12103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:48.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[12104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:48.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[12105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:48.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[12106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:50:50.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[12107]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-17T23:50:52.335
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[12108]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-17T23:50:58.700
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?18T04:50:58.700219800Z.

Event[12109]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-17T23:51:18.952
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?18T04:51:17.595198400Z.

Event[12110]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T23:51:23.679
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12111]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-17T23:51:43.647
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[12112]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T23:51:44.489
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12113]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T23:51:44.489
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12114]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T23:51:44.489
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12115]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T23:51:44.489
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12116]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T23:51:44.489
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12117]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T23:51:44.489
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12118]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T23:51:44.489
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12119]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-17T23:51:44.489
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12120]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:51:57.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[12121]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:51:57.546
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'true' 


Event[12122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:51:57.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[12123]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T23:51:57.593
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12124]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T23:52:00.074
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12125]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T23:52:00.074
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12126]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T23:52:00.074
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.089
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[12128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[12129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[12130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[12131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[12132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12133]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[12134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.557
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[12135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[12136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[12137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[12138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.838
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[12139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:00.848
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[12140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[12141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[12142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[12143]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-17T23:52:01.658
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[12144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[12145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[12146]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-17T23:52:01.688
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[12147]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-17T23:52:01.698
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[12148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[12149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[12150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[12151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[12152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[12153]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-17T23:52:01.908
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[12154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:01.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[12155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:02.308
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[12156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:02.848
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[12157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:02.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[12158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:02.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[12159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:02.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[12160]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-17T23:52:02.968
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[12161]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-17T23:52:02.988
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:03.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[12163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:03.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[12164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:03.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[12165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:03.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[12166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:03.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[12167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:03.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[12168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:03.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[12169]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-17T23:52:03.298
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[12170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:03.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[12171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:04.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[12172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:04.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[12173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:05.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[12174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:05.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[12175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:08.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[12176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:09.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[12177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:11.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[12178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:11.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:15.566
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[12180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:15.598
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[12181]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:17.969
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[12182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:18.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[12183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:18.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[12184]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:19.966
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[12185]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:20.948
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\ROOT_HUB\4&209DFF44&2 with the following status: 0.

Event[12186]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:21.042
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID USB\ROOT_HUB\4&209DFF44&2 with the following status: 0x0.

Event[12187]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:21.338
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\ROOT_HUB20\4&318406F3&1 with the following status: 0.

Event[12188]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:21.510
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID USB\ROOT_HUB20\4&318406F3&1 with the following status: 0x0.

Event[12189]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:21.962
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\VID_0424&PID_2514\6&1359100E&0&2 with the following status: 0.

Event[12190]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:22.789
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usb.inf_amd64_neutral_42d7284868af1f40\usb.inf for Device Instance ID USB\VID_0424&PID_2514\6&1359100E&0&2 with the following status: 0x0.

Event[12191]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:23.054
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\ROOT_HUB\4&CA1A60D&2 with the following status: 0.

Event[12192]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:23.148
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID USB\ROOT_HUB\4&CA1A60D&2 with the following status: 0x0.

Event[12193]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:23.413
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\ROOT_HUB\4&21F60AC4&1 with the following status: 0.

Event[12194]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:26.674
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID USB\ROOT_HUB\4&21F60AC4&1 with the following status: 0x0.

Event[12195]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:26.939
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\ROOT_HUB20\4&3892A9E2&3 with the following status: 0.

Event[12196]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:28.218
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID USB\ROOT_HUB20\4&3892A9E2&3 with the following status: 0x0.

Event[12197]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:28.561
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbohci for Device Instance ID PCI\VEN_1002&DEV_4399&SUBSYS_43991002&REV_00\3&267A616A&0&A5 with the following status: 0.

Event[12198]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:28.764
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID PCI\VEN_1002&DEV_4399&SUBSYS_43991002&REV_00\3&267A616A&0&A5 with the following status: 0x0.

Event[12199]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:29.060
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbehci for Device Instance ID PCI\VEN_1002&DEV_4396&SUBSYS_43961002&REV_00\3&267A616A&0&92 with the following status: 0.

Event[12200]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:29.653
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID PCI\VEN_1002&DEV_4396&SUBSYS_43961002&REV_00\3&267A616A&0&92 with the following status: 0x0.

Event[12201]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:29.872
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbehci for Device Instance ID PCI\VEN_1002&DEV_4396&SUBSYS_43961002&REV_00\3&267A616A&0&B2 with the following status: 0.

Event[12202]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:32.118
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID PCI\VEN_1002&DEV_4396&SUBSYS_43961002&REV_00\3&267A616A&0&B2 with the following status: 0x0.

Event[12203]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:32.336
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbehci for Device Instance ID PCI\VEN_1002&DEV_4396&SUBSYS_43961002&REV_00\3&267A616A&0&9A with the following status: 0.

Event[12204]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:32.524
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[12205]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:33.132
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID PCI\VEN_1002&DEV_4396&SUBSYS_43961002&REV_00\3&267A616A&0&9A with the following status: 0x0.

Event[12206]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:33.366
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbohci for Device Instance ID PCI\VEN_1002&DEV_4397&SUBSYS_43971002&REV_00\3&267A616A&0&90 with the following status: 0.

Event[12207]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:43.022
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID PCI\VEN_1002&DEV_4397&SUBSYS_43971002&REV_00\3&267A616A&0&90 with the following status: 0x0.

Event[12208]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:43.288
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbohci for Device Instance ID PCI\VEN_1002&DEV_4397&SUBSYS_43971002&REV_00\3&267A616A&0&98 with the following status: 0.

Event[12209]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:48.685
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID PCI\VEN_1002&DEV_4397&SUBSYS_43971002&REV_00\3&267A616A&0&98 with the following status: 0x0.

Event[12210]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:48.935
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbohci for Device Instance ID PCI\VEN_1002&DEV_4397&SUBSYS_43971002&REV_00\3&267A616A&0&B0 with the following status: 0.

Event[12211]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:49.169
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID PCI\VEN_1002&DEV_4397&SUBSYS_43971002&REV_00\3&267A616A&0&B0 with the following status: 0x0.

Event[12212]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:49.356
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\ROOT_HUB\4&67395F2&1 with the following status: 0.

Event[12213]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:50.698
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID USB\ROOT_HUB\4&67395F2&1 with the following status: 0x0.

Event[12214]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:50.916
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\ROOT_HUB20\4&37566865&4 with the following status: 0.

Event[12215]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:52.086
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usbport.inf_amd64_neutral_d5d6e7e900318837\usbport.inf for Device Instance ID USB\ROOT_HUB20\4&37566865&4 with the following status: 0x0.

Event[12216]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:52.304
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\VID_0424&PID_2512\5&1823F9B9&0&1 with the following status: 0.

Event[12217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:52.975
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[12218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:52.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[12219]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:53.771
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usb.inf_amd64_neutral_42d7284868af1f40\usb.inf for Device Instance ID USB\VID_0424&PID_2512\5&1823F9B9&0&1 with the following status: 0x0.

Event[12220]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:53.974
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbccgp for Device Instance ID USB\VID_046D&PID_C52B\5&2F7F1FA1&0&2 with the following status: 0.

Event[12221]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:56.938
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usb.inf_amd64_neutral_42d7284868af1f40\usb.inf for Device Instance ID USB\VID_046D&PID_C52B\5&2F7F1FA1&0&2 with the following status: 0x0.

Event[12222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:52:57.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[12223]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:57.234
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbhub for Device Instance ID USB\VID_413C&PID_1003\5&2F7F1FA1&0&3 with the following status: 0.

Event[12224]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:59.496
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usb.inf_amd64_neutral_42d7284868af1f40\usb.inf for Device Instance ID USB\VID_413C&PID_1003\5&2F7F1FA1&0&3 with the following status: 0x0.

Event[12225]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:52:59.683
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbccgp for Device Instance ID USB\VID_05A9&PID_2641\6&1359100E&0&1 with the following status: 0.

Event[12226]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:53:00.557
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usb.inf_amd64_neutral_42d7284868af1f40\usb.inf for Device Instance ID USB\VID_05A9&PID_2641\6&1359100E&0&1 with the following status: 0x0.

Event[12227]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:53:00.728
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service usbccgp for Device Instance ID USB\VID_413C&PID_2010\6&3AF1FC44&0&1 with the following status: 0.

Event[12228]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:53:03.006
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver FileRepository\usb.inf_amd64_neutral_42d7284868af1f40\usb.inf for Device Instance ID USB\VID_413C&PID_2010\6&3AF1FC44&0&1 with the following status: 0x0.

Event[12229]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-17T23:53:03.583
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[12230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:53:04.067
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[12231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:53:05.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12232]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-17T23:53:27.904
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[12233]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-17T23:53:48.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[12234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:53:47.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[12235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:53:48.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[12236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:53:49.707
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[12237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:53:49.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[12238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:53:49.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[12239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:53:49.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[12240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:04.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[12241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:12.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:12.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:12.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[12244]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:12.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[12245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:12.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[12246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:12.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[12247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:12.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[12248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:13.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[12249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:13.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[12250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:13.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[12251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:13.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[12252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:14.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[12253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:14.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[12254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:14.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[12255]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-17T23:54:14.904
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[12256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:14.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[12257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:19.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[12258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:19.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[12259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:20.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[12260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:23.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[12261]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-17T23:54:51.365
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[12262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:54:59.687
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[12263]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T23:55:10.970
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2862330)

Event[12264]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T23:55:10.970
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Security Update for Windows 7 for x64-based Systems (KB2913602)

Event[12265]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-17T23:55:10.970
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Update for Windows 7 for x64-based Systems (KB2913431)

Event[12266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:55:31.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[12267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:55:36.740
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[12268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:56:57.026
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[12269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:58:30.456
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[12270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:59:13.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[12271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:59:18.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[12272]:
  Log Name: System
  Source: Microsoft-Windows-DriverFrameworks-UserMode
  Date: 2014-01-17T23:59:25.515
  Event ID: 10114
  Task: Startup of the UMDF reflector
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The UMDF reflector was unable to complete startup because the WUDFPf service was not found.  This service may be started later during boot, at which point Windows will attempt to start the device again.

Event[12273]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-PnP
  Date: 2014-01-17T23:59:25.515
  Event ID: 219
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_LEXAR&PROD_USB_FLASH_DRIVE&REV_8.07#2012010713564134377C&0#.

Event[12274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-17T23:59:28.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.

Event[12275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:03:03.725
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[12276]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-18T00:03:40.385
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Saturday, ?January ?18, ?2014 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.165.2095.0)

Event[12277]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-18T00:03:52.927
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.2095.0)

Event[12278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:06:31.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[12279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:06:31.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[12280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:08:04.488
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[12281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:14:05.631
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[12282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:14:08.782
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[12283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:14:08.860
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[12284]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:19:11.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[12285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:20:00.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:20:00.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:24:13.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[12288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:34:13.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[12289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:35:51.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[12290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:53:04.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:56:23.718
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the running state.

Event[12292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:56:25.793
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the running state.

Event[12293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:56:27.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the running state.

Event[12294]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12295]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12296]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12297]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12298]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12299]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12300]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12301]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12302]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12303]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12304]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12305]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12306]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12307]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12308]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12309]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12310]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12311]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12312]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12313]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12314]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12315]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12316]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12317]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12318]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12319]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12320]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12321]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-18T00:56:30.441
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[12322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:56:30.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the running state.

Event[12323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:56:35.231
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the running state.

Event[12324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:56:37.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the running state.

Event[12325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:56:40.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the running state.

Event[12326]:
  Log Name: System
  Source: VMnetAdapter
  Date: 2014-01-18T00:56:43.296
  Event ID: 36
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Adapter Driver for VMware Virtual Networks.

Event[12327]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-18T00:56:50.519
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0005 with the following status: 0.

Event[12328]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-18T00:57:32.619
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0006 with the following status: 0.

Event[12329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:58:31.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T00:59:20.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Management service entered the running state.

Event[12331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:11:28.377
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[12332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:12:34.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[12333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:15:15.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:20:00.200
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:20:00.200
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:20:00.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:20:00.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:21:24.888
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:30:23.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[12340]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-18T01:34:09.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[12341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:38:29.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[12342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:43:53.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[12343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:46:24.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the stopped state.

Event[12344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:46:24.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the stopped state.

Event[12345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:46:28.404
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the stopped state.

Event[12346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:46:29.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the stopped state.

Event[12347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:46:31.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the stopped state.

Event[12348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:46:33.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the stopped state.

Event[12349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:46:36.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the stopped state.

Event[12350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T01:48:24.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[12351]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2014-01-18T01:57:32.336
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name i1.social.s-msft.com timed out after none of the configured DNS servers responded.

Event[12352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:07:53.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[12353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:09:11.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:14:40.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[12355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:16:40.657
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[12356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:17:24.667
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:18:38.628
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[12358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:18:38.831
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[12359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:18:38.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[12360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:19:21.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[12361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:20:00.169
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:20:00.169
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:21:23.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[12364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:24:56.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[12365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:25:40.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[12366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:25:41.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[12367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:25:42.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[12368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:29:40.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[12369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:32:40.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[12370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:35:49.534
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[12371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:37:16.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[12372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:41:37.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[12373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:42:15.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:42:29.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:49:00.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[12376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:49:13.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[12377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:51:00.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[12378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:51:05.484
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[12379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:52:15.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[12380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T02:53:24.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[12381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T03:19:03.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T03:20:01.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T03:20:01.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T03:24:04.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[12385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T04:20:03.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T04:20:03.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T04:29:02.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T04:30:22.718
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[12389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T04:32:22.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[12390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T04:33:14.247
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T04:38:08.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[12392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T04:43:23.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[12393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:04:46.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:06:10.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[12395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:06:22.677
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:07:37.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[12397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:07:48.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[12398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:08:38.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[12399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:09:47.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[12400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:20:02.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:20:02.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:22:52.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[12403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:24:43.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:29:44.674
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[12405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:30:37.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12406]:
  Log Name: System
  Source: USER32
  Date: 2014-01-18T05:31:08.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[12407]:
  Log Name: System
  Source: USER32
  Date: 2014-01-18T05:31:16.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[12408]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-18T05:31:16.023
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[12409]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-18T05:31:17.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[12410]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-18T05:31:17.177
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[12411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[12412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[12413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[12414]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-18T05:31:17.692
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[12415]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-18T05:31:17.692
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[12416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[12417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[12418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[12419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[12420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[12421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[12422]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-18T05:31:17.770
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[12423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[12424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[12425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[12426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[12427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[12428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[12429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[12430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[12431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[12432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:17.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[12433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:18.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[12434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:18.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[12435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:18.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[12436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:18.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[12437]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-18T05:31:18.581
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[12438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:18.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[12439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:18.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[12440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:19.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[12441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:19.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[12442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:20.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[12443]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-18T23:03:37.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[12444]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-18T23:03:37.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[12445]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-18T23:03:37.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 28 seconds.

Event[12446]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:20.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[12447]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T05:31:21.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[12448]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-18T05:31:22.715
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[12449]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-18T05:31:24.650
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?18T10:31:24.650302700Z.

Event[12450]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-18T23:03:10.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?19T04:03:09.595198400Z.

Event[12451]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:03:15.538
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12452]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-18T23:03:22.792
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[12453]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:03:23.697
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12454]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:03:23.697
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12455]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:03:23.697
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12456]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:03:23.697
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12457]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:03:23.697
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12458]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:03:23.697
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12459]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:03:23.697
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12460]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:03:23.697
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:33.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[12462]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-18T23:03:33.806
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[12463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:33.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[12464]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:03:33.993
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12465]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:03:36.489
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12466]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:03:36.505
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12467]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:03:36.520
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:36.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[12469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:37.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[12470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:37.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[12471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:37.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[12472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:37.987
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:38.502
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[12474]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:40.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[12475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:40.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[12476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:40.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[12477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:40.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[12478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:40.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[12479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:40.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[12480]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:40.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[12481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:40.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[12482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:40.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[12483]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-18T23:03:40.982
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[12484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:41.216
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[12485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:41.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[12486]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-18T23:03:41.232
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[12487]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-18T23:03:41.232
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[12488]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:41.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[12489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:41.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[12490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:41.294
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[12491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:41.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[12492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.189
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[12493]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-18T23:03:43.189
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[12494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.189
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[12495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[12496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[12497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[12498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[12499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[12500]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-18T23:03:43.499
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[12501]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:03:43.519
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[12503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[12504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[12505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.719
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[12506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[12507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[12508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.799
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[12509]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-18T23:03:43.799
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[12510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.799
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[12511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[12512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[12513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:43.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[12514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:47.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[12515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:49.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[12516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:50.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[12517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:51.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[12518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:51.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:54.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[12520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:54.613
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[12521]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-18T23:03:55.705
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[12522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:55.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[12523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:56.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[12524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:58.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[12525]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-18T23:03:59.511
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[12526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:03:59.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12527]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-18T23:04:09.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[12528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:04:09.888
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[12529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:04:10.715
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[12530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:04:10.731
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[12531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:04:11.027
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[12532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:04:11.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[12533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:04:11.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[12534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:05.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[12535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:51.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:52.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:52.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[12538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:52.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[12539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:52.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[12540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:52.739
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[12541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:52.739
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[12542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:52.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[12543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:53.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[12544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:53.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[12545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:53.426
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[12546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:53.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[12547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:53.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[12548]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-18T23:05:54.284
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[12549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:54.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[12550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:05:54.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[12551]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-18T23:05:59.822
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[12552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:06:00.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[12553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:06:03.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[12554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:06:04.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[12555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:06:04.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[12556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:06:07.824
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[12557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:06:25.177
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[12558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:07:20.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[12559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:10:08.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[12560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:10:31.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[12561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:10:55.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[12562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:11:06.469
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[12563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:11:23.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[12564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:12:06.534
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[12565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:13:33.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[12566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:13:38.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[12567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:14:42.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[12568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:14:44.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[12569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:15:38.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[12570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:16:58.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[12571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:16:58.940
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[12572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:20:00.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:20:00.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:21:13.040
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[12575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:26:23.543
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[12576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:26:23.746
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[12577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:26:23.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[12578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:26:55.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[12579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:28:42.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12580]:
  Log Name: System
  Source: USER32
  Date: 2014-01-18T23:33:10.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Users\Andrew\Downloads\AdwCleaner.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Planned)
 Reason Code: 0x80000000
 Shutdown Type: restart
 Comment: 

Event[12581]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-18T23:33:18.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[12582]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-18T23:33:18.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[12583]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-18T23:33:17.893
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[12584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[12585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.315
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[12586]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-18T23:33:18.658
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[12587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.689
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[12588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[12589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[12590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[12591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[12592]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-18T23:33:18.907
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[12593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[12594]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-18T23:33:18.923
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[12595]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-18T23:33:18.923
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[12596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[12597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[12598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[12599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[12600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[12601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[12602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[12603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[12604]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-18T23:34:10.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[12605]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-18T23:34:10.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[12606]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-18T23:34:10.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[12607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:18.985
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[12608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[12609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[12610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[12611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[12612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[12613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[12614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[12615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[12616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[12617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[12618]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[12619]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-18T23:33:19.609
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[12620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.609
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[12621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:19.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[12622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:20.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[12623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:22.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[12624]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-18T23:33:23.915
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[12625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:33:24.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[12626]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-18T23:33:25.272
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?19T04:33:25.272777800Z.

Event[12627]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-18T23:33:46.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?19T04:33:45.595198400Z.

Event[12628]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:33:51.538
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12629]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-18T23:33:58.324
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[12630]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:33:59.229
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12631]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:33:59.229
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12632]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:33:59.229
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12633]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:33:59.229
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12634]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:33:59.229
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12635]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:33:59.229
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12636]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:33:59.229
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12637]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-18T23:33:59.229
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:06.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[12639]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-18T23:34:06.748
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[12640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:06.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[12641]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:34:06.982
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12642]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:34:09.510
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12643]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:34:09.525
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12644]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:34:09.541
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:09.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[12646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:09.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[12647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:09.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[12648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:10.149
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[12649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:10.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:10.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[12651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:11.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[12652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:11.038
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[12653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:11.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[12654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:11.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[12655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:11.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[12656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:11.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[12657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:11.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[12658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:11.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[12659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:11.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[12660]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-18T23:34:13.499
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[12661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:13.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[12662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:13.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[12663]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-18T23:34:13.599
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[12664]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-18T23:34:13.639
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[12665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:13.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[12666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:13.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[12667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:15.329
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[12668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:15.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[12669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:16.109
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[12670]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-18T23:34:16.109
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[12671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:16.119
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[12672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:16.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[12673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:16.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[12674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:16.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[12675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:16.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[12676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:16.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[12677]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-18T23:34:16.779
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[12678]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-18T23:34:16.899
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12679]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:17.159
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[12680]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:17.249
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[12681]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:17.279
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[12682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:17.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[12683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:17.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[12684]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:17.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[12685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:17.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[12686]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-18T23:34:17.909
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[12687]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:17.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[12688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:18.239
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[12689]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:18.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[12690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:18.319
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[12691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:18.509
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[12692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:19.244
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[12693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:19.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[12694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:24.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[12695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:24.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:26.498
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[12697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:26.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[12698]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-18T23:34:30.024
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[12699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:30.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[12700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:32.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[12701]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-18T23:34:38.698
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[12702]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-18T23:34:50.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[12703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:49.888
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[12704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:49.888
  Event ID: 7024
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service terminated with service-specific error %%-1073473535.

Event[12705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:50.215
  Event ID: 7031
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.

Event[12706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:50.231
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[12707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:50.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[12708]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2014-01-18T23:34:55.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server:
{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Event[12709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:55.582
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

Event[12710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:55.582
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[12711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:56.956
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

Event[12712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:56.956
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[12713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:57.190
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

Event[12714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:34:57.190
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[12715]:
  Log Name: System
  Source: Microsoft-Windows-DistributedCOM
  Date: 2014-01-18T23:35:03.000
  Event ID: 10005
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server:
{9E175B6D-F52A-11D8-B9A5-505054503030}

Event[12716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:03.961
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

Event[12717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:03.961
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[12718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:03.976
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

Event[12719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:03.976
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[12720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:04.320
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

Event[12721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:04.320
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[12722]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-18T23:35:09.140
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[12723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:09.140
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[12724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:09.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[12725]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-18T23:35:12.227
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[12726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:21.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[12727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:21.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[12728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:21.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[12729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:23.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[12730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:35:45.565
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[12731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:24.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:24.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:24.986
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  SAS Core Service
Service File Name:  "C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
Service Type:  user mode service
Service Start Type:  auto start
Service Account:  LocalSystem

Event[12734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:25.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SAS Core Service service entered the running state.

Event[12735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:25.267
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[12736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:25.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the running state.

Event[12737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:25.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X86 service entered the stopped state.

Event[12738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:26.031
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:26.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the running state.

Event[12740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:26.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft .NET Framework NGEN v4.0.30319_X64 service entered the stopped state.

Event[12741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:26.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[12742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:26.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[12743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:26.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[12744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:27.607
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  SASKUTIL
Service File Name:  C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[12745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:27.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[12746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:27.669
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  SASDIFSV
Service File Name:  C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS
Service Type:  kernel mode driver
Service Start Type:  system start
Service Account:  

Event[12747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:28.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[12748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:28.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[12749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:28.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[12750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:33.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[12751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:33.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[12752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:33.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[12753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:36.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[12754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:36:44.923
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[12755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:37:28.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[12756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:39:39.497
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[12757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:40:41.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[12758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:40:42.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[12759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:41:29.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[12760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:43:44.542
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[12761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:44:36.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[12762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:46:11.917
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:46:44.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[12764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:47:33.553
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[12765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:47:33.756
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[12766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:47:33.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[12767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:47:40.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[12768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:47:41.605
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[12769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-18T23:56:54.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[12770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:08:41.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[12771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:09:03.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:09:05.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[12773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:09:06.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[12774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:10:24.597
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The start type of the SAS Core Service service was changed from auto start to demand start.

Event[12775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:11:04.033
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The start type of the Microsoft .NET Framework NGEN v4.0.30319_X86 service was changed from auto start to demand start.

Event[12776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:11:08.230
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The start type of the Microsoft .NET Framework NGEN v4.0.30319_X64 service was changed from auto start to demand start.

Event[12777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:12:06.527
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[12778]:
  Log Name: System
  Source: USER32
  Date: 2014-01-19T00:12:56.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[12779]:
  Log Name: System
  Source: USER32
  Date: 2014-01-19T00:13:05.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[12780]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T00:13:06.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[12781]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-19T00:13:05.070
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[12782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[12783]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-19T00:13:06.740
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[12784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[12785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[12786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[12787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[12788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[12789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[12790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[12791]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-19T00:13:06.974
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[12792]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-19T00:13:06.974
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[12793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[12794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[12795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[12796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[12797]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T00:13:06.974
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[12798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[12799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[12800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[12801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[12802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[12803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[12804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[12805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.989
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[12806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.989
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[12807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:06.989
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[12808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[12809]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T00:13:59.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[12810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[12811]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T00:13:59.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[12812]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T00:13:59.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[12813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[12814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[12815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.036
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[12816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[12817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[12818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.239
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[12819]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.254
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[12820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[12821]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-19T00:13:07.613
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[12822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:07.613
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[12823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:08.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[12824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:10.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[12825]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-19T00:13:11.966
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[12826]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-19T00:13:13.494
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?19T05:13:13.494964900Z.

Event[12827]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-19T00:13:33.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?19T05:13:32.595198400Z.

Event[12828]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:13:38.632
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12829]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-19T00:13:47.883
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[12830]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:13:48.507
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12831]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:13:48.507
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12832]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:13:48.507
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12833]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:13:48.507
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12834]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:13:48.507
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12835]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:13:48.507
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12836]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:13:48.507
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12837]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:13:48.507
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:56.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[12839]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T00:13:56.790
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[12840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:56.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[12841]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:13:56.884
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12842]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:13:59.427
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12843]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:13:59.427
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12844]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:13:59.427
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.442
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[12846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[12847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[12848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[12849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[12850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[12851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[12852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[12853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[12854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[12855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[12856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[12857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[12858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[12859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[12860]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-19T00:13:59.957
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[12861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[12862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[12863]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-19T00:13:59.988
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[12864]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-19T00:13:59.988
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[12865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[12866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:13:59.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[12867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[12868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[12869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.051
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[12870]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-19T00:14:00.051
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[12871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[12872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[12873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[12874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[12875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[12876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[12877]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-19T00:14:00.432
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[12878]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:14:00.452
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[12880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[12881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[12882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[12883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:00.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[12884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:01.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[12885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:01.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[12886]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-19T00:14:01.102
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[12887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:01.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[12888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:01.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[12889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:01.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[12890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:01.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[12891]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:02.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[12892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:02.382
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[12893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:02.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[12894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:08.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[12895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:08.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[12896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:13.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[12897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:13.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[12898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:13.843
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[12899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:14.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[12900]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T00:14:15.809
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[12901]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-19T00:14:15.965
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[12902]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-19T00:14:25.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[12903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:25.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[12904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:26.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[12905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:28.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[12906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:29.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[12907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:29.220
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[12908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:29.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[12909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:14:29.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[12910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:15:25.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[12911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:15:33.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[12912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:08.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:08.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:09.265
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[12915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:09.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[12916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:09.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[12917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:09.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[12918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:10.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[12919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:10.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[12920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:10.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[12921]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-19T00:16:10.653
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[12922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:10.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[12923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:14.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[12924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:16.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[12925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:17.502
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[12926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:21.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[12927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:24.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[12928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:26.518
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[12929]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-19T00:16:29.763
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[12930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:16:56.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[12931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:17:13.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[12932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:18:19.122
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[12933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:19:18.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[12934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:20:00.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[12935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:20:00.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[12936]:
  Log Name: System
  Source: USER32
  Date: 2014-01-19T00:21:53.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[12937]:
  Log Name: System
  Source: USER32
  Date: 2014-01-19T00:22:03.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[12938]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-19T00:22:03.233
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[12939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:04.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[12940]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-19T00:22:04.871
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[12941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:04.902
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[12942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:04.949
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[12943]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T00:22:05.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[12944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[12945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[12946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[12947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[12948]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-19T00:22:05.089
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[12949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.089
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[12950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[12951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[12952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[12953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[12954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[12955]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-19T00:22:05.136
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[12956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[12957]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T00:22:05.151
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[12958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[12959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[12960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[12961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[12962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[12963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[12964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.183
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[12965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[12966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[12967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[12968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[12969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[12970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[12971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[12972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[12973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[12974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[12975]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-19T00:22:05.760
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[12976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:05.760
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[12977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:06.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[12978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:08.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[12979]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T00:22:56.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[12980]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T00:22:56.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[12981]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T00:22:56.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[12982]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-19T00:22:10.081
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[12983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:11.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[12984]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-19T00:22:11.563
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?19T05:22:11.563556800Z.

Event[12985]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-19T00:22:32.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?19T05:22:31.610798400Z.

Event[12986]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:22:37.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[12987]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-19T00:22:45.838
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[12988]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:22:46.477
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12989]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:22:46.477
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12990]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:22:46.477
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12991]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:22:46.477
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12992]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:22:46.477
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12993]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:22:46.477
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12994]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:22:46.477
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12995]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T00:22:46.477
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[12996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:53.747
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[12997]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T00:22:53.747
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[12998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:53.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[12999]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:22:53.809
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13000]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:22:56.258
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13001]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:22:56.258
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13002]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:22:56.258
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[13004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[13005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[13006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[13007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[13008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.383
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[13010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[13011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[13012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[13013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[13014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[13015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[13016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[13017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[13018]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-19T00:22:56.789
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[13019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[13020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[13021]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-19T00:22:56.820
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[13022]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-19T00:22:56.820
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[13023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[13024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[13025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[13026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[13027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[13028]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-19T00:22:56.882
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[13029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:56.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[13030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[13031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.144
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[13032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[13033]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[13034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[13035]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-19T00:22:57.244
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[13036]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T00:22:57.254
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[13038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[13039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[13040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.524
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[13041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[13042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[13043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[13044]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-19T00:22:57.884
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[13045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:57.894
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[13046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:58.554
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[13047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:58.734
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[13048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:59.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[13049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:59.324
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[13050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:59.334
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[13051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:22:59.724
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[13052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:03.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[13053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:03.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:08.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[13055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:08.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[13056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:08.569
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[13057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:08.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[13058]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T00:23:10.722
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[13059]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-19T00:23:16.993
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[13060]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:27.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[13061]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:27.565
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[13062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:28.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[13063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:28.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[13064]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-19T00:23:29.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[13065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:29.031
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[13066]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:29.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[13067]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-19T00:23:44.725
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[13068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:44.725
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[13069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:23:52.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[13070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:24:26.012
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[13071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:03.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:03.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:04.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[13074]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:04.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[13075]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:04.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[13076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:04.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[13077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:04.860
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[13078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:05.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[13079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:05.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[13080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:05.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[13081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:08.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[13082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:09.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[13083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:10.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[13084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:14.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[13085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:25:25.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[13086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:28:19.645
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[13087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:30:06.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[13088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:33:51.969
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[13089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:33:54.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[13090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:33:55.308
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[13091]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-19T00:34:24.450
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[13092]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-19T00:34:24.528
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[13093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:36:19.808
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:36:20.198
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:37:50.554
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[13096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:37:58.291
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[13097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:38:45.012
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:40:50.557
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[13099]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-19T00:45:47.175
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[13100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:46:44.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:48:54.125
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[13102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T00:51:33.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[13103]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-19T00:53:08.406
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[13104]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-19T00:57:21.953
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[13105]:
  Log Name: System
  Source: USER32
  Date: 2014-01-19T01:00:28.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[13106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:35.206
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13107]:
  Log Name: System
  Source: USER32
  Date: 2014-01-19T01:00:37.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[13108]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-19T01:00:38.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[13109]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T01:00:38.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[13110]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-19T01:00:37.169
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[13111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.011
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[13112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.027
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[13113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[13114]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-19T01:00:38.682
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[13115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[13116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[13117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[13118]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[13119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[13120]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-19T01:00:38.901
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[13121]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-19T01:00:38.901
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[13122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[13123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[13124]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T01:00:38.901
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[13125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[13126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[13127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[13128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[13129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[13130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[13131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[13132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[13133]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.916
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[13134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[13135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[13136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[13137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[13138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[13139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[13140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[13141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:38.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[13142]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T13:03:27.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[13143]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T13:03:27.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[13144]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T13:03:27.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 27 seconds.

Event[13145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:39.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[13146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:39.057
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[13147]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:39.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[13148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:39.244
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[13149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:39.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[13150]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-19T01:00:39.587
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[13151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:39.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[13152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:39.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[13153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:40.133
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[13154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:41.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[13155]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-19T01:00:43.908
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[13156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T01:00:44.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[13157]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-19T01:00:45.219
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?19T06:00:45.219025700Z.

Event[13158]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-19T13:03:00.983
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?19T18:02:59.610798400Z.

Event[13159]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T13:03:05.663
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13160]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-19T13:03:16.599
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[13161]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T13:03:17.379
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13162]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T13:03:17.379
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13163]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T13:03:17.379
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13164]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T13:03:17.379
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13165]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T13:03:17.379
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13166]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T13:03:17.379
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13167]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T13:03:17.379
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13168]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-19T13:03:17.379
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:24.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[13170]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T13:03:24.539
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[13171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:24.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[13172]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T13:03:24.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13173]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T13:03:27.129
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13174]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T13:03:27.144
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13175]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T13:03:27.176
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:27.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[13177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:27.254
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[13178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:27.285
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[13179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:27.425
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[13180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:27.456
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[13181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:27.456
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:27.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[13183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:27.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[13184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:28.018
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[13185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:28.018
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[13186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:28.034
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[13187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:28.049
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[13188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:28.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[13189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:28.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[13190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:28.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[13191]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-19T13:03:28.112
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[13192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:29.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[13193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:29.594
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[13194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:29.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[13195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:29.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[13196]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-19T13:03:29.968
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[13197]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-19T13:03:29.984
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[13198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:29.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[13199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:30.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[13200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:30.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[13201]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-19T13:03:30.935
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[13202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:30.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[13203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:31.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[13204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:31.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[13205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:31.294
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[13206]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:31.637
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[13207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:31.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[13208]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-19T13:03:31.668
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[13209]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-19T13:03:31.762
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:32.027
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[13211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:32.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[13212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:32.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[13213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:33.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[13214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:34.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[13215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:34.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[13216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:34.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[13217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:34.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[13218]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-19T13:03:34.468
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[13219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:34.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[13220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:34.488
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[13221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:34.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[13222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:34.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[13223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:35.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[13224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:37.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[13225]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:47.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[13226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:51.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:51.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[13228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:52.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[13229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:52.303
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[13230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:03:53.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[13231]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T13:03:54.721
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[13232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:48.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:48.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:48.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[13235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:49.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[13236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:49.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[13237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:49.537
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[13238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:50.161
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[13239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:50.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[13240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:50.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[13241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:51.425
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[13242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:51.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[13243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:51.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[13244]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-19T13:05:52.049
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[13245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:52.049
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[13246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:52.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[13247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:52.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[13248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:56.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[13249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:57.945
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[13250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:05:58.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[13251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:06:01.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[13252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:06:02.594
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[13253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:07:48.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[13254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:07:59.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[13255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:08:28.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[13256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:08:38.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:08:49.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[13258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:08:49.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the stopped state.

Event[13259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:08:59.405
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[13260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:10:53.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[13261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:10:56.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:18:07.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[13263]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-19T13:18:12.005
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[13264]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:18:18.557
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13265]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-19T13:18:21.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[13266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:18:21.155
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[13267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:18:21.498
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[13268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:18:21.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[13269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:20:00.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:20:00.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:20:56.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[13272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:21:24.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[13273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:21:29.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[13274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:23:13.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[13275]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-19T13:23:26.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[13276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:23:24.955
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13277]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-19T13:23:25.938
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[13278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:23:26.827
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[13279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:23:26.827
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[13280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:23:29.245
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[13281]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-19T13:25:10.520
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[13282]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-19T13:25:17.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[13283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:25:17.917
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[13284]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:27:03.827
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:27:13.209
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:27:18.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:27:37.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:27:39.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:27:51.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:31:13.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:31:13.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:31:38.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:33:24.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[13294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:35:10.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:35:27.537
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:35:29.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13297]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:35:30.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:36:13.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:36:23.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:36:23.944
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:36:39.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:36:40.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:36:59.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[13304]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-19T13:37:12.343
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[13305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:37:13.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[13306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:37:18.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:38:12.684
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:38:12.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:38:48.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:38:51.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:39:02.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Performance Logs & Alerts service entered the running state.

Event[13312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:39:55.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[13313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:42:59.885
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[13314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:43:03.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[13315]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T13:43:10.213
  Event ID: 20001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management concluded the process to install driver NULL Driver for Device Instance ID ROOT\MULTIFUNCTION\0000 with the following status: 0xe0000203.

Event[13316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:45:49.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[13317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:48:00.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[13318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:48:40.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[13319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:53:16.047
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[13320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:53:16.250
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[13321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:53:16.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[13322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:53:42.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[13323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:58:24.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[13324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T13:59:21.077
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[13325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:20:00.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:20:00.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:22:36.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:22:49.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:35:52.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[13330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:35:53.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:36:52.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:36:56.911
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the running state.

Event[13333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:36:59.189
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the running state.

Event[13334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:37:01.529
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the running state.

Event[13335]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13336]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13337]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13338]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13339]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13340]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13341]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13342]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13343]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13344]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13345]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13346]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13347]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13348]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13349]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13350]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13351]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13352]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13353]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13354]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13355]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13356]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13357]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13358]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13359]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13360]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13361]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13362]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-19T14:37:04.384
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[13363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:37:04.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the running state.

Event[13364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:37:09.298
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the running state.

Event[13365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:37:12.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the running state.

Event[13366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:37:14.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the running state.

Event[13367]:
  Log Name: System
  Source: VMnetAdapter
  Date: 2014-01-19T14:37:17.862
  Event ID: 36
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Adapter Driver for VMware Virtual Networks.

Event[13368]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T14:37:21.325
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[13369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:37:52.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[13370]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T14:37:55.629
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0005 with the following status: 0.

Event[13371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:41:53.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:42:28.722
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Error Reporting Service service to connect.

Event[13373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:46:52.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[13374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:47:55.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:48:14.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13376]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-19T14:54:10.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[13377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T14:56:53.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[13378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:05:43.737
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[13379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:06:31.427
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:07:16.367
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13381]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-19T15:16:26.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[13382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:20:00.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:20:00.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:33:58.269
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the stopped state.

Event[13385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:33:58.331
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the stopped state.

Event[13386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:34:01.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the stopped state.

Event[13387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:34:03.448
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the stopped state.

Event[13388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:34:04.509
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the stopped state.

Event[13389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:34:07.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the stopped state.

Event[13390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:34:09.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the stopped state.

Event[13391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:34:12.169
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:34:12.605
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:34:34.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:40:55.220
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:41:03.987
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:41:21.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:41:24.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:41:26.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13399]:
  Log Name: System
  Source: USER32
  Date: 2014-01-19T15:43:14.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[13400]:
  Log Name: System
  Source: USER32
  Date: 2014-01-19T15:43:17.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[13401]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-19T15:43:18.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[13402]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-19T15:43:17.136
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[13403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.119
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[13404]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-19T15:43:18.181
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[13405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[13406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[13407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[13408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[13409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[13410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Performance Logs & Alerts service entered the stopped state.

Event[13411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[13412]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-19T15:43:18.431
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[13413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[13414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[13415]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-19T15:43:18.431
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[13416]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-19T15:43:18.431
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[13417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[13418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[13419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[13420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[13421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[13422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[13423]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[13424]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[13425]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[13426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.462
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[13427]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T00:20:43.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[13428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[13429]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T00:20:43.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[13430]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T00:20:43.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[13431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[13432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[13433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[13434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[13435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[13436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[13437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:18.899
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[13438]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-19T15:43:19.086
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[13439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:19.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[13440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:19.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[13441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:19.242
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[13442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:19.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[13443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:22.144
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[13444]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-19T15:43:23.423
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[13445]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-19T15:43:24.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[13446]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-19T15:43:29.741
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?19T20:43:29.741603300Z.

Event[13447]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T00:20:20.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?21T05:20:19.595198400Z.

Event[13448]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T00:20:25.523
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13449]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-21T00:20:36.755
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[13450]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T00:20:37.332
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13451]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T00:20:37.332
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13452]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T00:20:37.332
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13453]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T00:20:37.332
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13454]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T00:20:37.332
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13455]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T00:20:37.332
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13456]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T00:20:37.332
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13457]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T00:20:37.332
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:41.216
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[13459]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T00:20:41.216
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[13460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:41.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[13461]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T00:20:41.248
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13462]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T00:20:43.712
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13463]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T00:20:43.712
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13464]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T00:20:43.712
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:43.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[13466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:43.744
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[13467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:43.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[13468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:43.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[13469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:43.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[13470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:43.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[13472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.212
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[13473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[13474]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[13475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[13476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[13477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[13478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[13479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[13480]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-21T00:20:44.258
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[13481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[13482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[13483]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T00:20:44.274
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[13484]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T00:20:44.290
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[13485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[13486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[13487]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[13488]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[13489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[13490]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T00:20:44.336
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[13491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[13492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[13493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[13494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.682
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[13495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.702
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[13496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[13497]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-21T00:20:44.712
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[13498]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T00:20:44.732
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[13500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[13501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:44.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[13502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.012
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[13503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[13504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.062
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[13505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[13506]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-21T00:20:45.092
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[13507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[13508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[13509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[13510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.122
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[13511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[13512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[13513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:45.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[13514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:50.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[13515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:50.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:55.565
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[13517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:55.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[13518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:56.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[13519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:20:57.047
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[13520]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T00:20:59.293
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[13521]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-21T00:21:06.033
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[13522]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-21T00:21:17.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[13523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:21:16.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[13524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:21:17.010
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[13525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:21:17.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[13526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:21:17.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[13527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:21:17.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[13528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:21:17.899
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[13529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:21:47.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[13530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:15.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[13531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:16.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[13532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:50.729
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:51.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:52.006
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[13535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:52.576
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[13536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:52.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[13537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:52.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[13538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:53.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[13539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:54.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[13540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:54.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[13541]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-21T00:22:54.513
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[13542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:54.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[13543]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-21T00:22:55.810
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[13544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:22:58.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[13545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:23:02.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[13546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:23:07.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[13547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:23:14.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[13548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:24:08.571
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Defender service to connect.

Event[13549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:24:08.571
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[13550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:24:39.693
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Error Reporting Service service to connect.

Event[13551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:25:10.815
  Event ID: 7009
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout was reached (30000 milliseconds) while waiting for the Windows Error Reporting Service service to connect.

Event[13552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:25:13.295
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[13553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:25:43.310
  Event ID: 7011
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AeLookupSvc service.

Event[13554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:25:43.310
  Event ID: 7000
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Event[13555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:26:12.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:26:13.199
  Event ID: 7022
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service hung on starting.

Event[13557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:26:14.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[13558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:26:23.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[13559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:26:24.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[13560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:26:47.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[13561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:26:54.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[13562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:26:58.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[13563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:27:04.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[13564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:27:13.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[13565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:27:26.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[13566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:27:47.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[13567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:30:47.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[13568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:30:47.629
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[13569]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-21T00:31:13.362
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume C: was deleted to keep disk space usage for shadow copies of volume C: below the user defined limit.

Event[13570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:31:34.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[13571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:34:09.061
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:34:09.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13573]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-21T00:37:34.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[13574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:37:34.505
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[13575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:38:03.131
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[13576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:38:03.380
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[13577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:38:03.599
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[13578]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-21T00:38:15.000
  Event ID: 4
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service stopped.

Event[13579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:38:15.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the stopped state.

Event[13580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:43:44.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[13581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:48:30.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[13582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:50:17.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:56:50.590
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[13584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T00:59:04.485
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:02:52.605
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[13586]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-21T01:03:19.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[13587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:03:19.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the running state.

Event[13588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:03:19.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[13589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:03:50.403
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[13590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:04:00.855
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[13591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:10:44.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[13592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:11:09.668
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[13593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:14:16.822
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[13594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:14:17.025
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[13595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:14:17.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[13596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:20:00.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:20:00.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:21:24.949
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:22:19.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:22:40.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:22:40.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:24:59.599
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[13603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:25:20.144
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[13604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:26:40.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:26:41.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:26:44.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:27:59.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[13608]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-21T01:28:19.000
  Event ID: 4
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service stopped.

Event[13609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:28:19.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the stopped state.

Event[13610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:28:19.197
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the stopped state.

Event[13611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:31:48.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Link-Layer Topology Discovery Mapper service entered the running state.

Event[13612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:33:55.459
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[13613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:33:56.707
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[13614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:33:56.863
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[13615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:33:59.078
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\af3ceeb3-fb39-421c-8aab-e4135b6c589c
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[13616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:34:02.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[13617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:34:07.081
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[13618]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:36:06.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[13619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:36:06.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[13620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:40:48.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Link-Layer Topology Discovery Mapper service entered the stopped state.

Event[13621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:42:06.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[13622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:48:14.706
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[13623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:48:17.499
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\003fbd2b-4da8-49d3-8c2d-075e1053cba0
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[13624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:55:08.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:55:24.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T01:55:33.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[13627]:
  Log Name: System
  Source: USER32
  Date: 2014-01-21T02:00:41.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[13628]:
  Log Name: System
  Source: USER32
  Date: 2014-01-21T02:00:44.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[13629]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T02:00:44.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[13630]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-21T02:00:44.356
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[13631]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-21T02:00:44.668
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[13632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[13633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[13634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.855
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[13635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.855
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[13636]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T02:00:44.855
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[13637]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T02:00:44.855
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[13638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.855
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[13639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[13640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[13641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[13642]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T02:00:44.871
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[13643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[13644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[13645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[13646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[13647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[13648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[13649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[13650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[13651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[13652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.902
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[13653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.902
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[13654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[13655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[13656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[13657]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:44.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[13658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:45.120
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[13659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:45.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[13660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:45.292
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[13661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:45.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[13662]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T02:00:45.542
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[13663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:45.542
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[13664]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:45.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[13665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:46.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[13666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:46.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[13667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:46.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[13668]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T04:54:31.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[13669]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T04:54:31.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[13670]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T04:54:31.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 35 seconds.

Event[13671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:47.195
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[13672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T02:00:47.445
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[13673]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-21T02:00:49.863
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[13674]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T02:00:51.594
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?21T07:00:51.594858100Z.

Event[13675]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T04:53:57.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?21T09:53:56.595198400Z.

Event[13676]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T04:54:02.570
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13677]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-21T04:54:13.614
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[13678]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T04:54:14.254
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13679]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T04:54:14.254
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13680]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T04:54:14.254
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13681]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T04:54:14.254
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13682]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T04:54:14.254
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13683]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T04:54:14.254
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13684]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T04:54:14.254
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13685]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T04:54:14.254
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:28.528
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[13687]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T04:54:28.528
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[13688]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:28.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[13689]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T04:54:28.606
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13690]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T04:54:31.664
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13691]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T04:54:31.664
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13692]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T04:54:31.664
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:31.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[13694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:31.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[13695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:31.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[13696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:31.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[13697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:31.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[13698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:31.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[13700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[13701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[13702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[13703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[13704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[13705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[13706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[13707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[13708]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-21T04:54:32.194
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[13709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.225
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[13710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[13711]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T04:54:32.241
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[13712]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T04:54:32.241
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[13713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[13714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[13715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[13716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[13717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[13718]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T04:54:32.303
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[13719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[13720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.473
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[13721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[13722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[13723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[13724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[13725]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-21T04:54:32.643
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[13726]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T04:54:32.653
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.843
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[13728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.843
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[13729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[13730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[13731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:32.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[13732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:33.003
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[13733]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-21T04:54:33.043
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[13734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:33.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[13735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:33.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[13736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:33.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[13737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:33.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[13738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:33.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[13739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:33.133
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[13740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:33.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[13741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:33.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[13742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:39.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[13743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:39.414
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:43.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[13745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:44.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[13746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:45.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[13747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:54:45.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[13748]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T04:54:48.026
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[13749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:39.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:39.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:40.003
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[13752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:40.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[13753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:40.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[13754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:40.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[13755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:40.705
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[13756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:40.783
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[13757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:41.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[13758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:41.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[13759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:42.374
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[13760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:42.374
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[13761]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-21T04:56:42.452
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[13762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:42.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[13763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:42.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[13764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:45.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[13765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:47.459
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[13766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:47.725
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[13767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:49.113
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[13768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:52.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[13769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:56:53.980
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[13770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:59:37.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:59:39.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[13772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T04:59:39.933
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the stopped state.

Event[13773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:01:43.564
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[13774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:11:09.423
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[13775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:14:32.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[13776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:14:38.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[13777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:20:00.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:20:00.479
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:21:04.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:21:07.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[13781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:29:46.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:31:04.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[13783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:31:04.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[13784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:31:04.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[13785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:32:28.485
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[13786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:34:07.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[13787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:36:40.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[13788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:37:07.507
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[13789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:46:16.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[13790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:56:43.468
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[13791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:57:36.181
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[13792]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:57:36.399
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[13793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:57:36.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[13794]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-21T05:58:48.425
  Event ID: 42
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system is entering sleep.

Sleep Reason: System Idle

Event[13795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:58:56.973
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[13796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:58:56.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[13797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T05:58:59.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13798]:
  Log Name: System
  Source: Microsoft-Windows-HAL
  Date: 2014-01-21T05:59:23.993
  Event ID: 12
  Task: N/A
  Level: Error
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The platform firmware has corrupted memory across the previous system power transition.  Please check for updated firmware for your system.

Event[13799]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T07:59:03.500
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?21T12:59:03.500000000Z from ?2014?-?01?-?21T10:59:24.040045000Z.

Event[13800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T07:59:06.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[13801]:
  Log Name: System
  Source: Microsoft-Windows-Power-Troubleshooter
  Date: 2014-01-21T07:59:06.167
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system has resumed from sleep.

Sleep Time: ?2014?-?01?-?21T12:59:06.105204600Z
Wake Time: ?2014?-?01?-?21T12:59:03.858800700Z

Wake Source: S4 Doze to Hibernate

Event[13802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T07:59:07.961
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[13803]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T07:59:08.741
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[13804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T07:59:09.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[13805]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-21T07:59:12.392
  Event ID: 42
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system is entering sleep.

Sleep Reason: Hibernate from Sleep

Event[13806]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T07:59:13.983
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[13807]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T07:59:13.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[13808]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T17:08:18.500
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?21T22:08:18.500000000Z from ?2014?-?01?-?21T12:59:16.510422700Z.

Event[13809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:08:19.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[13810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:08:19.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[13811]:
  Log Name: System
  Source: Microsoft-Windows-Power-Troubleshooter
  Date: 2014-01-21T17:08:29.201
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system has resumed from sleep.

Sleep Time: ?2014?-?01?-?21T12:59:06.105204600Z
Wake Time: ?2014?-?01?-?21T22:08:22.415606900Z

Wake Source: Unknown

Event[13812]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:08:58.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 3979 seconds.

Event[13813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:09:11.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[13814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:09:22.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[13815]:
  Log Name: System
  Source: USER32
  Date: 2014-01-21T17:09:40.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user NT AUTHORITY\SYSTEM for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[13816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:09:44.596
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:09:44.596
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13818]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:09:51.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[13819]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-21T17:09:55.329
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[13820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:09:55.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[13821]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:09:56.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[13822]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T17:10:03.066
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[13823]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T17:10:03.066
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[13824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:03.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[13825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:03.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[13826]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:10:04.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[13827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:03.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[13828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:03.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[13829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:04.018
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[13830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:04.299
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[13831]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T17:10:04.798
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[13832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:04.798
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[13833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:04.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[13834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:05.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[13835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:05.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[13836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:05.375
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[13837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:05.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[13838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:05.594
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[13839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:05.765
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[13840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:05.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[13841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:07.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[13842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:07.590
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[13843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:07.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[13844]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:11:00.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[13845]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:11:00.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[13846]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:11:00.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 25 seconds.

Event[13847]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-21T17:10:07.934
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[13848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:08.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[13849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:08.589
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[13850]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T17:10:09.306
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[13851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:09.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[13852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:12.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[13853]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T17:10:14.782
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?21T22:10:14.782602800Z.

Event[13854]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T17:10:36.874
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?21T22:10:35.595198400Z.

Event[13855]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:10:41.554
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13856]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-21T17:10:48.668
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[13857]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:10:49.463
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13858]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:10:49.463
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13859]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:10:49.463
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13860]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:10:49.463
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13861]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:10:49.463
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13862]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:10:49.463
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13863]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:10:49.463
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13864]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:10:49.463
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[13865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:58.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[13866]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T17:10:58.074
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[13867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:10:58.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[13868]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:10:58.230
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13869]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:11:00.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13870]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:11:00.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13871]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:11:00.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:00.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[13873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:00.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[13874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:00.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[13875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:00.726
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[13876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:00.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[13877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:00.789
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[13879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[13880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[13881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[13882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[13883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[13884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[13885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[13886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[13887]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-21T17:11:01.179
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[13888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[13889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[13890]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T17:11:01.210
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[13891]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T17:11:01.210
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[13892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[13893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[13894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[13895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[13896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[13897]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T17:11:01.272
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[13898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[13899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[13900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.488
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[13901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.548
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[13902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[13903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[13904]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-21T17:11:01.588
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[13905]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:11:01.608
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[13906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[13907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.828
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[13908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[13909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.878
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[13910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[13911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[13912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.948
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[13913]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-21T17:11:01.948
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[13914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[13915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[13916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:01.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[13917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:02.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[13918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:02.488
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[13919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:02.598
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[13920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:02.678
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[13921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:07.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[13922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:07.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[13923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:10.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[13924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:11.019
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[13925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:11.425
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[13926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:11.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[13927]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T17:11:13.359
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[13928]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-21T17:11:15.574
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[13929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:21.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[13930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:25.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[13931]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-21T17:11:27.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[13932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:27.107
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[13933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:27.513
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[13934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:27.965
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[13935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:27.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[13936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:11:28.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[13937]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-21T17:12:04.445
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[13938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:12:04.445
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[13939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:12:04.645
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[13940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:12:11.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Secondary Logon service entered the running state.

Event[13941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:12:24.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[13942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:07.233
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:07.498
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:07.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[13945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:07.888
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[13946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:07.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[13947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:07.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[13948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:08.294
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[13949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:09.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[13950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:09.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[13951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:09.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[13952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:13.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[13953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:13.785
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[13954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:14.503
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[13955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:18.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[13956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:24.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[13957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:13:53.419
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[13958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:14:03.871
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[13959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:14:08.146
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[13960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:14:18.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[13961]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-21T17:14:29.866
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[13962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:15:08.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[13963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:18:10.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[13964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:20:00.394
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[13965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:20:00.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[13966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:24:17.955
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[13967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:24:18.267
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[13968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:29:32.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[13969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:30:17.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[13970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:30:24.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[13971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:30:24.651
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[13972]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-21T17:30:55.695
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.2309.0)

Event[13973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:30:58.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[13974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:31:03.027
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[13975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:32:58.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[13976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:34:00.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[13977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:37:00.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[13978]:
  Log Name: System
  Source: USER32
  Date: 2014-01-21T17:38:11.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[13979]:
  Log Name: System
  Source: USER32
  Date: 2014-01-21T17:38:14.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[13980]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-21T17:38:14.518
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[13981]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-21T17:38:14.767
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[13982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[13983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[13984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[13985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[13986]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T17:38:14.954
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[13987]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T17:38:14.954
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[13988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[13989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[13990]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:38:15.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[13991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[13992]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T17:38:14.970
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[13993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[13994]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[13995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[13996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[13997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[13998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[13999]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[14000]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[14001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:14.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[14002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[14003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[14004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[14005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.126
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[14006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[14007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[14008]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:39:06.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[14009]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:39:06.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[14010]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:39:06.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 25 seconds.

Event[14011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[14012]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[14013]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[14014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.391
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[14016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.485
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[14017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[14018]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T17:38:15.766
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[14019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:15.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[14020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:16.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[14021]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:38:18.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[14022]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-21T17:38:19.962
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[14023]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T17:38:21.428
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?21T22:38:21.428989800Z.

Event[14024]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T17:38:41.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?21T22:38:40.595198400Z.

Event[14025]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:38:46.663
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14026]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-21T17:38:59.018
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[14027]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:38:59.736
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14028]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:38:59.736
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14029]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:38:59.736
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14030]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:38:59.736
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14031]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:38:59.736
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14032]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:38:59.736
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14033]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:38:59.736
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14034]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:38:59.736
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:03.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[14036]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T17:39:03.901
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[14037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:03.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[14038]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:39:03.948
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14039]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:39:06.397
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14040]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:39:06.397
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14041]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:39:06.397
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[14043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[14044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[14045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[14046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[14047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[14049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[14050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[14051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[14052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[14053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[14054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[14055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[14056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[14057]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-21T17:39:06.943
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[14058]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[14059]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[14060]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T17:39:06.974
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[14061]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T17:39:06.974
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[14062]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[14063]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[14064]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[14065]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:06.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[14066]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[14067]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T17:39:07.037
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[14068]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[14069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[14070]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[14071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[14072]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[14073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[14074]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-21T17:39:07.422
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[14075]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:39:07.442
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[14077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[14078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[14079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[14080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[14081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[14082]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-21T17:39:07.772
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[14083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[14084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[14085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.772
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[14086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[14087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[14088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[14089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:07.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[14090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:08.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[14091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:12.899
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[14092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:12.961
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:16.799
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[14094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:16.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[14095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:18.234
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[14096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:19.139
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14097]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T17:39:23.023
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[14098]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-21T17:39:32.009
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:43.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[14100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:44.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[14101]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-21T17:39:45.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:45.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:45.732
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[14104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:46.153
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[14105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:46.169
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[14106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:39:46.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[14107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:40:20.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:40:41.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[14109]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:13.055
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:13.055
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:13.273
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[14112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:13.382
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[14113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:13.445
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[14114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:13.445
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[14115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:13.741
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[14116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:14.209
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[14117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:14.209
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[14118]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-21T17:41:14.303
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[14119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:14.303
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[14120]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:14.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[14121]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:18.905
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[14122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:19.107
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[14123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:20.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[14124]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:24.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[14125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:40.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:41:43.802
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[14127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:44:34.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[14128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:45:49.555
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[14129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:46:19.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[14130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:50:20.025
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14131]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-21T17:51:41.941
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[14132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:52:01.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14133]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:52:04.891
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[14134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:52:05.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[14135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:52:11.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[14136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:52:36.279
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[14137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:52:39.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[14138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:52:44.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[14139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:54:44.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[14140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:56:49.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[14141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:56:49.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Listener service entered the running state.

Event[14142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:56:50.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Grouping service entered the running state.

Event[14143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:56:54.209
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[14144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:23.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[14145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:32.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[14146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:34.512
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[14147]:
  Log Name: System
  Source: USER32
  Date: 2014-01-21T17:57:39.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: restart
 Comment: 

Event[14148]:
  Log Name: System
  Source: USER32
  Date: 2014-01-21T17:57:41.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[14149]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-21T17:57:42.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[14150]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-21T17:57:41.858
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:42.809
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[14152]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-21T17:57:42.887
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[14153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:42.918
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[14154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:42.934
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[14155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:42.934
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:42.950
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[14157]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:57:43.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[14158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[14159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[14160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[14161]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T17:57:43.059
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[14162]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T17:57:43.059
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[14163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.059
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[14164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[14165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[14166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Grouping service entered the stopped state.

Event[14167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[14168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[14169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[14170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[14171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[14172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[14173]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:58:37.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[14174]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:58:37.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[14175]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T17:58:37.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 28 seconds.

Event[14176]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T17:57:43.074
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[14177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[14178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[14179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[14180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[14181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[14182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[14183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[14184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[14185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[14186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[14187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.152
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[14188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[14189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[14190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[14191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.324
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[14192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[14193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.527
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[14194]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T17:57:43.714
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[14195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:43.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[14196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:44.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[14197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:44.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[14198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:57:45.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[14199]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-21T17:57:48.066
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[14200]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T17:57:49.502
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?21T22:57:49.502015400Z.

Event[14201]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T17:58:09.983
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?21T22:58:08.595198400Z.

Event[14202]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:58:14.663
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14203]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-21T17:58:21.371
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[14204]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:58:22.058
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14205]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:58:22.058
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14206]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:58:22.058
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14207]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:58:22.058
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14208]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:58:22.058
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14209]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:58:22.058
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14210]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:58:22.058
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14211]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-21T17:58:22.058
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:32.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[14213]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T17:58:32.837
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[14214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:33.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[14215]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:58:33.102
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14216]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:58:35.957
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14217]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:58:36.472
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14218]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:58:36.488
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:36.488
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[14220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:36.534
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[14221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:36.690
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[14222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:37.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[14223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:37.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:37.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[14225]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:37.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[14226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:38.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[14227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:39.857
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[14228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:39.888
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[14229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:39.966
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[14230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:39.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[14231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:39.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[14232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:39.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[14233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:39.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[14234]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-21T17:58:39.982
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[14235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:40.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[14236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:40.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[14237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:40.606
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[14238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:40.824
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[14239]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T17:58:40.934
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[14240]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T17:58:40.949
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[14241]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:40.949
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[14242]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.043
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[14243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.448
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[14244]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T17:58:41.448
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[14245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[14246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.598
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[14247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.628
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[14248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[14249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.718
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[14250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[14251]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-21T17:58:41.738
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[14252]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-21T17:58:41.748
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[14254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:41.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[14255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[14256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.278
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[14257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[14258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[14259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[14260]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-21T17:58:42.368
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[14261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[14262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.378
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[14263]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[14264]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[14265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[14266]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.738
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[14267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:42.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[14268]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:48.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[14269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:48.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:52.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[14271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:52.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[14272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:53.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:58:54.192
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[14274]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T17:58:56.298
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[14275]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-21T17:59:08.685
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:59:19.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[14277]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-21T17:59:20.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:59:20.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:59:20.629
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[14280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:59:21.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[14281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:59:21.066
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[14282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T17:59:21.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[14283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:02.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[14284]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:12.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:17.781
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[14286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:48.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:48.578
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:48.905
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[14289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:49.061
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[14290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:49.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[14291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:49.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[14292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:49.389
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[14293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:49.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[14294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:49.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[14295]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-21T18:00:49.904
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[14296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:49.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[14297]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:51.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[14298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:54.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[14299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:55.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[14300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:56.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[14301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:00:59.747
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[14302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:01:17.239
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:04:11.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[14304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:05:55.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[14305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:10:12.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:12:11.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[14307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:12:11.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[14308]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-21T18:13:55.682
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[14309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:20:00.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:20:00.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:21:18.568
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[14312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:40:49.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[14313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:42:10.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T18:57:50.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:00:01.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:09:11.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[14317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:16:31.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[14318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:16:46.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:19:25.211
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[14320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:19:25.441
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[14321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:19:25.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[14322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:20:00.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:20:00.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:26:46.089
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:30:02.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:49:30.343
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:58:34.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T19:59:52.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[14329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:02:04.635
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[14330]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:02:07.655
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:18:37.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[14332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:20:00.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:20:00.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:26:17.040
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:30:22.510
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:30:27.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[14337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:30:46.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:31:54.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14339]:
  Log Name: System
  Source: Microsoft-Windows-DriverFrameworks-UserMode
  Date: 2014-01-21T20:31:59.896
  Event ID: 10114
  Task: Startup of the UMDF reflector
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The UMDF reflector was unable to complete startup because the WUDFPf service was not found.  This service may be started later during boot, at which point Windows will attempt to start the device again.

Event[14340]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-PnP
  Date: 2014-01-21T20:31:59.896
  Event ID: 219
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_LEXAR&PROD_USB_FLASH_DRIVE&REV_8.07#2012010713564134377C&0#.

Event[14341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:32:01.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Driver Foundation - User-mode Driver Framework service entered the running state.

Event[14342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:35:30.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[14343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:42:47.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[14344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:43:53.155
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:45:53.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:49:52.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:52:31.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the running state.

Event[14348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:53:25.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[14349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:53:26.143
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[14350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:56:58.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[14351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:59:54.110
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T20:59:58.763
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[14353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:03:59.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Installer service entered the stopped state.

Event[14354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:04:05.091
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[14355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:06:05.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[14356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:16:36.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:18:30.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[14358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:20:00.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:20:00.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:20:54.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[14361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:22:30.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[14362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:31:21.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Tablet PC Input Service service entered the running state.

Event[14363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:32:04.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:36:10.034
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[14365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:36:11.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[14366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:36:11.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[14367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:36:13.574
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\fd170360-a71b-40b7-ab78-7549124bf5d6
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[14368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:36:15.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[14369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:38:20.155
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[14370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:38:20.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[14371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:42:54.561
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:44:20.131
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[14373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:51:22.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:51:34.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[14375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T21:51:55.160
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[14376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:03:17.022
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[14377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:03:17.272
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[14378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:03:17.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[14379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:08:33.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:11:42.462
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:13:08.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:18:34.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:20:00.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:20:00.347
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:23:08.087
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:41:00.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[14387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:41:01.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:42:26.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:00.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[14390]:
  Log Name: System
  Source: USER32
  Date: 2014-01-21T22:43:50.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[14391]:
  Log Name: System
  Source: USER32
  Date: 2014-01-21T22:43:55.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[14392]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-21T22:43:55.854
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14393]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-21T22:43:56.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[14394]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-21T22:43:56.446
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[14395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[14396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[14397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[14398]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-21T22:43:56.696
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[14399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[14400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[14401]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-21T22:43:56.696
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[14402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[14403]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-21T22:43:56.696
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[14404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[14405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[14406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[14407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[14408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[14409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[14410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.774
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[14411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[14412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[14413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[14414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[14415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.805
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[14416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[14417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[14418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[14419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.821
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[14420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[14421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:56.992
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[14422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:57.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[14423]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T11:50:24.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[14424]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T11:50:24.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[14425]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T11:50:24.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 25 seconds.

Event[14426]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-21T22:43:57.445
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[14427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:57.445
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[14428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:57.804
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[14429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:57.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[14430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:57.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:59.816
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[14432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:43:59.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[14433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:44:00.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[14434]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-21T22:44:01.688
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[14435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-21T22:44:06.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[14436]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-21T22:44:10.440
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?22T03:44:10.440203700Z.

Event[14437]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-22T11:49:59.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?22T16:49:58.595198400Z.

Event[14438]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T11:50:04.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14439]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-22T11:50:13.118
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[14440]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T11:50:13.805
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14441]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T11:50:13.805
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14442]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T11:50:13.805
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14443]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T11:50:13.805
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14444]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T11:50:13.805
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14445]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T11:50:13.805
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14446]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T11:50:13.805
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14447]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T11:50:13.805
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:20.840
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[14449]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-22T11:50:20.840
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[14450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:20.887
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[14451]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T11:50:20.918
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14452]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T11:50:24.023
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14453]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T11:50:24.023
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14454]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T11:50:24.023
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.038
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[14456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[14457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[14458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[14459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[14460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[14462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[14463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[14464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[14465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.538
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[14466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[14467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[14468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[14469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.553
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[14470]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-22T11:50:24.569
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[14471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[14472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[14473]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-22T11:50:24.584
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[14474]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-22T11:50:24.600
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[14475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[14476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[14477]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[14478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[14479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[14480]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-22T11:50:24.647
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[14481]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[14482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[14483]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.852
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[14484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.922
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[14485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[14486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:24.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[14487]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-22T11:50:24.952
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[14488]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T11:50:24.972
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[14490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[14491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[14492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[14493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[14494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[14495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.242
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[14496]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-22T11:50:25.242
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[14497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.242
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[14498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[14499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[14500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[14501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[14502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.512
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[14503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:25.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[14504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:31.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[14505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:31.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:36.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[14507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:36.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[14508]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T11:50:36.437
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:36.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:36.765
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[14511]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-22T11:50:38.527
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[14512]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T11:50:46.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:46.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:48.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[14515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:49.544
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[14516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:49.637
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[14517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:49.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[14518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:49.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[14519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:50:59.044
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[14520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:51:07.172
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:51:45.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[14522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:32.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:32.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:32.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[14525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:32.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[14526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:32.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[14527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:32.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[14528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:33.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[14529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:33.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[14530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:33.452
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[14531]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-22T11:52:33.512
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[14532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:33.512
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[14533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:33.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[14534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:37.632
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[14535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:38.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[14536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:39.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[14537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:42.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[14538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:52:45.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:53:36.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[14540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:54:28.485
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[14541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:54:32.835
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[14542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:54:46.785
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[14543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:54:57.207
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[14544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:55:46.810
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[14545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T11:57:35.000
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[14546]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T12:00:10.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 611 seconds.

Event[14547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:01:07.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:03:39.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[14549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:03:39.400
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[14550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:03:41.831
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[14551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:03:42.031
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[14552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:03:42.111
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[14553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:10:01.891
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[14554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:17:05.052
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:17:39.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:20:00.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:20:00.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:27:39.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14559]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-22T12:32:09.245
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[14560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:32:32.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[14561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:33:35.053
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[14562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:35:53.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:42:58.494
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[14564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:42:58.596
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:46:02.495
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[14566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:47:29.075
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:47:31.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14568]:
  Log Name: System
  Source: USER32
  Date: 2014-01-22T12:48:33.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[14569]:
  Log Name: System
  Source: USER32
  Date: 2014-01-22T12:48:36.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[14570]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T12:48:36.393
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14571]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T12:48:37.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[14572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[14573]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-22T12:48:37.407
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[14574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[14575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[14576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[14577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[14578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[14579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[14580]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-22T12:48:37.641
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[14581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[14582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[14583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[14584]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-22T12:48:37.641
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[14585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[14586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[14587]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-22T12:48:37.641
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[14588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[14589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[14590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[14591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[14592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.657
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[14593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[14594]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T18:32:18.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[14595]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T18:32:18.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[14596]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T18:32:18.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[14597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[14598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[14599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.704
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[14600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[14601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[14602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[14603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[14604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:37.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[14605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:38.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[14606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:38.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[14607]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-22T12:48:38.281
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[14608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:38.281
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[14609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:38.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:38.608
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[14611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T12:48:38.655
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[14612]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-22T12:48:42.633
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[14613]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-22T12:48:48.171
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?22T17:48:48.171655300Z.

Event[14614]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-22T18:31:55.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?22T23:31:54.595198400Z.

Event[14615]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T18:32:00.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14616]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-22T18:32:11.084
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[14617]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T18:32:11.677
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14618]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T18:32:11.677
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14619]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T18:32:11.677
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14620]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T18:32:11.677
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14621]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T18:32:11.677
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14622]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T18:32:11.677
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14623]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T18:32:11.677
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14624]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T18:32:11.677
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:15.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[14626]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-22T18:32:15.639
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[14627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:15.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[14628]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T18:32:15.686
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14629]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T18:32:18.135
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14630]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T18:32:18.135
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14631]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T18:32:18.135
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14632]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[14633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[14634]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[14635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[14636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[14637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.276
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[14639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[14640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[14641]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[14642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[14643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[14644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[14645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[14646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[14647]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-22T18:32:18.681
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[14648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[14649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[14650]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-22T18:32:18.712
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[14651]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-22T18:32:18.712
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[14652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[14653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[14654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[14655]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[14656]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.775
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[14657]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-22T18:32:18.775
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[14658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:18.775
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[14659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[14660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.110
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[14661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[14662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[14663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.200
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[14664]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-22T18:32:19.200
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[14665]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T18:32:19.220
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[14667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[14668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[14669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[14670]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.530
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[14671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[14672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:19.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[14673]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-22T18:32:20.520
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[14674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:20.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[14675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:20.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[14676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:20.530
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[14677]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:20.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[14678]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:20.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[14679]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:20.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[14680]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:20.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[14681]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:23.873
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[14682]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:23.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:28.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[14684]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:28.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[14685]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T18:32:28.241
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14686]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:29.598
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14687]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:29.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[14688]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-22T18:32:33.935
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[14689]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T18:32:43.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:43.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[14691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:43.658
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:43.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[14693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:44.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[14694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:44.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[14695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:32:44.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[14696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:33:39.393
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[14697]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-22T18:33:49.549
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[14698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:33:49.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[14699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:02.649
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[14700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:10.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:24.022
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:24.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[14703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:24.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:24.319
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[14705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:24.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[14706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:24.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[14707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:24.787
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[14708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:25.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[14709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:25.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[14710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:25.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[14711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:29.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[14712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:30.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[14713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:31.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[14714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:34.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[14715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:34:38.837
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:35:33.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[14717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:36:24.317
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[14718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:36:39.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[14719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:36:50.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[14720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:37:32.707
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[14721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:37:39.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[14722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:39:32.931
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[14723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:44:10.121
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:45:32.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[14725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:45:33.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[14726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:45:47.602
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[14727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:45:47.805
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[14728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:45:47.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[14729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:47:08.593
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[14730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:47:50.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14731]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-22T18:47:54.532
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 1 Group Policy objects were detected and applied.

Event[14732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:47:56.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14733]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-22T18:48:12.048
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 1 Group Policy objects were detected and applied.

Event[14734]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-22T18:48:24.176
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 1 Group Policy objects were detected and applied.

Event[14735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:50:26.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:53:46.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[14737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T18:57:54.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:00:44.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14739]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T19:01:05.138
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14740]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T19:01:07.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[14741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:01:07.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[14742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:01:07.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14743]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T19:01:51.735
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14744]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-22T19:01:52.484
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1233
  User Name: Andrew-PC\Kelly
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 2 Group Policy objects were detected and applied.

Event[14745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:01:54.075
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14746]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:02:26.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:02:27.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Protected Storage service entered the running state.

Event[14748]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T19:02:51.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:02:52.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:03:54.089
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14751]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-22T19:08:05.306
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[14752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:12:12.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[14753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:13:07.064
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:14:24.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[14755]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T19:15:13.690
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14756]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T19:15:18.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[14757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:15:18.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14758]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T19:15:26.326
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14759]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:15:28.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14760]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T19:15:33.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:15:33.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:15:34.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[14763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:17:28.171
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:17:34.504
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[14765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:20:00.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:20:00.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14767]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T19:27:49.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[14768]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T19:27:49.364
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:27:49.910
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14770]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T19:27:57.523
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:27:58.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14772]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T19:28:04.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:28:04.661
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:30:08.843
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:31:53.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[14776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:32:06.035
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[14777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:34:12.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[14778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:37:14.819
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[14779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:42:02.008
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[14780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:42:02.226
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[14781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:42:02.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[14782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:43:54.796
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[14783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:44:28.693
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:44:49.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14785]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T19:49:13.533
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:49:14.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:50:24.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14788]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T19:51:15.143
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T19:53:14.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:05:11.270
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[14791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:05:27.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14792]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T20:11:00.590
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14793]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T20:11:03.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[14794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:11:03.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14795]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T20:11:12.102
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:11:14.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14797]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T20:11:19.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:11:19.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:13:14.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:20:00.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:20:00.351
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:24:14.491
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[14803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:24:14.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[14804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:26:23.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[14805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:40:52.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14806]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T20:43:39.499
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14807]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T20:43:41.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[14808]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:43:41.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14809]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T20:43:48.328
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14810]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-22T20:43:48.687
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1233
  User Name: Andrew-PC\Kelly
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 2 Group Policy objects were detected and applied.

Event[14811]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:43:50.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:43:52.191
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14813]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T20:43:56.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:43:56.075
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:45:58.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14816]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:46:20.071
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14817]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:47:48.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[14818]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T20:48:24.653
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14819]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T20:48:26.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[14820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:48:26.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14821]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T20:48:36.727
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:48:38.085
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14823]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T20:48:44.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:48:44.405
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:50:38.088
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:52:56.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[14827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:57:13.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[14828]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T20:59:51.959
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14829]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T20:59:55.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[14830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T20:59:55.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14831]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T21:00:00.289
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14832]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-22T21:00:00.695
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1233
  User Name: Andrew-PC\Kelly
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 2 Group Policy objects were detected and applied.

Event[14833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:00:02.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14834]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T21:00:08.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:00:08.178
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14836]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-22T21:01:23.889
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1233
  User Name: Andrew-PC\Kelly
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 2 Group Policy objects were detected and applied.

Event[14837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:24.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14838]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T21:01:44.647
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[14839]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T21:01:48.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[14840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:48.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[14841]:
  Log Name: System
  Source: USER32
  Date: 2014-01-22T21:01:56.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user NT AUTHORITY\SYSTEM for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: restart
 Comment: 

Event[14842]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T21:01:58.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[14843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:57.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[14844]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-22T21:01:57.923
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[14845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:57.969
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[14846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.079
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[14847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[14848]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-22T21:01:58.188
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[14849]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-22T21:01:58.188
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[14850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[14851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.188
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[14852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[14853]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[14854]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-22T21:01:58.203
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[14855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[14856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[14857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[14858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[14859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[14860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[14861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[14862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[14863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.203
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[14864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[14865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[14866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[14867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[14868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.235
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[14869]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T21:02:54.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[14870]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T21:02:54.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[14871]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T21:02:54.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 25 seconds.

Event[14872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[14873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[14874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[14875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.406
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[14876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.484
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[14877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[14878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.718
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[14879]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-22T21:01:58.859
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[14880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:58.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[14881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:59.217
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[14882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:01:59.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[14883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:01.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[14884]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-22T21:02:03.195
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[14885]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-22T21:02:09.108
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?23T02:02:09.108350100Z.

Event[14886]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-22T21:02:29.983
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?23T02:02:28.610798500Z.

Event[14887]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T21:02:34.710
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14888]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-22T21:02:45.037
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[14889]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T21:02:45.614
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14890]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T21:02:45.614
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14891]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T21:02:45.614
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14892]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T21:02:45.614
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14893]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T21:02:45.614
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14894]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T21:02:45.614
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14895]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T21:02:45.614
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14896]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-22T21:02:45.614
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[14897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:51.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[14898]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-22T21:02:51.418
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[14899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:51.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[14900]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T21:02:51.496
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14901]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T21:02:54.397
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14902]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T21:02:54.397
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14903]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T21:02:54.397
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[14905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.428
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[14906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[14907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[14908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[14909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.522
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[14910]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[14911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[14912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[14913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[14914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[14915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[14916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[14917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[14918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.928
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[14919]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-22T21:02:54.928
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[14920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[14921]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[14922]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-22T21:02:54.959
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[14923]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-22T21:02:54.959
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[14924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[14925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[14926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[14927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:54.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[14928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[14929]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-22T21:02:55.037
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[14930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[14931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[14932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.282
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[14933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.342
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[14934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[14935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[14936]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-22T21:02:55.382
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[14937]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-22T21:02:55.392
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[14938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[14939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[14940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[14941]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[14942]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.652
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[14943]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[14944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[14945]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-22T21:02:55.692
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[14946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.702
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[14947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.702
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[14948]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[14949]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[14950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[14951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:55.842
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[14952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:02:56.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[14953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:03:01.591
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[14954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:03:01.638
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[14955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:03:05.694
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[14956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:03:05.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[14957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:03:05.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:03:06.177
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[14959]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-22T21:03:07.831
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[14960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:02.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[14961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:02.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[14962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:02.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[14963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:02.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[14964]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:03.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[14965]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:03.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[14966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:03.583
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[14967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:03.942
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[14968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:04.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[14969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:04.410
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[14970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:04.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[14971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:04.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[14972]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-22T21:05:05.330
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[14973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:05.330
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[14974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:05.736
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[14975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:05.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:10.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[14977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:11.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[14978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:12.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[14979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:16.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[14980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:19.558
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[14981]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T21:05:58.604
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[14982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:05:59.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[14983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:06:11.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[14984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:06:11.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[14985]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T21:06:20.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[14986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:06:20.028
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[14987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:07:04.097
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[14988]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:07:31.885
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[14989]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:07:59.986
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[14990]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-22T21:08:17.188
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[14991]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:08:22.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[14992]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:09:40.952
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[14993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:10:15.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[14994]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-22T21:10:17.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[14995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:10:17.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the running state.

Event[14996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:10:17.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[14997]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:10:18.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[14998]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:10:31.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[14999]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T21:11:15.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[15000]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T21:11:15.547
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:11:15.687
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[15002]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:11:15.703
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[15003]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T21:11:22.317
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:11:23.979
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15005]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-22T21:11:29.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:11:29.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:11:30.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[15008]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:12:56.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15009]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:13:30.424
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[15010]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:13:34.293
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:13:40.954
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[15012]:
  Log Name: System
  Source: USER32
  Date: 2014-01-22T21:14:01.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1233
  User Name: Andrew-PC\Kelly
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Kelly for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[15013]:
  Log Name: System
  Source: USER32
  Date: 2014-01-22T21:14:03.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1233
  User Name: Andrew-PC\Kelly
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Kelly for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[15014]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-22T21:14:04.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[15015]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-22T21:14:03.726
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15016]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-22T21:14:04.007
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[15017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[15018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[15019]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[15020]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[15021]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-22T21:14:04.179
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[15022]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-22T21:14:04.179
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[15023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[15024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[15025]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[15026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[15027]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[15028]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[15029]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-22T21:14:04.194
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[15030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[15031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[15032]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[15033]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[15034]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[15035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[15036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[15037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[15038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[15039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[15040]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-23T18:00:32.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[15041]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-23T18:00:32.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[15042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[15043]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-23T18:00:32.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 22 seconds.

Event[15044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.225
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[15045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.225
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[15046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.225
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[15047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[15048]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[15049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[15050]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[15051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[15052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.537
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[15053]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-22T21:14:04.834
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[15054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:04.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[15055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:05.177
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[15056]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:05.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[15057]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-22T21:14:07.377
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[15058]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-22T21:14:09.186
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[15059]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-22T21:14:10.465
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?23T02:14:10.465836400Z.

Event[15060]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-23T18:00:10.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?23T23:00:09.595198400Z.

Event[15061]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-23T18:00:15.632
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15062]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-23T18:00:23.510
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[15063]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-23T18:00:25.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15064]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-23T18:00:25.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15065]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-23T18:00:25.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15066]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-23T18:00:25.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15067]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-23T18:00:25.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15068]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-23T18:00:25.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15069]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-23T18:00:25.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15070]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-23T18:00:25.616
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:29.844
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[15072]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-23T18:00:29.844
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[15073]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:29.859
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[15074]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-23T18:00:29.875
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15075]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-23T18:00:32.355
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15076]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-23T18:00:32.355
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15077]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-23T18:00:32.355
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.371
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[15079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[15080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[15081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.433
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[15082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[15083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[15085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.839
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[15086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[15087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[15088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.854
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[15089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[15090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[15091]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[15092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[15093]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-23T18:00:32.886
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[15094]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.917
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[15095]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.917
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[15096]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-23T18:00:32.917
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[15097]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-23T18:00:32.917
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[15098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.917
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[15099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[15100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[15101]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:32.932
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[15102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:33.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[15103]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-23T18:00:33.711
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[15104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:33.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[15105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[15106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[15107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.611
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[15108]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[15109]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[15110]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-23T18:00:34.641
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[15111]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-23T18:00:34.661
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[15113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[15114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.841
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[15115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.861
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[15116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.901
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[15117]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.911
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[15118]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-23T18:00:34.941
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[15119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[15120]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[15121]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[15122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[15123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:34.961
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[15124]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:35.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[15125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:35.141
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[15126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:35.331
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[15127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:40.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[15128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:40.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:42.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[15130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:46.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[15131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:48.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15132]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:00:48.749
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[15133]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-23T18:00:50.543
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[15134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:41.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:41.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:41.725
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[15137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:42.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[15138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:42.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[15139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:42.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[15140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:43.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[15141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:43.550
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from auto start to demand start.

Event[15142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:43.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[15143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:43.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[15144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:44.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[15145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:44.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[15146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:44.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[15147]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-23T18:02:45.063
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[15148]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:45.063
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[15149]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:45.406
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:48.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:50.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[15152]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:51.849
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[15153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:02:52.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[15154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:03:00.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[15155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:03:01.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[15156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:03:41.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[15157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:03:53.547
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from demand start to auto start.

Event[15158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:03:58.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[15159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:04:12.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[15160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:04:22.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[15161]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-23T18:04:58.241
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:04:59.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:09.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[15164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:09.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[15165]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-23T18:05:11.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:11.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:12.309
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[15168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:15.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[15169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:21.755
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[15170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:21.755
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[15171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:23.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[15172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:26.295
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\ef97ac8a-e1d8-4ac1-af72-dd42fc7afd13
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[15173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:05:29.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[15174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:06:43.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[15175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:07:32.761
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[15176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:07:32.886
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[15177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:07:48.101
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:08:35.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:08:41.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:11:51.835
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[15181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:13:32.747
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[15182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:14:17.899
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[15183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:14:18.196
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[15184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:14:18.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[15185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:18:10.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[15186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:18:10.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[15187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:18:35.989
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15188]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:20:00.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:20:00.447
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:21:41.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15191]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:25:42.466
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:26:19.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:37:26.153
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:37:34.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:37:58.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15196]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-23T18:39:06.503
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15197]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-23T18:39:09.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[15198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:39:09.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[15199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:39:09.794
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[15200]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-23T18:39:14.459
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15201]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:39:16.050
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:39:19.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15203]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-23T18:39:22.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15204]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:39:22.595
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15205]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:39:23.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[15206]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-23T18:40:50.226
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[15207]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:41:23.586
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[15208]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:41:25.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:42:42.529
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[15210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:44:09.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[15211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:48:15.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[15212]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T18:58:10.925
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:00:47.908
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:02:10.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:02:20.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:06:19.110
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:20:00.323
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:20:00.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15219]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-23T19:21:36.846
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15220]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-23T19:21:41.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[15221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:21:41.042
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[15222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:23:48.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[15223]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:23:48.136
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the stopped state.

Event[15224]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:26:30.626
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[15225]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-23T19:26:34.198
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:26:34.994
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:26:35.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15228]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:26:38.488
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:26:43.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15230]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-23T19:26:45.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:26:45.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:28:34.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:31:25.378
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:38:01.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:39:37.254
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[15236]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:39:37.566
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[15237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:43:13.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:48:00.948
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from auto start to demand start.

Event[15239]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:49:55.468
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15240]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:54:01.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15241]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-23T19:54:10.469
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15242]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-23T19:54:13.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[15243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:54:13.464
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[15244]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-23T19:54:18.019
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15245]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-23T19:54:18.534
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1233
  User Name: Andrew-PC\Kelly
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 2 Group Policy objects were detected and applied.

Event[15246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:54:18.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:54:23.887
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15248]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-23T19:54:25.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:54:25.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:55:08.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:56:29.746
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15252]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:57:08.806
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[15253]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T19:59:03.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:06:41.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15255]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:15:19.122
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:15:23.888
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:16:09.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:20:00.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:20:00.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:22:04.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:24:35.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:28:26.823
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Tablet PC Input Service service entered the running state.

Event[15263]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-23T20:31:13.154
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15264]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-23T20:31:17.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[15265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:31:17.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[15266]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-23T20:31:32.326
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:31:33.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15268]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-23T20:31:40.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:31:40.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15270]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:31:40.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[15271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:32:23.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[15272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:33:33.889
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:33:33.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:33:40.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[15275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:34:57.279
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[15276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:34:59.958
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[15277]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:35:04.214
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\f93a8653-31b3-4649-84ff-a2edac14c6ff
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[15278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:37:03.365
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[15279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:37:03.514
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[15280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:38:36.715
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:43:03.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[15282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:44:34.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[15283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:44:34.956
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[15284]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:47:05.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:49:19.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15286]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T20:57:42.584
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[15287]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T21:20:00.457
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15288]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T21:20:00.457
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15289]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T21:25:37.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15290]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T21:29:32.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15291]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T21:38:35.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15292]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T21:54:20.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15293]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:04:20.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15294]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:11:02.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15295]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:11:09.737
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15296]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:11:57.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[15297]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:12:50.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:14:57.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[15299]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:20:00.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:20:00.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15301]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:20:53.361
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15302]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:23:26.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15303]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:29:20.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15304]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:35:06.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[15305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T22:37:06.647
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[15306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T23:20:00.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T23:20:00.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T23:46:28.656
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[15309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-23T23:48:28.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[15310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:20:00.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:20:00.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:39:40.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:39:44.024
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[15314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:39:47.487
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\0e00eb16-2a99-494c-a7f1-4a52618cbd17
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[15315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:39:51.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[15316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:40:52.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:41:04.665
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from demand start to auto start.

Event[15318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:42:00.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[15319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:42:00.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[15320]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:45:40.537
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:45:55.201
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15322]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-24T00:47:01.672
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15323]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:47:07.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15324]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:47:12.467
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:47:20.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[15326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:47:59.559
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[15327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:49:08.001
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:49:20.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[15329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T00:56:27.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15330]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-24T00:57:30.895
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:01:37.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:05:17.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:11:10.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:16:29.429
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:20:02.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:20:02.338
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15337]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:26:46.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15338]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:27:01.919
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:28:20.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[15340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:28:22.229
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[15341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:31:57.362
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[15342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:32:02.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:32:05.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:32:42.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:33:21.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[15346]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:36:51.127
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[15347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:37:42.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:39:51.128
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[15349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:40:22.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:41:07.442
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from auto start to demand start.

Event[15351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:47:37.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15352]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-24T01:48:42.770
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 1 Group Policy objects were detected and applied.

Event[15353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:48:43.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:50:43.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15355]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-24T01:50:48.859
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 1 Group Policy objects were detected and applied.

Event[15356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:50:49.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:52:49.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:56:38.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:57:37.973
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T01:59:06.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15361]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T02:04:24.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15362]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T02:20:00.566
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15363]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T02:20:00.566
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T02:30:54.977
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T02:32:54.880
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T02:32:58.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T02:46:08.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T02:49:24.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T02:50:58.919
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:15:49.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:18:29.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:20:00.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:20:00.865
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:24:17.782
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:28:29.987
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:48:52.998
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[15377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:49:29.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:49:42.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15379]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:51:32.169
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[15380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:52:32.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[15381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:54:30.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:57:00.893
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[15383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:57:25.588
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[15384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T03:58:00.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[15385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T04:06:12.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T04:20:00.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T04:20:00.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:20:00.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:20:00.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:22:03.771
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[15391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:32:01.034
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[15392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:32:01.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[15393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:33:52.652
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[15394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:35:03.008
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[15395]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:38:03.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[15396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:54:05.117
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[15397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:57:32.379
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[15398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:57:32.925
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[15399]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:57:33.034
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[15400]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:58:24.031
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[15401]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:58:25.778
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15402]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:58:31.456
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from demand start to auto start.

Event[15403]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:58:38.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[15404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:58:48.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[15405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T05:59:38.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[15406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T06:14:55.787
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T06:19:37.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the paused state.

Event[15408]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-24T06:19:42.859
  Event ID: 42
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system is entering sleep.

Sleep Reason: System Idle

Event[15409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T06:19:52.016
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[15410]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T06:19:52.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[15411]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-24T06:19:52.141
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0004 with the following status: 0.

Event[15412]:
  Log Name: System
  Source: Microsoft-Windows-HAL
  Date: 2014-01-24T06:20:18.754
  Event ID: 12
  Task: N/A
  Level: Error
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The platform firmware has corrupted memory across the previous system power transition.  Please check for updated firmware for your system.

Event[15413]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-24T10:01:05.500
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?24T15:01:05.500000000Z from ?2014?-?01?-?24T11:20:18.801509900Z.

Event[15414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:01:05.500
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from auto start to demand start.

Event[15415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:01:08.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the stopped state.

Event[15416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:01:08.526
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[15417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:01:08.573
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[15418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:01:09.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:01:09.056
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15420]:
  Log Name: System
  Source: Microsoft-Windows-Power-Troubleshooter
  Date: 2014-01-24T10:01:13.721
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system has resumed from sleep.

Sleep Time: ?2014?-?01?-?24T11:19:35.839035000Z
Wake Time: ?2014?-?01?-?24T15:01:08.526405300Z

Wake Source: Device -USB Root Hub

Event[15421]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:01:13.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[15422]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:01:23.408
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15423]:
  Log Name: System
  Source: USER32
  Date: 2014-01-24T10:02:01.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[15424]:
  Log Name: System
  Source: USER32
  Date: 2014-01-24T10:02:04.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[15425]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-24T10:02:04.196
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15426]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T10:02:05.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[15427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:05.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[15428]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-24T10:02:05.444
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[15429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:05.475
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[15430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:05.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[15431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:05.834
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[15432]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-24T10:02:05.834
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[15433]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-24T10:02:05.850
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[15434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:05.850
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[15435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:05.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[15436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:05.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[15437]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:05.943
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[15438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.021
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[15439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[15440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[15441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[15442]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[15443]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[15444]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T19:11:49.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[15445]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T19:11:49.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[15446]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T19:11:49.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[15447]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-24T10:02:06.115
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[15448]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.115
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[15449]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.146
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[15450]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[15451]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.177
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[15452]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.193
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[15453]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[15454]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.224
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[15455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.240
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[15456]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[15457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.318
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[15458]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[15459]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[15460]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.489
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[15461]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[15462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[15463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.614
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[15464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:06.988
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[15465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:07.238
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[15466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:07.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[15467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:07.363
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[15468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:08.938
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[15469]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-24T10:02:10.826
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[15470]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-24T10:02:11.575
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[15471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T10:02:11.575
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[15472]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-24T10:02:15.178
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?24T15:02:15.178923100Z.

Event[15473]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-24T19:11:26.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?25T00:11:25.595198400Z.

Event[15474]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T19:11:31.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15475]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-24T19:11:40.945
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[15476]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T19:11:42.162
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15477]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T19:11:42.162
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15478]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T19:11:42.162
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15479]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T19:11:42.162
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15480]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T19:11:42.162
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15481]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T19:11:42.162
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15482]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T19:11:42.162
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15483]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T19:11:42.162
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:47.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[15485]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-24T19:11:47.014
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[15486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:47.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[15487]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T19:11:47.060
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15488]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T19:11:49.494
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15489]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T19:11:49.494
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15490]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T19:11:49.494
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.510
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[15492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.525
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[15493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[15494]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.572
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[15495]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[15496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[15498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.978
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[15499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[15500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:49.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[15501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[15502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[15503]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[15504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[15505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[15506]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-24T19:11:50.399
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[15507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[15508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[15509]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-24T19:11:50.430
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[15510]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-24T19:11:50.430
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[15511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[15512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[15513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[15514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:50.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[15515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:51.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[15516]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-24T19:11:51.132
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[15517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:51.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[15518]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:51.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[15519]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:51.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[15520]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:51.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[15521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:51.413
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[15522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:51.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[15523]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-24T19:11:51.444
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[15524]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T19:11:51.460
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:51.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[15526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:51.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[15527]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:52.635
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[15528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:53.885
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[15529]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:56.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[15530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:56.185
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[15531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:56.295
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[15532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:57.017
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[15533]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-24T19:11:57.080
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[15534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:57.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[15535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:57.142
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[15536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:57.173
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[15537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:59.545
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[15538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:11:59.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[15539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:02.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[15540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:07.267
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[15541]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-24T19:12:07.345
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:07.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:07.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[15544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:07.454
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[15545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:07.579
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:09.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[15547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:09.341
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[15548]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-24T19:12:12.789
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[15549]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-24T19:12:19.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:19.065
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:20.984
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[15552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:21.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[15553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:21.249
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[15554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:21.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[15555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:12:21.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[15556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:13:16.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[15557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:13:30.891
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[15558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:07.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:07.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:07.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[15561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:07.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[15562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:07.721
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[15563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:07.846
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[15564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:08.267
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[15565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:08.267
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[15566]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-24T19:14:08.314
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[15567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:08.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[15568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:08.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:12.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[15570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:13.415
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[15571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:14.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[15572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:16.348
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:14:17.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[15574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:15:14.458
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[15575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:15:35.440
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[15576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:15:35.612
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from demand start to auto start.

Event[15577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:16:05.314
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[15578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:16:05.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[15579]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-24T19:16:09.620
  Event ID: 18
  Task: Automatic Updates
  Level: Information
  Opcode: Download
  Keyword: Download,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Ready: The following updates are downloaded and ready for installation. This computer is currently scheduled to install these updates on ?Friday, ?January ?24, ?2014 at 8:00 PM: 
- Definition Update for Windows Defender - KB915597 (Definition 1.165.2532.0)

Event[15580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:16:32.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15581]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-24T19:16:57.530
  Event ID: 19
  Task: Windows Update Agent
  Level: Information
  Opcode: Installation
  Keyword: Installation,Success
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB915597 (Definition 1.165.2532.0)

Event[15582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:16:59.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[15583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:17:20.187
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[15584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:17:30.659
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[15585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:18:20.228
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[15586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:19:09.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:19:40.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[15588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:20:00.646
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:20:00.646
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:22:40.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[15591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:22:48.814
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:25:09.729
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[15593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:25:10.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[15594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:26:57.213
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[15595]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:26:57.525
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[15596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:26:57.634
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[15597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:28:17.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:33:07.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:44:08.453
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15600]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-24T19:44:10.549
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[15601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:44:12.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[15602]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:44:12.219
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:44:18.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:49:09.364
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15605]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:52:11.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15606]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:54:07.732
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[15607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T19:57:19.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15608]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:02:38.040
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:05:12.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15610]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:14:18.903
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:20:00.345
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:20:00.945
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:29:18.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:39:38.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[15615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:39:44.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:39:44.404
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:44:28.050
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from auto start to demand start.

Event[15618]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T20:53:20.480
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:05:57.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Tablet PC Input Service service entered the running state.

Event[15620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:07:17.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15621]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:10:03.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15622]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:20:00.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:20:00.353
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15624]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:20:03.083
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15625]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:23:47.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:49:27.070
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15627]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:49:33.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the running state.

Event[15628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:49:35.810
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the running state.

Event[15629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:49:37.920
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the running state.

Event[15630]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15631]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15632]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15633]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15634]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15635]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15636]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15637]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15638]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15639]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15640]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15641]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15642]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15643]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15644]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15645]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15646]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15647]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15648]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15649]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15650]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15651]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15652]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15653]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15654]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15655]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15656]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15657]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T21:49:40.590
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:49:40.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the running state.

Event[15659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:49:44.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the running state.

Event[15660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:49:47.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the running state.

Event[15661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T21:49:50.060
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the running state.

Event[15662]:
  Log Name: System
  Source: VMnetAdapter
  Date: 2014-01-24T21:49:53.120
  Event ID: 36
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Adapter Driver for VMware Virtual Networks.

Event[15663]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-24T21:50:28.980
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0005 with the following status: 0.

Event[15664]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:02:58.557
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:07:37.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:12:42.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:20:00.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:20:00.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:32:39.074
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15670]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:32:44.044
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the stopped state.

Event[15671]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:32:44.094
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the stopped state.

Event[15672]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:32:47.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the stopped state.

Event[15673]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:32:49.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the stopped state.

Event[15674]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:32:50.254
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the stopped state.

Event[15675]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:32:53.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the stopped state.

Event[15676]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:32:55.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the stopped state.

Event[15677]:
  Log Name: System
  Source: BROWSER
  Date: 2014-01-24T22:32:57.000
  Event ID: 8033
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The browser has forced an election on network \Device\NetBT_Tcpip_{76CC605B-A2FA-44AB-9A7C-7AAE2AA5948E} because a master browser was stopped.

Event[15678]:
  Log Name: System
  Source: BROWSER
  Date: 2014-01-24T22:32:58.000
  Event ID: 8033
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The browser has forced an election on network \Device\NetBT_Tcpip_{57306F3B-FD76-440A-B72B-B11D3F3C6F23} because a master browser was stopped.

Event[15679]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:43:00.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15680]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:47:49.694
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15681]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-24T22:50:59.983
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?25T03:50:58.595198400Z.

Event[15682]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T22:51:25.000
  Event ID: 6008
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The previous system shutdown at 10:49:38 PM on ?1/?24/?2014 was unexpected.

Event[15683]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T22:51:25.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[15684]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T22:51:25.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[15685]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T22:51:25.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[15686]:
  Log Name: System
  Source: Microsoft-Windows-WER-SystemErrorReporting
  Date: 2014-01-24T22:51:26.000
  Event ID: 1001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The computer has rebooted from a bugcheck.  The bugcheck was: 0x0000007e (0xffffffffc0000094, 0xfffff960007a5577, 0xfffff88002b0d638, 0xfffff88002b0ce90). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 012414-24772-01.

Event[15687]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T22:51:04.726
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15688]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-24T22:51:10.966
  Event ID: 41
  Task: N/A
  Level: Critical
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Event[15689]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-24T22:51:15.583
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[15690]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T22:51:16.223
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15691]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T22:51:16.223
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15692]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T22:51:16.223
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15693]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T22:51:16.223
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15694]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T22:51:16.223
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15695]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T22:51:16.223
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15696]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T22:51:16.223
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15697]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T22:51:16.223
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:22.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[15699]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-24T22:51:22.213
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[15700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:22.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[15701]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T22:51:22.276
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15702]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T22:51:24.881
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15703]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T22:51:24.881
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15704]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T22:51:24.881
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15705]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:24.896
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[15706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:24.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[15707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:24.974
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[15708]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:25.037
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[15709]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:25.068
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[15710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:25.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.266
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[15712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[15713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.344
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[15714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[15715]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[15716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[15717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[15718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[15719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.360
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[15720]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-24T22:51:28.375
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[15721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[15722]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[15723]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.516
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[15724]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-24T22:51:28.531
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[15725]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-24T22:51:28.547
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[15726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.547
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[15727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.625
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[15728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:28.625
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[15729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:29.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[15730]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-24T22:51:29.402
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[15731]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:29.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[15732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:29.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[15733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:29.732
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[15734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:29.802
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[15735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:29.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[15736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:29.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[15737]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-24T22:51:29.902
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[15738]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T22:51:29.922
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:30.542
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[15740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:30.552
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[15741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:30.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[15742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:31.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[15743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:31.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[15744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:31.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[15745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:32.082
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[15746]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-24T22:51:32.342
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[15747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:32.532
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[15748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:32.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[15749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:32.652
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[15750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:32.652
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[15751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:32.862
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[15752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:33.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[15753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:33.652
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[15754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:41.519
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[15755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:41.581
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:44.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[15757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:44.249
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[15758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:45.107
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[15759]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-24T22:51:45.216
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:45.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:45.637
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[15762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:47.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[15763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:51:58.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[15764]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-24T22:52:04.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:52:04.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:52:05.241
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[15767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:52:05.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[15768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:52:05.818
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[15769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:52:05.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[15770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:52:05.959
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[15771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:52:40.029
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[15772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:52:46.004
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:01.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[15774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:41.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:41.631
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15776]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:41.841
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[15777]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:41.841
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[15778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:41.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[15779]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:42.421
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[15780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:42.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[15781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:42.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[15782]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-24T22:53:42.851
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[15783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:42.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[15784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:43.451
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:46.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[15786]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:48.621
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[15787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:50.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[15788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:53.941
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:56.811
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[15790]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:53:58.291
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[15791]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:55:48.539
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[15792]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:58:44.119
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T22:59:28.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:00:05.457
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[15795]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-24T23:00:09.777
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[15796]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-24T23:02:36.999
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?25T04:02:35.610798500Z.

Event[15797]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T23:02:41.741
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15798]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T23:03:01.000
  Event ID: 6008
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The previous system shutdown at 11:01:10 PM on ?1/?24/?2014 was unexpected.

Event[15799]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T23:03:01.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[15800]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T23:03:01.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[15801]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-24T23:03:01.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 26 seconds.

Event[15802]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-24T23:02:47.872
  Event ID: 41
  Task: N/A
  Level: Critical
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Event[15803]:
  Log Name: System
  Source: Microsoft-Windows-WER-SystemErrorReporting
  Date: 2014-01-24T23:03:03.000
  Event ID: 1001
  Task: N/A
  Level: Error
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: ANDREW-PC
  Description: 
The computer has rebooted from a bugcheck.  The bugcheck was: 0x0000007e (0xffffffffc0000094, 0xfffff96000635577, 0xfffff880067c5638, 0xfffff880067c4e90). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 012414-24679-01.

Event[15804]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-24T23:02:51.975
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[15805]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T23:02:52.630
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15806]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T23:02:52.630
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15807]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T23:02:52.630
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15808]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T23:02:52.630
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15809]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T23:02:52.630
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15810]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T23:02:52.630
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15811]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T23:02:52.630
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15812]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-24T23:02:52.630
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[15813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:02:59.104
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[15814]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-24T23:02:59.104
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[15815]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:02:59.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[15816]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T23:02:59.166
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15817]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T23:03:01.647
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15818]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T23:03:01.647
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15819]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T23:03:01.647
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15820]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:01.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[15821]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:01.725
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[15822]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:01.740
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[15823]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:01.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[15824]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:02.130
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15825]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:02.255
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[15826]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[15827]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.406
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[15828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[15829]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[15830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[15831]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[15832]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[15833]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[15834]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[15835]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-24T23:03:05.438
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[15836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[15837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[15838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[15839]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-24T23:03:05.828
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[15840]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-24T23:03:05.843
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[15841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.843
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[15842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[15843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:05.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[15844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:06.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[15845]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-24T23:03:06.450
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[15846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:06.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[15847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:06.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[15848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:06.710
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[15849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:06.770
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[15850]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:06.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[15851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:06.930
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[15852]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-24T23:03:07.000
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[15853]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-24T23:03:07.010
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[15854]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:07.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[15855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:07.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[15856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:07.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[15857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:07.990
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[15858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:08.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[15859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:08.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[15860]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:09.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[15861]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-24T23:03:09.630
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[15862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:09.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[15863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:09.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[15864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:09.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[15865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:09.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[15866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:10.420
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[15867]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:10.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[15868]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:11.692
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[15869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:18.306
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[15870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:18.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:20.022
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[15872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:21.333
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[15873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:21.411
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[15874]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-24T23:03:21.567
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15875]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:21.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:21.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[15877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:23.517
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[15878]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-24T23:03:45.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:45.783
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:46.157
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[15881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:46.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[15882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:47.077
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[15883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:47.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[15884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:47.109
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[15885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:03:54.643
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[15886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:04:15.989
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:04:31.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[15888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:18.429
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:18.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:18.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[15891]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:18.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[15892]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:18.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[15893]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:19.264
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[15894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:19.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[15895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:19.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[15896]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-24T23:05:19.626
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[15897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:19.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[15898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:22.441
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[15899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:23.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[15900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:24.576
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[15901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:27.327
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[15902]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-24T23:05:29.468
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[15903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:30.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:33.618
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[15905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:05:52.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[15906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:08:59.361
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[15907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:09:21.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15908]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2014-01-24T23:11:40.131
  Event ID: 37
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time provider NtpClient is currently receiving valid time data from time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->64.4.10.33:123).

Event[15909]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-24T23:11:42.323
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?25T04:11:42.323237800Z from ?2014?-?01?-?25T04:11:40.131865700Z.

Event[15910]:
  Log Name: System
  Source: Microsoft-Windows-Time-Service
  Date: 2014-01-24T23:11:42.323
  Event ID: 35
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The time service is now synchronizing the system time with the time source time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->64.4.10.33:123).

Event[15911]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-24T23:11:42.323
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?25T04:11:42.323000000Z from ?2014?-?01?-?25T04:11:42.323237800Z.

Event[15912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:11:51.879
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:14:27.709
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the running state.

Event[15914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:14:29.769
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the running state.

Event[15915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:14:31.953
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the running state.

Event[15916]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15917]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15918]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15919]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15920]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15921]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15922]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15923]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15924]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15925]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15926]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15927]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15928]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15929]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15930]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15931]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15932]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15933]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15934]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15935]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15936]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15937]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15938]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15939]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15940]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15941]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15942]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15943]:
  Log Name: System
  Source: hcmon
  Date: 2014-01-24T23:14:34.667
  Event ID: 0
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Detected unrecognized USB driver (\Driver\usbfilter).

Event[15944]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:14:34.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the running state.

Event[15945]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:14:38.895
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the running state.

Event[15946]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:14:42.138
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the running state.

Event[15947]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:14:44.478
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the running state.

Event[15948]:
  Log Name: System
  Source: VMnetAdapter
  Date: 2014-01-24T23:14:48.269
  Event ID: 36
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Adapter Driver for VMware Virtual Networks.

Event[15949]:
  Log Name: System
  Source: VMnetDHCP
  Date: 2014-01-24T23:16:19.000
  Event ID: 1
  Task: N/A
  Level: Warning
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
dispatch: Timeout waiting for input data

Event[15950]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:16:25.013
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[15951]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:16:25.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[15952]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:20:00.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[15953]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:20:00.316
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[15954]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:24:54.112
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[15955]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:24:54.892
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[15956]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:27:59.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[15957]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:28:09.438
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware Authorization Service service entered the stopped state.

Event[15958]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:28:09.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware DHCP Service service entered the stopped state.

Event[15959]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:28:12.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware NAT Service service entered the stopped state.

Event[15960]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:28:14.617
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware USB Arbitration Service service entered the stopped state.

Event[15961]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:28:15.678
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Agent service entered the stopped state.

Event[15962]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:28:18.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Server service entered the stopped state.

Event[15963]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:28:20.795
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The VMware vCenter Converter Standalone Worker service entered the stopped state.

Event[15964]:
  Log Name: System
  Source: BROWSER
  Date: 2014-01-24T23:28:22.000
  Event ID: 8033
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The browser has forced an election on network \Device\NetBT_Tcpip_{76CC605B-A2FA-44AB-9A7C-7AAE2AA5948E} because a master browser was stopped.

Event[15965]:
  Log Name: System
  Source: BROWSER
  Date: 2014-01-24T23:28:23.000
  Event ID: 8033
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The browser has forced an election on network \Device\NetBT_Tcpip_{57306F3B-FD76-440A-B72B-B11D3F3C6F23} because a master browser was stopped.

Event[15966]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:30:59.743
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[15967]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:33:08.307
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15968]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:38:04.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15969]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:42:34.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15970]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:43:50.563
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[15971]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:44:59.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15972]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:45:20.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[15973]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:47:28.501
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[15974]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:49:59.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[15975]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:52:34.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[15976]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:55:09.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[15977]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:55:37.024
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[15978]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-24T23:56:32.685
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[15979]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:00:17.035
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[15980]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:00:18.002
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[15981]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:00:18.252
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[15982]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:00:22.963
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[15983]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:00:24.586
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\ee88353b-6ab4-47f2-ba4c-a92d7d59be61
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[15984]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:02:26.156
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[15985]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:02:26.297
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[15986]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:03:11.471
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Telephony service entered the running state.

Event[15987]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:03:12.906
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Fax service entered the running state.

Event[15988]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-25T00:04:14.996
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15989]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-25T00:04:16.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[15990]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:04:16.072
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[15991]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-25T00:04:25.463
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[15992]:
  Log Name: System
  Source: Microsoft-Windows-GroupPolicy
  Date: 2014-01-25T00:04:26.025
  Event ID: 1503
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1233
  User Name: Andrew-PC\Kelly
  Computer: Andrew-PC
  Description: 
The Group Policy settings for the user were processed successfully. New settings from 2 Group Policy objects were detected and applied.

Event[15993]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:04:27.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[15994]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-25T00:04:33.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[15995]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:04:33.204
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[15996]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:06:27.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[15997]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-25T00:07:26.719
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[15998]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-25T00:07:28.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[15999]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:07:28.622
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[16000]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-25T00:07:39.339
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[16001]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:07:41.162
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[16002]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-25T00:07:46.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[16003]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:07:46.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[16004]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:08:26.186
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[16005]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:08:28.832
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[16006]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:11:10.397
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the running state.

Event[16007]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:11:11.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[16008]:
  Log Name: System
  Source: USER32
  Date: 2014-01-25T00:13:10.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\MdSched.exe (ANDREW-PC) has initiated the restart of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Hardware: Maintenance (Planned)
 Reason Code: 0x80010001
 Shutdown Type: restart
 Comment: 

Event[16009]:
  Log Name: System
  Source: Microsoft-Windows-MemoryDiagnostics-Schedule
  Date: 2014-01-25T00:13:10.461
  Event ID: 1001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The Windows Memory Diagnostic scheduled the testing of the computer's memory to run immediately

Event[16010]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-25T00:13:12.840
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[16011]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:12.949
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Fax service entered the stopped state.

Event[16012]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-25T00:13:13.152
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[16013]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-25T00:13:13.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[16014]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.214
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[16015]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[16016]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[16017]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[16018]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Disk Defragmenter service entered the stopped state.

Event[16019]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-25T00:13:13.354
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[16020]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-25T00:13:13.354
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[16021]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[16022]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[16023]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[16024]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[16025]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-25T00:59:56.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[16026]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[16027]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-25T00:59:56.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[16028]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[16029]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.354
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[16030]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[16031]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[16032]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-25T00:59:56.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[16033]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[16034]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-25T00:13:13.370
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?25T05:13:13.370000000Z from ?2014?-?01?-?25T05:13:13.370436700Z.

Event[16035]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[16036]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[16037]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[16038]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[16039]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.370
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[16040]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[16041]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.385
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[16042]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.401
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[16043]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.416
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[16044]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.432
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[16045]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.604
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[16046]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[16047]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.713
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[16048]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-25T00:13:13.869
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[16049]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:13.869
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[16050]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-25T00:13:14.025
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[16051]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:14.025
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[16052]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:14.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[16053]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:14.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[16054]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:14.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[16055]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:13:16.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[16056]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-25T00:13:18.346
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[16057]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-25T00:13:19.812
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?25T05:13:19.812811300Z.

Event[16058]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-25T00:59:32.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?25T05:59:31.610798500Z.

Event[16059]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T00:59:37.694
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16060]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-25T00:59:48.646
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[16061]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T00:59:49.816
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16062]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T00:59:49.816
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16063]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T00:59:49.816
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16064]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T00:59:49.816
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16065]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T00:59:49.816
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16066]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T00:59:49.816
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16067]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T00:59:49.816
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16068]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T00:59:49.816
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16069]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:53.716
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[16070]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-25T00:59:53.716
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[16071]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:53.747
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[16072]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T00:59:53.762
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16073]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T00:59:56.212
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16074]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T00:59:56.212
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16075]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T00:59:56.212
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16076]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.227
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[16077]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[16078]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[16079]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[16080]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[16081]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.477
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16082]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[16083]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.836
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[16084]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.851
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[16085]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[16086]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[16087]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[16088]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.867
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[16089]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[16090]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[16091]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-25T00:59:56.882
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[16092]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.914
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[16093]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.914
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[16094]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-25T00:59:56.914
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[16095]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-25T00:59:56.914
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[16096]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.914
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[16097]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.929
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[16098]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.929
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[16099]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.929
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[16100]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[16101]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-25T00:59:56.976
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[16102]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:56.993
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[16103]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[16104]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[16105]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.280
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[16106]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[16107]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.310
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[16108]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-25T00:59:57.320
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[16109]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T00:59:57.340
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16110]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[16111]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[16112]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.540
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[16113]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.560
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[16114]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.600
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[16115]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.630
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[16116]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[16117]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-25T00:59:57.640
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[16118]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.640
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[16119]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[16120]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[16121]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.660
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[16122]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[16123]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:57.780
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[16124]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T00:59:58.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[16125]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:00:03.704
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[16126]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:00:03.751
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[16127]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:00:06.356
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[16128]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:00:07.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[16129]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:00:07.511
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[16130]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:00:07.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[16131]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:00:07.885
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[16132]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-25T01:01:14.107
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[16133]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-25T01:01:31.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[16134]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:01:31.927
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[16135]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:01:32.099
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[16136]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:01:33.175
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[16137]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:01:33.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[16138]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:01:33.284
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[16139]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:01:33.300
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[16140]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:04.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16141]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:04.032
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16142]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:04.328
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[16143]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:04.375
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[16144]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:04.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[16145]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:04.672
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[16146]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:05.654
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[16147]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:06.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[16148]:
  Log Name: System
  Source: Microsoft-Windows-MemoryDiagnostics-Results
  Date: 2014-01-25T01:02:06.980
  Event ID: 1101
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Windows Memory Diagnostic tested the computer's memory and detected no errors

Event[16149]:
  Log Name: System
  Source: Microsoft-Windows-MemoryDiagnostics-Results
  Date: 2014-01-25T01:02:06.980
  Event ID: 1201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Windows Memory Diagnostic tested the computer's memory and detected no errors

Event[16150]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:08.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[16151]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:08.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[16152]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-25T01:02:09.149
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[16153]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:09.149
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[16154]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:09.554
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[16155]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:13.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[16156]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:15.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[16157]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:17.916
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[16158]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:02:23.392
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[16159]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:03:18.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[16160]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:03:22.750
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[16161]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:04:38.472
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[16162]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:05:43.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[16163]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:05:49.158
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[16164]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:05:49.813
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[16165]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:07:10.669
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[16166]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:13:24.266
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[16167]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:13:24.780
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[16168]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:13:24.936
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[16169]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:13:54.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16170]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:14:16.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[16171]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:14:22.610
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[16172]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:15:43.402
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[16173]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:19:01.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[16174]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:20:00.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16175]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:20:00.147
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16176]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:29:01.999
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[16177]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:30:03.759
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[16178]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:39:03.302
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16179]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:45:35.090
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16180]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T01:50:45.983
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[16181]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T02:00:45.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[16182]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T02:10:55.390
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16183]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T02:15:56.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16184]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T02:20:00.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16185]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T02:20:00.412
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16186]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T03:20:08.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16187]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T03:20:08.995
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16188]:
  Log Name: System
  Source: volsnap
  Date: 2014-01-25T03:31:07.066
  Event ID: 33
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The oldest shadow copy of volume E: was deleted to keep disk space usage for shadow copies of volume E: below the user defined limit.

Event[16189]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T04:20:01.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16190]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T04:20:01.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16191]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-25T04:52:22.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[16192]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T04:52:21.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the running state.

Event[16193]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T04:52:22.215
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[16194]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T04:53:06.098
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[16195]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:03:24.405
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[16196]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:03:25.372
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[16197]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:03:25.450
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[16198]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:20:00.217
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16199]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:20:00.217
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16200]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:22:14.237
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the paused state.

Event[16201]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-25T05:22:20.930
  Event ID: 42
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system is entering sleep.

Sleep Reason: System Idle

Event[16202]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:22:29.369
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[16203]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:22:29.369
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[16204]:
  Log Name: System
  Source: Microsoft-Windows-DNS-Client
  Date: 2014-01-25T05:22:41.194
  Event ID: 1014
  Task: N/A
  Level: Warning
  Opcode: Info
  Keyword: N/A
  User: S-1-5-20
  User Name: NT AUTHORITY\NETWORK SERVICE
  Computer: Andrew-PC
  Description: 
Name resolution for the name wpad.hershey.local timed out after none of the configured DNS servers responded.

Event[16205]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-25T05:22:57.500
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?25T10:22:57.500000000Z from ?2014?-?01?-?25T10:22:56.420157400Z.

Event[16206]:
  Log Name: System
  Source: Microsoft-Windows-HAL
  Date: 2014-01-25T05:22:57.656
  Event ID: 12
  Task: N/A
  Level: Error
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The platform firmware has corrupted memory across the previous system power transition.  Please check for updated firmware for your system.

Event[16207]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-25T05:30:05.000
  Event ID: 4
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service stopped.

Event[16208]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-25T05:30:05.500
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?25T10:30:05.500000000Z from ?2014?-?01?-?25T10:22:57.702800400Z.

Event[16209]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:30:05.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the stopped state.

Event[16210]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:30:05.624
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the stopped state.

Event[16211]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:30:08.058
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[16212]:
  Log Name: System
  Source: Microsoft-Windows-Power-Troubleshooter
  Date: 2014-01-25T05:30:08.230
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system has resumed from sleep.

Sleep Time: ?2014?-?01?-?25T10:22:12.942881600Z
Wake Time: ?2014?-?01?-?25T10:30:05.827600600Z

Wake Source: Timer - Windows will execute '\Microsoft\Windows\Media Center\mcupdate_scheduled' scheduled task that requested waking the computer.

Event[16213]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:30:33.361
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[16214]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:30:33.439
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[16215]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:30:39.976
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Computer Browser service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[16216]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:30:39.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the stopped state.

Event[16217]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:30:46.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[16218]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:30:57.167
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[16219]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:31:11.971
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[16220]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:31:12.533
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[16221]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:31:46.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[16222]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:33:08.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[16223]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-25T05:33:47.410
  Event ID: 42
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system is entering sleep.

Sleep Reason: System Idle

Event[16224]:
  Log Name: System
  Source: BROWSER
  Date: 2014-01-25T05:33:49.000
  Event ID: 8033
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The browser has forced an election on network \Device\NetBT_Tcpip_{1DEC5E89-D26F-4180-A9A0-9C30607B8F0C} because a master browser was stopped.

Event[16225]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-25T05:40:53.500
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: Time
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system time has changed to ?2014?-?01?-?25T10:40:53.500000000Z from ?2014?-?01?-?25T10:33:50.920393000Z.

Event[16226]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:40:53.515
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[16227]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:40:53.515
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the stopped state.

Event[16228]:
  Log Name: System
  Source: Microsoft-Windows-Power-Troubleshooter
  Date: 2014-01-25T05:40:56.573
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
The system has resumed from sleep.

Sleep Time: ?2014?-?01?-?25T10:33:42.995579200Z
Wake Time: ?2014?-?01?-?25T10:40:53.968000800Z

Wake Source: Device -USB Root Hub

Event[16229]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:41:01.409
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[16230]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:41:12.766
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16231]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:41:56.976
  Event ID: 7042
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Computer Browser service was successfully sent a stop control.

 The reason specified was: 0x40030011 [Operating System: Network Connectivity (Planned)]

 Comment: None

Event[16232]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:41:56.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the stopped state.

Event[16233]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:00.970
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[16234]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:06.695
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[16235]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:09.049
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[16236]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-25T05:42:16.038
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[16237]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:17.629
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[16238]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:21.981
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[16239]:
  Log Name: System
  Source: USER32
  Date: 2014-01-25T05:42:41.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[16240]:
  Log Name: System
  Source: USER32
  Date: 2014-01-25T05:42:47.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[16241]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-25T05:42:48.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[16242]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-25T05:42:47.173
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[16243]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.093
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[16244]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-25T05:42:48.140
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[16245]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.202
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[16246]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.296
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[16247]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[16248]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[16249]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.592
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[16250]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.623
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[16251]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.655
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[16252]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-25T05:42:48.686
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[16253]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-25T05:42:48.686
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[16254]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[16255]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-25T05:42:48.701
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[16256]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.701
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[16257]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.701
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[16258]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.701
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[16259]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.701
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[16260]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[16261]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[16262]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.717
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[16263]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.733
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[16264]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[16265]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.764
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[16266]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-25T21:04:53.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[16267]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.904
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[16268]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-25T21:04:53.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[16269]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[16270]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-25T21:04:53.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 24 seconds.

Event[16271]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.935
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[16272]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.951
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[16273]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[16274]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:48.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[16275]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:49.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[16276]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:49.263
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[16277]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-25T05:42:49.388
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[16278]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:49.388
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[16279]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:49.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[16280]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:50.355
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[16281]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:50.620
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[16282]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:51.104
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[16283]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:51.603
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[16284]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-25T05:42:53.569
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[16285]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T05:42:54.926
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[16286]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-25T05:42:55.394
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?25T10:42:55.394400200Z.

Event[16287]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-25T21:04:30.983
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?26T02:04:29.595198400Z.

Event[16288]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T21:04:35.663
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16289]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-25T21:04:44.524
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[16290]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T21:04:45.148
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16291]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T21:04:45.148
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16292]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T21:04:45.148
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16293]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T21:04:45.148
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16294]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T21:04:45.148
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16295]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T21:04:45.148
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16296]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T21:04:45.148
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16297]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-25T21:04:45.148
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16298]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:51.123
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[16299]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-25T21:04:51.123
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[16300]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:51.170
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[16301]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T21:04:51.185
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16302]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T21:04:53.634
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16303]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T21:04:53.634
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16304]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T21:04:53.634
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16305]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:53.650
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[16306]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:53.697
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[16307]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:53.712
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[16308]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:53.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[16309]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:53.900
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16310]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:53.915
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[16311]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[16312]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[16313]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[16314]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[16315]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.290
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[16316]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[16317]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[16318]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[16319]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.305
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[16320]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-25T21:04:54.305
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[16321]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[16322]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[16323]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-25T21:04:54.336
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[16324]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-25T21:04:54.352
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[16325]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[16326]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.352
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[16327]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[16328]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.368
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[16329]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[16330]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-25T21:04:54.419
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[16331]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.422
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[16332]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.754
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[16333]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[16334]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.844
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[16335]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.864
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[16336]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:54.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[16337]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-25T21:04:54.884
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[16338]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-25T21:04:54.894
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16339]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:55.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[16340]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:55.084
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[16341]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:55.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[16342]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:55.154
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[16343]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:57.474
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[16344]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:57.484
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[16345]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:58.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[16346]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-25T21:04:58.114
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[16347]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:58.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[16348]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:58.114
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[16349]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:58.124
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[16350]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:58.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[16351]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:58.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[16352]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:04:59.014
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[16353]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:00.125
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[16354]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:07.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[16355]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:07.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[16356]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:12.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[16357]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:12.698
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[16358]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:12.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[16359]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:13.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[16360]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:14.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[16361]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-25T21:05:17.456
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[16362]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-25T21:05:23.821
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[16363]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-25T21:05:35.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[16364]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:35.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[16365]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:35.968
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[16366]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:36.078
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[16367]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:36.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[16368]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:36.686
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[16369]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:05:36.858
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[16370]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:06:32.784
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[16371]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:08.102
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16372]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:08.523
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16373]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:08.570
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[16374]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:08.633
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[16375]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:08.679
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[16376]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:09.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[16377]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:09.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[16378]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:09.662
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[16379]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-25T21:07:09.740
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[16380]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:09.740
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[16381]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:10.208
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[16382]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:14.732
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[16383]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:17.431
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[16384]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:18.476
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[16385]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:21.549
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[16386]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:32.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[16387]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:07:44.013
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[16388]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:08:18.801
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[16389]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:10:28.890
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16390]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:11:11.681
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[16391]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:11:29.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[16392]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:11:29.262
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from demand start to auto start.

Event[16393]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:12:19.728
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[16394]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:12:30.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[16395]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-25T21:13:16.809
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[16396]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:13:19.773
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[16397]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:13:23.283
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[16398]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:13:29.585
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16399]:
  Log Name: System
  Source: USER32
  Date: 2014-01-25T21:14:03.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process Explorer.EXE has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: Other (Unplanned)
 Reason Code: 0x0
 Shutdown Type: power off
 Comment: 

Event[16400]:
  Log Name: System
  Source: USER32
  Date: 2014-01-25T21:14:06.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user Andrew-PC\Andrew for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[16401]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-25T21:14:06.680
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[16402]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-25T21:14:06.961
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[16403]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-25T21:14:07.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[16404]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.023
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[16405]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.039
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[16406]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[16407]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.179
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[16408]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.195
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[16409]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.195
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[16410]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-25T21:14:07.211
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[16411]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[16412]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[16413]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.211
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[16414]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[16415]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[16416]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[16417]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[16418]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.273
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[16419]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[16420]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[16421]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T01:06:21.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[16422]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T01:06:21.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[16423]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T01:06:21.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 22 seconds.

Event[16424]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-25T21:14:07.304
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[16425]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-25T21:14:07.320
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[16426]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[16427]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[16428]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.320
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[16429]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[16430]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[16431]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.382
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[16432]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.382
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[16433]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.398
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[16434]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.429
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[16435]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.601
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[16436]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.835
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[16437]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-25T21:14:07.991
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[16438]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:07.991
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[16439]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:08.069
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[16440]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:08.708
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[16441]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-25T21:14:11.251
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[16442]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-25T21:14:12.187
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[16443]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-25T21:14:13.622
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?26T02:14:13.622616400Z.

Event[16444]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-27T01:05:59.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?27T06:05:58.595198400Z.

Event[16445]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T01:06:04.648
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16446]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-27T01:06:12.869
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[16447]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T01:06:14.210
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16448]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T01:06:14.210
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16449]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T01:06:14.210
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16450]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T01:06:14.210
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16451]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T01:06:14.210
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16452]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T01:06:14.210
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16453]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T01:06:14.210
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16454]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T01:06:14.210
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16455]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:18.641
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[16456]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-27T01:06:18.641
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[16457]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:18.688
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[16458]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T01:06:18.703
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16459]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T01:06:21.152
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16460]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T01:06:21.152
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16461]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T01:06:21.152
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16462]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[16463]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.184
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[16464]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[16465]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[16466]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.262
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[16467]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.277
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16468]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.574
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[16469]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[16470]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.667
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[16471]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.667
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[16472]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.667
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[16473]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[16474]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[16475]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[16476]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.683
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[16477]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-27T01:06:21.698
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[16478]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[16479]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.714
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[16480]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-27T01:06:21.714
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[16481]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-27T01:06:21.730
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[16482]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.730
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[16483]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.730
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[16484]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[16485]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.745
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[16486]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[16487]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-27T01:06:21.792
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[16488]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:21.792
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[16489]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[16490]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.086
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[16491]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.146
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[16492]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.176
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[16493]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[16494]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-27T01:06:22.196
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[16495]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T01:06:22.216
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16496]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[16497]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[16498]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.416
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[16499]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.436
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[16500]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.496
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[16501]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.506
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[16502]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[16503]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-27T01:06:22.536
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[16504]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.536
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[16505]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[16506]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[16507]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.556
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[16508]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:22.916
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[16509]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:24.256
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[16510]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:24.446
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[16511]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:29.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[16512]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:29.924
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[16513]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:32.888
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[16514]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:33.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[16515]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:33.653
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[16516]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:33.996
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[16517]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:34.230
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[16518]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-27T01:06:36.024
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[16519]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-27T01:06:43.325
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[16520]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-27T01:06:53.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[16521]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:52.845
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[16522]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:53.048
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[16523]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:53.485
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[16524]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:54.483
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[16525]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:54.499
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[16526]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:06:54.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[16527]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-27T01:07:08.898
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[16528]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:08.898
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[16529]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-27T01:07:09.537
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[16530]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:17.822
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[16531]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:25.092
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[16532]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:25.372
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[16533]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:31.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[16534]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:31.374
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[16535]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:33.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[16536]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:36.336
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[16537]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:37.444
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[16538]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:37.662
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\050d2519-a53d-4951-8bc1-616cfe22ad7c
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[16539]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:46.882
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[16540]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:07:52.342
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[16541]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:30.671
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16542]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:30.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[16543]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:30.921
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16544]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:32.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[16545]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:32.699
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[16546]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:32.902
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[16547]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:33.916
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[16548]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:38.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[16549]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:38.580
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[16550]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:39.376
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[16551]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:43.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[16552]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:47.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[16553]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:08:51.856
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[16554]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:09:14.304
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[16555]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:09:50.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the stopped state.

Event[16556]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:10:35.222
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the running state.

Event[16557]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:12:30.288
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16558]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:12:35.248
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Error Reporting Service service entered the stopped state.

Event[16559]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:12:37.308
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[16560]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:12:39.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16561]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:12:56.297
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[16562]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:13:06.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[16563]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:13:56.321
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[16564]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:17:56.041
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[16565]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:18:35.790
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[16566]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:18:53.653
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[16567]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:18:54.012
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[16568]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:18:54.105
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[16569]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:20:00.339
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16570]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:20:00.340
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16571]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:22:01.418
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[16572]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:22:04.812
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[16573]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:22:35.748
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[16574]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:23:59.833
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16575]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:25:26.870
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[16576]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:25:29.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[16577]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:25:29.350
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16578]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:26:32.164
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[16579]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:26:34.799
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[16580]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:26:36.912
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[16581]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:31:42.875
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16582]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:39:23.080
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16583]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:40:59.939
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the stopped state.

Event[16584]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:44:23.642
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16585]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:47:04.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[16586]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:47:06.644
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[16587]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:48:32.741
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[16588]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:49:30.555
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the running state.

Event[16589]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:49:39.868
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16590]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:51:38.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Management service entered the running state.

Event[16591]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T01:59:45.286
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[16592]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:03:01.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the running state.

Event[16593]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:03:15.218
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the running state.

Event[16594]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:03:15.874
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the running state.

Event[16595]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-27T02:03:20.000
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service started.

Event[16596]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:03:20.429
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the running state.

Event[16597]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:03:20.881
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the running state.

Event[16598]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:04:50.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[16599]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:07:42.460
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Volume Shadow Copy service entered the stopped state.

Event[16600]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:10:42.470
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Microsoft Software Shadow Copy Provider service entered the stopped state.

Event[16601]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:12:47.016
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from auto start to demand start.

Event[16602]:
  Log Name: System
  Source: Virtual Disk Service
  Date: 2014-01-27T02:13:20.000
  Event ID: 4
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service stopped.

Event[16603]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:13:20.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Block Level Backup Engine Service service entered the stopped state.

Event[16604]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:13:20.443
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Virtual Disk service entered the stopped state.

Event[16605]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-27T02:14:52.341
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[16606]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-27T02:14:55.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[16607]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:14:55.289
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[16608]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-27T02:15:01.623
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[16609]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:15:01.982
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[16610]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-27T02:15:09.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[16611]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:15:09.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[16612]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:17:11.902
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[16613]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:20:00.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16614]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:20:00.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16615]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:21:43.975
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the running state.

Event[16616]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:29:58.775
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Background Intelligent Transfer Service service was changed from demand start to auto start.

Event[16617]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:35:05.331
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16618]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:38:16.119
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16619]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:44:21.946
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16620]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:45:03.380
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16621]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-27T02:46:15.000
  Event ID: 14205
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' stopped.

Event[16622]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-27T02:46:14.635
  Event ID: 7002
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logoff Notification for Customer Experience Improvement Program

Event[16623]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:15.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the stopped state.

Event[16624]:
  Log Name: System
  Source: USER32
  Date: 2014-01-27T02:46:23.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user NT AUTHORITY\SYSTEM for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[16625]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T02:46:25.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[16626]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:24.775
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[16627]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-27T02:46:24.838
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[16628]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:24.884
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[16629]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:24.962
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[16630]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.087
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[16631]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.087
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[16632]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-27T02:46:25.103
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[16633]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the stopped state.

Event[16634]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-27T02:46:25.103
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[16635]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[16636]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Presentation Foundation Font Cache 3.0.0.0 service entered the stopped state.

Event[16637]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[16638]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[16639]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[16640]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.103
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the stopped state.

Event[16641]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-27T02:46:25.103
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[16642]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[16643]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[16644]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[16645]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[16646]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[16647]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.118
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the stopped state.

Event[16648]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[16649]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[16650]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.134
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[16651]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[16652]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[16653]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.150
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Backup service entered the stopped state.

Event[16654]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.165
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[16655]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T20:09:36.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[16656]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T20:09:36.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[16657]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T20:09:36.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 25 seconds.

Event[16658]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.181
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[16659]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.196
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[16660]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.243
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the stopped state.

Event[16661]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.274
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[16662]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.430
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[16663]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.727
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[16664]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-27T02:46:25.758
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[16665]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:25.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[16666]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:26.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The UPnP Device Host service entered the stopped state.

Event[16667]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:26.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[16668]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:26.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[16669]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T02:46:28.129
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[16670]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-27T02:46:30.095
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[16671]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-27T02:46:36.194
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?27T07:46:36.194980900Z.

Event[16672]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-27T20:09:12.968
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?28T01:09:11.610798400Z.

Event[16673]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T20:09:17.632
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16674]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-27T20:09:26.274
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[16675]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T20:09:26.914
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16676]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T20:09:26.914
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16677]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T20:09:26.914
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16678]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T20:09:26.914
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16679]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T20:09:26.914
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16680]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T20:09:26.914
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16681]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T20:09:26.914
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16682]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T20:09:26.914
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16683]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:34.137
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[16684]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-27T20:09:34.137
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[16685]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:34.168
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[16686]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T20:09:34.184
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16687]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T20:09:36.633
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16688]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T20:09:36.633
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16689]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T20:09:36.633
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16690]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:36.648
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[16691]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:36.664
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[16692]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:36.680
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[16693]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:36.711
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[16694]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:36.742
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[16695]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:36.758
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16696]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.054
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[16697]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[16698]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.132
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[16699]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[16700]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.148
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[16701]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[16702]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[16703]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[16704]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.163
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[16705]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-27T20:09:37.179
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[16706]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[16707]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.194
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[16708]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-27T20:09:37.194
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[16709]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-27T20:09:37.210
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[16710]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[16711]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.210
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[16712]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[16713]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[16714]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[16715]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-27T20:09:37.272
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[16716]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.272
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[16717]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.666
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[16718]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.696
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[16719]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.756
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[16720]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.776
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[16721]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[16722]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-27T20:09:37.796
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[16723]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T20:09:37.806
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16724]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[16725]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:37.976
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[16726]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:38.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[16727]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:38.046
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[16728]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:38.106
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[16729]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:38.116
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[16730]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:38.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[16731]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-27T20:09:38.226
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[16732]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:38.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[16733]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:38.236
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[16734]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:38.246
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[16735]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:38.396
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[16736]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:39.016
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[16737]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:40.226
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[16738]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:40.326
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[16739]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:47.312
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[16740]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:47.359
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[16741]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:52.694
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[16742]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:52.725
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[16743]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:53.599
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[16744]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:53.786
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[16745]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:09:54.020
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[16746]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-27T20:09:56.157
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[16747]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:47.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16748]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:47.807
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16749]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:48.119
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[16750]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:48.961
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[16751]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:49.335
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[16752]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:50.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[16753]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:50.100
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[16754]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:50.381
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[16755]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:50.490
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[16756]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:51.738
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[16757]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:52.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[16758]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:52.268
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[16759]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-27T20:11:52.487
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[16760]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:52.487
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[16761]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:52.783
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[16762]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:53.797
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[16763]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:57.697
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[16764]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:58.820
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[16765]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:11:59.366
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[16766]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:12:03.313
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[16767]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:12:06.199
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[16768]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:14:42.386
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16769]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:14:43.104
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the running state.

Event[16770]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:14:52.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the stopped state.

Event[16771]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:14:52.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the stopped state.

Event[16772]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:14:57.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the running state.

Event[16773]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:15:08.205
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Scheduler Service service entered the stopped state.

Event[16774]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:15:57.735
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Center Receiver Service service entered the stopped state.

Event[16775]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:16:55.673
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[16776]:
  Log Name: System
  Source: USER32
  Date: 2014-01-27T20:19:28.000
  Event ID: 1074
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The process C:\Windows\system32\winlogon.exe (ANDREW-PC) has initiated the power off of computer ANDREW-PC on behalf of user NT AUTHORITY\SYSTEM for the following reason: No title for this reason could be found
 Reason Code: 0x500ff
 Shutdown Type: power off
 Comment: 

Event[16777]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T20:19:30.000
  Event ID: 6006
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was stopped.

Event[16778]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.332
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[16779]:
  Log Name: System
  Source: Microsoft-Windows-WindowsUpdateClient
  Date: 2014-01-27T20:19:30.410
  Event ID: 27
  Task: Windows Update Agent
  Level: Information
  Opcode: State Change
  Keyword: State
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Automatic Updates is now paused.

Event[16780]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.457
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the stopped state.

Event[16781]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.566
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the stopped state.

Event[16782]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the stopped state.

Event[16783]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.691
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the stopped state.

Event[16784]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the stopped state.

Event[16785]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the stopped state.

Event[16786]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-27T20:19:30.706
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'false' 
PlugPlay caching subsystem enabled: 'false' 


Event[16787]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the stopped state.

Event[16788]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the stopped state.

Event[16789]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the stopped state.

Event[16790]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-27T20:19:30.706
  Event ID: 51047
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is stopped. ShutDown Flag value is 1

Event[16791]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-27T20:19:30.706
  Event ID: 50037
  Task: Service State Event
  Level: Information
  Opcode: ServiceStop
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is stopped. ShutDown Flag value is 1

Event[16792]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the stopped state.

Event[16793]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the stopped state.

Event[16794]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the stopped state.

Event[16795]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the stopped state.

Event[16796]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the stopped state.

Event[16797]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.706
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the stopped state.

Event[16798]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the stopped state.

Event[16799]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.722
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the stopped state.

Event[16800]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.737
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the stopped state.

Event[16801]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.737
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the stopped state.

Event[16802]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[16803]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.753
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the stopped state.

Event[16804]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.800
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the stopped state.

Event[16805]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.831
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the stopped state.

Event[16806]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T21:17:33.000
  Event ID: 6009
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Microsoft (R) Windows (R) 6.01. 7601 Service Pack 1 Multiprocessor Free.

Event[16807]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T21:17:33.000
  Event ID: 6005
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Event log service was started.

Event[16808]:
  Log Name: System
  Source: EventLog
  Date: 2014-01-27T21:17:33.000
  Event ID: 6013
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The system uptime is 23 seconds.

Event[16809]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:30.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the stopped state.

Event[16810]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:31.190
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the stopped state.

Event[16811]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-27T20:19:31.346
  Event ID: 4001
  Task: N/A
  Level: Warning
  Opcode: Stop
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully stopped.


Event[16812]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:31.346
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the stopped state.

Event[16813]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:31.876
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the stopped state.

Event[16814]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T20:19:34.762
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the stopped state.

Event[16815]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Power
  Date: 2014-01-27T20:19:35.698
  Event ID: 109
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The kernel power manager has initiated a shutdown transition.

Event[16816]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-27T20:19:36.790
  Event ID: 13
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The operating system is shutting down at system time ?2014?-?01?-?28T01:19:36.790687700Z.

Event[16817]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-General
  Date: 2014-01-27T21:17:10.858
  Event ID: 12
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The operating system started at system time ?2014?-?01?-?28T02:17:09.595198400Z.

Event[16818]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T21:17:15.538
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'FileInfo' (6.1, ?2009?-?07?-?13T18:34:25.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16819]:
  Log Name: System
  Source: vna_ap
  Date: 2014-01-27T21:17:23.120
  Event ID: 3
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Check Point Virtual Network Adapter: vna_ap: driver installed

Event[16820]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T21:17:23.775
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 0 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16821]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T21:17:23.775
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 1 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16822]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T21:17:23.775
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 2 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16823]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T21:17:23.775
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 3 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16824]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T21:17:23.775
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 4 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16825]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T21:17:23.775
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 5 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16826]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T21:17:23.775
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 6 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16827]:
  Log Name: System
  Source: Microsoft-Windows-Kernel-Processor-Power
  Date: 2014-01-27T21:17:23.775
  Event ID: 26
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Processor 7 in group 0 exposes the following:

2 idle state(s)
0 performance state(s)
0 throttle state(s)

Event[16828]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:30.639
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Plug and Play service entered the running state.

Event[16829]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-27T21:17:30.639
  Event ID: 20010
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
One or more of the Plug and Play service's subsystems has changed state. 

PlugPlay install subsystem enabled: 'true' 
PlugPlay caching subsystem enabled: 'true' 


Event[16830]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:30.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Power service entered the running state.

Event[16831]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T21:17:30.686
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'luafv' (6.1, ?2009?-?07?-?13T18:26:13.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16832]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T21:17:33.135
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'MBAMProtector' (6.0, ?2013?-?02?-?28T15:33:07.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16833]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T21:17:33.135
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINFile' (6.1, ?2013?-?10?-?11T04:39:50.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16834]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T21:17:33.135
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'PSINProc' (6.1, ?2013?-?10?-?11T04:41:22.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16835]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.151
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DCOM Server Process Launcher service entered the running state.

Event[16836]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.166
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The RPC Endpoint Mapper service entered the running state.

Event[16837]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.182
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Remote Procedure Call (RPC) service entered the running state.

Event[16838]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.213
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Event Log service entered the running state.

Event[16839]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.260
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16840]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.541
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio Endpoint Builder service entered the running state.

Event[16841]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.619
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Audio service entered the running state.

Event[16842]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.877
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Font Cache Service service entered the running state.

Event[16843]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Themes service entered the running state.

Event[16844]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Group Policy Client service entered the running state.

Event[16845]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.897
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The User Profile Service service entered the running state.

Event[16846]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The COM+ Event System service entered the running state.

Event[16847]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The System Event Notification Service service entered the running state.

Event[16848]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Desktop Window Manager Session Manager service entered the running state.

Event[16849]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.907
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Accounts Manager service entered the running state.

Event[16850]:
  Log Name: System
  Source: VMnetBridge
  Date: 2014-01-27T21:17:33.917
  Event ID: 10
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the Bridge Driver for VMware Virtual Networks.

Event[16851]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.937
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Store Interface Service service entered the running state.

Event[16852]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TCP/IP NetBIOS Helper service entered the running state.

Event[16853]:
  Log Name: System
  Source: Microsoft-Windows-Dhcp-Client
  Date: 2014-01-27T21:17:33.947
  Event ID: 50036
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv4 client service is started

Event[16854]:
  Log Name: System
  Source: Microsoft-Windows-DHCPv6-Client
  Date: 2014-01-27T21:17:33.947
  Event ID: 51046
  Task: Service State Event
  Level: Information
  Opcode: ServiceStart
  Keyword: N/A
  User: S-1-5-19
  User Name: NT AUTHORITY\LOCAL SERVICE
  Computer: Andrew-PC
  Description: 
DHCPv6 client service is started

Event[16855]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.947
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DHCP Client service entered the running state.

Event[16856]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.957
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The CNG Key Isolation service entered the running state.

Event[16857]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The DNS Client service entered the running state.

Event[16858]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:33.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Extensible Authentication Protocol service entered the running state.

Event[16859]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WLAN AutoConfig service entered the running state.

Event[16860]:
  Log Name: System
  Source: Microsoft-Windows-WLAN-AutoConfig
  Date: 2014-01-27T21:17:34.007
  Event ID: 4000
  Task: N/A
  Level: Information
  Opcode: Start
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
WLAN AutoConfig service has successfully started.


Event[16861]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.007
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Shell Hardware Detection service entered the running state.

Event[16862]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.257
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Task Scheduler service entered the running state.

Event[16863]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.287
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Print Spooler service entered the running state.

Event[16864]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.357
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Base Filtering Engine service entered the running state.

Event[16865]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.367
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Firewall service entered the running state.

Event[16866]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Workstation service entered the running state.

Event[16867]:
  Log Name: System
  Source: vmx86
  Date: 2014-01-27T21:17:34.387
  Event ID: 34
  Task: None
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
N/A

Event[16868]:
  Log Name: System
  Source: Microsoft-Windows-FilterManager
  Date: 2014-01-27T21:17:34.407
  Event ID: 6
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
File System Filter 'aksdf' (5.1, ?2012?-?10?-?06T10:45:21.000000000Z) has successfully loaded and registered with Filter Manager.

Event[16869]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Cryptographic Services service entered the running state.

Event[16870]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.567
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Encrypting File System (EFS) service entered the running state.

Event[16871]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IKE and AuthIP IPsec Keying Modules service entered the running state.

Event[16872]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.627
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMService service entered the running state.

Event[16873]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.667
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Connections service entered the running state.

Event[16874]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:34.677
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network Location Awareness service entered the running state.

Event[16875]:
  Log Name: System
  Source: VMnetuserif
  Date: 2014-01-27T21:17:35.277
  Event ID: 1
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
() Starting up the User Interface Driver for VMware Virtual Networks.

Event[16876]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:35.387
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Superfetch service entered the running state.

Event[16877]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:35.407
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Distributed Link Tracking Client service entered the running state.

Event[16878]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:35.417
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Network List Service service entered the running state.

Event[16879]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:35.577
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Management Instrumentation service entered the running state.

Event[16880]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:35.607
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IP Helper service entered the running state.

Event[16881]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:36.027
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Server service entered the running state.

Event[16882]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:37.557
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Image Acquisition (WIA) service entered the running state.

Event[16883]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:37.587
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Product Service service entered the running state.

Event[16884]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:43.399
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Panda Cloud Antivirus Service service entered the running state.

Event[16885]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:43.461
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WinHTTP Web Proxy Auto-Discovery Service service entered the running state.

Event[16886]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:46.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Computer Browser service entered the running state.

Event[16887]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:46.550
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Security Center service entered the running state.

Event[16888]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:46.675
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Human Interface Device Access service entered the running state.

Event[16889]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:46.909
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the running state.

Event[16890]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:17:47.096
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The IPsec Policy Agent service entered the running state.

Event[16891]:
  Log Name: System
  Source: Microsoft-Windows-UserPnp
  Date: 2014-01-27T21:17:48.781
  Event ID: 20003
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
Driver Management has concluded the process to add Service tunnel for Device Instance ID ROOT\*ISATAP\0003 with the following status: 0.

Event[16892]:
  Log Name: System
  Source: Microsoft-Windows-Winlogon
  Date: 2014-01-27T21:18:57.577
  Event ID: 7001
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
User Logon Notification for Customer Experience Improvement Program

Event[16893]:
  Log Name: System
  Source: Microsoft-Windows-WMPNSS-Service
  Date: 2014-01-27T21:19:12.000
  Event ID: 14204
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
Service 'WMPNetworkSvc' started.

Event[16894]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:12.033
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Media Player Network Sharing Service service entered the running state.

Event[16895]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:12.720
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Search service entered the running state.

Event[16896]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:13.500
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Provider Host service entered the running state.

Event[16897]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:13.531
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The SSDP Discovery service entered the running state.

Event[16898]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:13.546
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Function Discovery Resource Publication service entered the running state.

Event[16899]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:13.562
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The HomeGroup Provider service entered the running state.

Event[16900]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:43.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16901]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:43.670
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16902]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:44.076
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Background Intelligent Transfer Service service entered the running state.

Event[16903]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:44.263
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Policy Service service entered the running state.

Event[16904]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:44.325
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic Service Host service entered the running state.

Event[16905]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:44.590
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Diagnostic System Host service entered the running state.

Event[16906]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:44.700
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The PnP-X IP Bus Enumerator service entered the running state.

Event[16907]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:45.636
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The MBAMScheduler service entered the running state.

Event[16908]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:46.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the running state.

Event[16909]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:46.384
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Mozilla Maintenance Service service entered the stopped state.

Event[16910]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-27T21:19:47.258
  Event ID: 201
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service started successfully.

Event[16911]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:47.258
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant Service service entered the running state.

Event[16912]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:47.866
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the running state.

Event[16913]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:51.844
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The TeamViewer 9 service entered the running state.

Event[16914]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:53.030
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Time service entered the running state.

Event[16915]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:53.826
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Defender service entered the running state.

Event[16916]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:19:57.616
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Update service entered the running state.

Event[16917]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:20:00.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the running state.

Event[16918]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:20:00.612
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Adobe Flash Player Update Service service entered the stopped state.

Event[16919]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:20:53.964
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

Event[16920]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:21:06.232
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Portable Device Enumerator Service service entered the stopped state.

Event[16921]:
  Log Name: System
  Source: Microsoft-Windows-Application-Experience
  Date: 2014-01-27T21:22:42.444
  Event ID: 206
  Task: N/A
  Level: Information
  Opcode: Info
  Keyword: N/A
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The Program Compatibility Assistant service successfully performed phase two initialization.

Event[16922]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:22:51.009
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Live ID Sign-in Assistant service entered the running state.

Event[16923]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:23:00.073
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[16924]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:27:36.250
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Software Protection service entered the stopped state.

Event[16925]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:28:02.395
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the stopped state.

Event[16926]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:31:14.416
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from demand start to auto start.

Event[16927]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:31:14.759
  Event ID: 7040
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-18
  User Name: NT AUTHORITY\SYSTEM
  Computer: Andrew-PC
  Description: 
The start type of the Windows Modules Installer service was changed from auto start to demand start.

Event[16928]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:31:14.853
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the stopped state.

Event[16929]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:32:00.015
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the running state.

Event[16930]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:32:00.967
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Problem Reports and Solutions Control Panel Support service entered the stopped state.

Event[16931]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:33:05.520
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the stopped state.

Event[16932]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:39:39.972
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Experience service entered the running state.

Event[16933]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:41:04.002
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Multimedia Class Scheduler service entered the running state.

Event[16934]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:41:31.788
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Application Information service entered the running state.

Event[16935]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:41:36.116
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  cpuz136
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\\cpuz136\cpuz136_x64.sys
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[16936]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:41:37.067
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Networking Identity Manager service entered the running state.

Event[16937]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:41:37.271
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Peer Name Resolution Protocol service entered the running state.

Event[16938]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:41:39.127
  Event ID: 7045
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: S-1-5-21-4067649888-1033233507-38433955-1000
  User Name: Andrew-PC\Andrew
  Computer: Andrew-PC
  Description: 
A service was installed in the system.

Service Name:  speccy
Service File Name:  C:\Users\Andrew\AppData\Local\Temp\f7fafd05-7ef9-4baf-a880-fda33a6a6f9e
Service Type:  kernel mode driver
Service Start Type:  demand start
Service Account:  

Event[16939]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:41:42.045
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The WMI Performance Adapter service entered the running state.

Event[16940]:
  Log Name: System
  Source: Service Control Manager
  Date: 2014-01-27T21:42:04.180
  Event ID: 7036
  Task: N/A
  Level: Information
  Opcode: N/A
  Keyword: Classic
  User: N/A
  User Name: N/A
  Computer: Andrew-PC
  Description: 
The Windows Modules Installer service entered the running state.

