Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Virus Infection

Virus

  • Please log in to reply

#31
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,650 posts
  • MVP

Your Latency Monitor results look much better.  Networking related drivers are using much less time so I think the new Realtek driver helped.  I would add Ublock Origin to Edge and get a second browser.  Edge has been refusing to start for some people so good to have an alternative.

 

 

 

Might be worth doing a check disk to make sure your file system is OK.

 

Search for

cmd

when it finds Command Prompt, right click on it and Run As Admin.

type:

chkdsk  c:  /r

hit Enter.  It will tell you it can't do it now and ask if you want to schedule it for the next reboot.  Tell it Y

hit Enter and then restart.

 

Check Disk should run and may take an hour or two depending on size of drive and CPU speed.  Shouldn't be too bad since you have an SSD.  Will boot into Windows when done.

 

After it reboots, best to rerun SFC and DISM.  Following fixlist will do it for you:

 

Attached File  fixlist.txt   414bytes   209 downloads

 

Will take about 30 minutes and reboot when done.  Post new FRST scan results.

 

 

Can you do the benchmark?

 

Also a new Process Explorer log.  Be sure to right click on it and Run as admin.


  • 0

Advertisements


#32
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

Hello my Friend,

 

I just wanted to Sincerely Thank You for all your Assistance, Patience, & Expert Advice you have provided me over this ongoing issue.

 

It truly has been a huge learning experience for me following your advice & using the tools you advised me to utilize & how to use those tools!

 

I did run the Benchmark a few times but no test results were presented to me to post back the URL you requested.

 

I will now proceed with the next batch of instructions & post back when completed,

 

BTW Edge uses 0-10% CPU fluctuating every second on a blank tab & on Youtube uses 85% CPU so it makes me feel there is something nefarious hidden within the browser/internet settings causing this massive CPU consumption.

 

Don't Understand why Exploit Protection has so many, .Exe Overrides such as,

ExtExport, ie4uinit, ieinstal, ielowutil, ieUnatt, iexplore, mscorsvw, msfeedssync, mshta, ngen, ngentask, Printdialog, runtimebroker, & systemSettings with all of these indicating 1 Override for Force Randomisation for images (Mandatory ASLR),

 

PresentationHost.exe has 6 overrides,

 

& why PrintIsolationHost, splwow64, spoolsv is even listed as they indicate 0 system overrides?

 

Should I turn off all the blue check marked Override system settings & toggle the on selection to off?

 

There are also 5 other Exploit Protection Program settings without a checkmark but the on slider is selected but greyed out

 

I also noticed yesterday Notepad.exe was blocked from accessing %Userprofile%Documents, I think that was when I was logged into the Admin acct as I changed my acct to a Standard acct.


Edited by ForrestGump, 20 October 2022 - 07:07 PM.

  • 0

#33
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts
CHKDSK LOG RESULTS
 
Log Name:      Application
Source:        Microsoft-Windows-Wininit
Date:          2022-10-16 5:57:44 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      HAL900
Description:
 
 
Checking file system on C:
The type of the file system is NTFS.
Volume label is C .
 
A disk check has been scheduled.
Windows will now check the disk.                         
 
Stage 1: Examining basic file system structure ...
  1094400 file records processed.                                                        
 
 
File verification completed.
 Phase duration (File record verification): 12.02 seconds.
  5341 large file records processed.                                   
 
 
 Phase duration (Orphan file record recovery): 0.00 milliseconds.
  0 bad file records processed.                                     
 
 
 Phase duration (Bad file record checking): 2.45 milliseconds.
 
Stage 2: Examining file name linkage ...
  2339 reparse records processed.                                      
 
 
  1178922 index entries processed.                                                       
 
 
Index verification completed.
 Phase duration (Index verification): 15.12 seconds.
  0 unindexed files scanned.                                        
 
 
 Phase duration (Orphan reconnection): 3.70 seconds.
  0 unindexed files recovered to lost and found.                    
 
 
 Phase duration (Orphan recovery to lost and found): 1.41 seconds.
  2339 reparse records processed.                                      
 
 
 Phase duration (Reparse point and Object ID verification): 26.39 milliseconds.
 
Stage 3: Examining security descriptors ...
Cleaning up 1293 unused index entries from index $SII of file 0x9.
Cleaning up 1293 unused index entries from index $SDH of file 0x9.
Cleaning up 1293 unused security descriptors.
CHKDSK is compacting the security descriptor stream
Security descriptor verification completed.
 Phase duration (Security descriptor verification): 291.22 milliseconds.
  42262 data files processed.                                           
 
 
 Phase duration (Data attribute verification): 2.53 milliseconds.
CHKDSK is verifying Usn Journal...
  37733592 USN bytes processed.                                                           
 
 
Usn Journal verification completed.
 Phase duration (USN journal verification): 315.07 milliseconds.
 
Stage 4: Looking for bad clusters in user file data ...
  1094384 files processed.                                                               
 
 
File data verification completed.
 Phase duration (User file recovery): 9.37 minutes.
 
Stage 5: Looking for bad, free clusters ...
  101686325 free clusters processed.                                                       
 
 
Free space verification is complete.
 Phase duration (Free space recovery): 0.00 milliseconds.
Correcting errors in the Volume Bitmap.
 
Windows has made corrections to the file system.
No further action is required.
 
 465940479 KB total disk space.
  57887196 KB in 129306 files.
     93316 KB in 42265 indexes.
         0 KB in bad sectors.
   1214667 KB in use by the system.
     65536 KB occupied by the log file.
 406745300 KB available on disk.
 
      4096 bytes in each allocation unit.
 116485119 total allocation units on disk.
 101686325 allocation units available on disk.
Total duration: 9.92 minutes (595399 ms).
 
Internal Info:
00 b3 10 00 f3 9d 02 00 a8 08 05 00 00 00 00 00  ................
94 02 00 00 8f 06 00 00 00 00 00 00 00 00 00 00  ................
 
Event Xml:
  <System>
    <Provider Name="Microsoft-Windows-Wininit" Guid="{206f6dea-d3c5-4d10-bc72-989f03c8b84b}" EventSourceName="Wininit" />
    <EventID Qualifiers="16384">1001</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2022-10-16T21:57:44.7505602Z" />
    <EventRecordID>1393</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>HAL900</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
 
Checking file system on C:
The type of the file system is NTFS.
Volume label is C .
 
A disk check has been scheduled.
Windows will now check the disk.                         
 
Stage 1: Examining basic file system structure ...
  1094400 file records processed.                                                        
 
 
File verification completed.
 Phase duration (File record verification): 12.02 seconds.
  5341 large file records processed.                                   
 
 
 Phase duration (Orphan file record recovery): 0.00 milliseconds.
  0 bad file records processed.                                     
 
 
 Phase duration (Bad file record checking): 2.45 milliseconds.
 
Stage 2: Examining file name linkage ...
  2339 reparse records processed.                                      
 
 
  1178922 index entries processed.                                                       
 
 
Index verification completed.
 Phase duration (Index verification): 15.12 seconds.
  0 unindexed files scanned.                                        
 
 
 Phase duration (Orphan reconnection): 3.70 seconds.
  0 unindexed files recovered to lost and found.                    
 
 
 Phase duration (Orphan recovery to lost and found): 1.41 seconds.
  2339 reparse records processed.                                      
 
 
 Phase duration (Reparse point and Object ID verification): 26.39 milliseconds.
 
Stage 3: Examining security descriptors ...
Cleaning up 1293 unused index entries from index $SII of file 0x9.
Cleaning up 1293 unused index entries from index $SDH of file 0x9.
Cleaning up 1293 unused security descriptors.
CHKDSK is compacting the security descriptor stream
Security descriptor verification completed.
 Phase duration (Security descriptor verification): 291.22 milliseconds.
  42262 data files processed.                                           
 
 
 Phase duration (Data attribute verification): 2.53 milliseconds.
CHKDSK is verifying Usn Journal...
  37733592 USN bytes processed.                                                           
 
 
Usn Journal verification completed.
 Phase duration (USN journal verification): 315.07 milliseconds.
 
Stage 4: Looking for bad clusters in user file data ...
  1094384 files processed.                                                               
 
 
File data verification completed.
 Phase duration (User file recovery): 9.37 minutes.
 
Stage 5: Looking for bad, free clusters ...
  101686325 free clusters processed.                                                       
 
 
Free space verification is complete.
 Phase duration (Free space recovery): 0.00 milliseconds.
Correcting errors in the Volume Bitmap.
 
Windows has made corrections to the file system.
No further action is required.
 
 465940479 KB total disk space.
  57887196 KB in 129306 files.
     93316 KB in 42265 indexes.
         0 KB in bad sectors.
   1214667 KB in use by the system.
     65536 KB occupied by the log file.
 406745300 KB available on disk.
 
      4096 bytes in each allocation unit.
 116485119 total allocation units on disk.
 101686325 allocation units available on disk.
Total duration: 9.92 minutes (595399 ms).
 
Internal Info:
00 b3 10 00 f3 9d 02 00 a8 08 05 00 00 00 00 00  ................
94 02 00 00 8f 06 00 00 00 00 00 00 00 00 00 00  ................
</Data>
  </EventData>
</Event>

  • 0

#34
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts
Fix result of Farbar Recovery Scan Tool (x64) Version: 16-10-2022
Ran by Rockets (16-10-2022 19:32:01) Run:6
Running from C:\Users\doher\OneDrive\Desktop
Loaded Profiles: doher & Rockets
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
CMD: DISM /Online /Cleanup-Image /RestoreHealth
CMD: SFC /scannow
CMD: findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log
CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i"
Reboot:
 
 
*****************
 
 
========= DISM /Online /Cleanup-Image /RestoreHealth =========
 
 
Deployment Image Servicing and Management tool
Version: 10.0.19041.844
 
Image Version: 10.0.19044.2130
 
 
[==                         3.8%                           ] 
 
[==                         3.8%                           ] 
 
[==                         4.0%                           ] 
 
[==                         4.3%                           ] 
 
[==                         4.7%                           ] 
 
[==                         5.0%                           ] 
 
[===                        5.4%                           ] 
 
[===                        6.0%                           ] 
 
[===                        6.5%                           ] 
 
[====                       7.5%                           ] 
 
[====                       7.7%                           ] 
 
[====                       8.6%                           ] 
 
[=====                      9.6%                           ] 
 
[======                     10.6%                          ] 
 
[======                     11.5%                          ] 
 
[=======                    12.1%                          ] 
 
[=======                    12.8%                          ] 
 
[=======                    13.3%                          ] 
 
[========                   13.9%                          ] 
 
[========                   14.6%                          ] 
 
[========                   15.2%                          ] 
 
[========                   15.3%                          ] 
 
[=========                  16.0%                          ] 
 
[=========                  16.2%                          ] 
 
[=========                  16.5%                          ] 
 
[=========                  16.8%                          ] 
 
[=========                  17.0%                          ] 
 
[==========                 17.3%                          ] 
 
[==========                 17.3%                          ] 
 
[==========                 17.4%                          ] 
 
[==========                 17.4%                          ] 
 
[==========                 17.5%                          ] 
 
[==========                 17.7%                          ] 
 
[==========                 18.4%                          ] 
 
[===========                19.2%                          ] 
 
[===========                20.2%                          ] 
 
[============               21.0%                          ] 
 
[============               22.0%                          ] 
 
[=============              22.6%                          ] 
 
[=============              23.6%                          ] 
 
[==============             24.5%                          ] 
 
[==============             25.4%                          ] 
 
[===============            26.0%                          ] 
 
[===============            26.8%                          ] 
 
[================           27.8%                          ] 
 
[================           27.8%                          ] 
 
[================           28.0%                          ] 
 
[================           28.4%                          ] 
 
[=================          29.4%                          ] 
 
[=================          30.0%                          ] 
 
[=================          30.3%                          ] 
 
[=================          30.3%                          ] 
 
[=================          30.8%                          ] 
 
[=================          30.9%                          ] 
 
[==================         31.1%                          ] 
 
[==================         31.3%                          ] 
 
[==================         31.6%                          ] 
 
[==================         31.9%                          ] 
 
[==================         32.1%                          ] 
 
[==================         32.2%                          ] 
 
[==================         32.4%                          ] 
 
[==================         32.6%                          ] 
 
[==================         32.8%                          ] 
 
[===================        33.1%                          ] 
 
[===================        33.1%                          ] 
 
[===================        33.4%                          ] 
 
[===================        33.7%                          ] 
 
[===================        34.0%                          ] 
 
[===================        34.3%                          ] 
 
[====================       34.5%                          ] 
 
[====================       34.9%                          ] 
 
[====================       35.3%                          ] 
 
[====================       35.3%                          ] 
 
[====================       35.5%                          ] 
 
[====================       35.9%                          ] 
 
[====================       36.2%                          ] 
 
[=====================      36.2%                          ] 
 
[=====================      36.6%                          ] 
 
[=====================      36.8%                          ] 
 
[=====================      36.9%                          ] 
 
[=====================      37.3%                          ] 
 
[=====================      37.4%                          ] 
 
[=====================      37.4%                          ] 
 
[=====================      37.7%                          ] 
 
[=====================      37.9%                          ] 
 
[======================     38.3%                          ] 
 
[======================     38.6%                          ] 
 
[======================     38.8%                          ] 
 
[======================     38.9%                          ] 
 
[======================     39.2%                          ] 
 
[======================     39.3%                          ] 
 
[======================     39.4%                          ] 
 
[======================     39.5%                          ] 
 
[=======================    40.2%                          ] 
 
[=======================    41.2%                          ] 
 
[========================   42.2%                          ] 
 
[========================   42.8%                          ] 
 
[=========================  43.8%                          ] 
 
[=========================  44.8%                          ] 
 
[========================== 45.1%                          ] 
 
[========================== 46.0%                          ] 
 
[===========================47.0%                          ] 
 
[===========================48.0%                          ] 
 
[===========================49.0%                          ] 
 
[===========================50.0%                          ] 
 
[===========================50.9%                          ] 
 
[===========================50.9%                          ] 
 
[===========================51.0%                          ] 
 
[===========================51.1%                          ] 
 
[===========================51.1%                          ] 
 
[===========================51.2%                          ] 
 
[===========================51.2%                          ] 
 
[===========================51.3%                          ] 
 
[===========================51.3%                          ] 
 
[===========================51.4%                          ] 
 
[===========================51.4%                          ] 
 
[===========================51.5%                          ] 
 
[===========================51.5%                          ] 
 
[===========================51.5%                          ] 
 
[===========================51.5%                          ] 
 
[===========================51.5%                          ] 
 
[===========================51.5%                          ] 
 
[===========================51.5%                          ] 
 
[===========================51.6%                          ] 
 
[===========================51.6%                          ] 
 
[===========================51.7%                          ] 
 
[===========================51.7%                          ] 
 
[===========================51.8%                          ] 
 
[===========================51.8%                          ] 
 
[===========================51.8%                          ] 
 
[===========================51.8%                          ] 
 
[===========================51.8%                          ] 
 
[===========================51.9%                          ] 
 
[===========================51.9%                          ] 
 
[===========================51.9%                          ] 
 
[===========================52.0%                          ] 
 
[===========================52.0%                          ] 
 
[===========================52.0%                          ] 
 
[===========================52.1%                          ] 
 
[===========================52.2%                          ] 
 
[===========================52.2%                          ] 
 
[===========================52.2%                          ] 
 
[===========================52.3%                          ] 
 
[===========================52.4%                          ] 
 
[===========================52.4%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.6%                          ] 
 
[===========================52.6%                          ] 
 
[===========================52.6%                          ] 
 
[===========================52.7%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.9%                          ] 
 
[===========================52.9%                          ] 
 
[===========================52.9%                          ] 
 
[===========================52.9%                          ] 
 
[===========================53.0%                          ] 
 
[===========================53.0%                          ] 
 
[===========================53.0%                          ] 
 
[===========================53.0%                          ] 
 
[===========================53.1%                          ] 
 
[===========================53.1%                          ] 
 
[===========================53.1%                          ] 
 
[===========================53.1%                          ] 
 
[===========================53.1%                          ] 
 
[===========================53.2%                          ] 
 
[===========================53.3%                          ] 
 
[===========================53.3%                          ] 
 
[===========================53.4%                          ] 
 
[===========================53.4%                          ] 
 
[===========================53.5%                          ] 
 
[===========================53.5%                          ] 
 
[===========================53.7%                          ] 
 
[===========================53.7%                          ] 
 
[===========================53.8%                          ] 
 
[===========================53.9%                          ] 
 
[===========================53.9%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.1%                          ] 
 
[===========================54.2%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.4%                          ] 
 
[===========================54.4%                          ] 
 
[===========================54.4%                          ] 
 
[===========================54.4%                          ] 
 
[===========================54.6%                          ] 
 
[===========================54.7%                          ] 
 
[===========================54.9%                          ] 
 
[===========================55.0%                          ] 
 
[===========================55.2%                          ] 
 
[===========================55.8%                          ] 
 
[===========================56.8%                          ] 
 
[===========================57.2%=                         ] 
 
[===========================58.2%=                         ] 
 
[===========================58.2%=                         ] 
 
[===========================60.4%===                       ] 
 
[===========================62.3%====                      ] 
 
[===========================84.9%=================         ] 
 
[==========================100.0%==========================] 
The restore operation completed successfully.
The operation completed successfully.
 
========= End of CMD: =========
 
 
========= SFC /scannow =========
 
 
 
Beginning system scan.  This process will take some time.
 
 
 
Beginning verification phase of system scan.
 
 
Verification 0% complete.
Verification 1% complete.
Verification 1% complete.
Verification 2% complete.
Verification 2% complete.
Verification 3% complete.
Verification 3% complete.
Verification 4% complete.
Verification 5% complete.
Verification 5% complete.
Verification 6% complete.
Verification 6% complete.
Verification 7% complete.
Verification 7% complete.
Verification 8% complete.
Verification 9% complete.
Verification 9% complete.
Verification 10% complete.
Verification 10% complete.
Verification 11% complete.
Verification 11% complete.
Verification 12% complete.
Verification 13% complete.
Verification 13% complete.
Verification 14% complete.
Verification 14% complete.
Verification 15% complete.
Verification 15% complete.
Verification 16% complete.
Verification 17% complete.
Verification 17% complete.
Verification 18% complete.
Verification 18% complete.
Verification 19% complete.
Verification 19% complete.
Verification 20% complete.
Verification 21% complete.
Verification 21% complete.
Verification 22% complete.
Verification 22% complete.
Verification 23% complete.
Verification 23% complete.
Verification 24% complete.
Verification 25% complete.
Verification 25% complete.
Verification 26% complete.
Verification 26% complete.
Verification 27% complete.
Verification 27% complete.
Verification 28% complete.
Verification 29% complete.
Verification 29% complete.
Verification 30% complete.
Verification 30% complete.
Verification 31% complete.
Verification 31% complete.
Verification 32% complete.
Verification 33% complete.
Verification 33% complete.
Verification 34% complete.
Verification 34% complete.
Verification 35% complete.
Verification 35% complete.
Verification 36% complete.
Verification 37% complete.
Verification 37% complete.
Verification 38% complete.
Verification 38% complete.
Verification 39% complete.
Verification 39% complete.
Verification 40% complete.
Verification 41% complete.
Verification 41% complete.
Verification 42% complete.
Verification 42% complete.
Verification 43% complete.
Verification 43% complete.
Verification 44% complete.
Verification 45% complete.
Verification 45% complete.
Verification 46% complete.
Verification 46% complete.
Verification 47% complete.
Verification 47% complete.
Verification 48% complete.
Verification 49% complete.
Verification 49% complete.
Verification 50% complete.
Verification 50% complete.
Verification 51% complete.
Verification 51% complete.
Verification 52% complete.
Verification 53% complete.
Verification 53% complete.
Verification 54% complete.
Verification 54% complete.
Verification 55% complete.
Verification 55% complete.
Verification 56% complete.
Verification 57% complete.
Verification 57% complete.
Verification 58% complete.
Verification 58% complete.
Verification 59% complete.
Verification 59% complete.
Verification 60% complete.
Verification 61% complete.
Verification 61% complete.
Verification 62% complete.
Verification 62% complete.
Verification 63% complete.
Verification 63% complete.
Verification 64% complete.
Verification 65% complete.
Verification 65% complete.
Verification 66% complete.
Verification 66% complete.
Verification 67% complete.
Verification 67% complete.
Verification 68% complete.
Verification 69% complete.
Verification 69% complete.
Verification 70% complete.
Verification 70% complete.
Verification 71% complete.
Verification 71% complete.
Verification 72% complete.
Verification 73% complete.
Verification 73% complete.
Verification 74% complete.
Verification 74% complete.
Verification 75% complete.
Verification 75% complete.
Verification 76% complete.
Verification 76% complete.
Verification 77% complete.
Verification 78% complete.
Verification 78% complete.
Verification 79% complete.
Verification 79% complete.
Verification 80% complete.
Verification 80% complete.
Verification 81% complete.
Verification 82% complete.
Verification 82% complete.
Verification 83% complete.
Verification 83% complete.
Verification 84% complete.
Verification 84% complete.
Verification 85% complete.
Verification 86% complete.
Verification 86% complete.
Verification 87% complete.
Verification 87% complete.
Verification 88% complete.
Verification 88% complete.
Verification 89% complete.
Verification 90% complete.
Verification 90% complete.
Verification 91% complete.
Verification 91% complete.
Verification 92% complete.
Verification 92% complete.
Verification 93% complete.
Verification 94% complete.
Verification 94% complete.
Verification 95% complete.
Verification 95% complete.
Verification 96% complete.
Verification 96% complete.
Verification 97% complete.
Verification 98% complete.
Verification 98% complete.
Verification 99% complete.
Verification 99% complete.
Verification 100% complete.
 
 
Windows Resource Protection did not find any integrity violations.
 
 
========= End of CMD: =========
 
 
========= findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log =========
 
2022-10-16 19:38:43, Info                  CSI    00000011 [SR] Verifying 100 components
2022-10-16 19:38:43, Info                  CSI    00000012 [SR] Beginning Verify and Repair transaction
2022-10-16 19:38:44, Info                  CSI    00000013 [SR] Verify complete
2022-10-16 19:38:44, Info                  CSI    00000014 [SR] Verifying 100 components
2022-10-16 19:38:44, Info                  CSI    00000015 [SR] Beginning Verify and Repair transaction
2022-10-16 19:38:45, Info                  CSI    00000016 [SR] Verify complete
2022-10-16 19:38:45, Info                  CSI    00000017 [SR] Verifying 100 components
2022-10-16 19:38:45, Info                  CSI    00000018 [SR] Beginning Verify and Repair transaction
2022-10-16 19:38:45, Info                  CSI    00000019 [SR] Verify complete
2022-10-16 19:38:46, Info                  CSI    0000001a [SR] Verifying 100 components
2022-10-16 19:38:46, Info                  CSI    0000001b [SR] Beginning Verify and Repair transaction
2022-10-16 19:38:48, Info                  CSI    0000001c [SR] Verify complete
2022-10-16 19:38:48, Info                  CSI    0000001d [SR] Verifying 100 components
2022-10-16 19:38:48, Info                  CSI    0000001e [SR] Beginning Verify and Repair transaction
2022-10-16 19:38:49, Info                  CSI    0000001f [SR] Verify complete
2022-10-16 19:38:49, Info                  CSI    00000020 [SR] Verifying 100 components
2022-10-16 19:38:49, Info                  CSI    00000021 [SR] Beginning Verify and Repair transaction
2022-10-16 19:38:51, Info                  CSI    00000022 [SR] Verify complete
2022-10-16 19:38:51, Info                  CSI    00000023 [SR] Verifying 100 components
2022-10-16 19:38:51, Info                  CSI    00000024 [SR] Beginning Verify and Repair transaction
2022-10-16 19:38:54, Info                  CSI    00000025 [SR] Verify complete
2022-10-16 19:38:54, Info                  CSI    00000026 [SR] Verifying 100 components
2022-10-16 19:38:54, Info                  CSI    00000027 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:01, Info                  CSI    00000028 [SR] Verify complete
2022-10-16 19:39:01, Info                  CSI    00000029 [SR] Verifying 100 components
2022-10-16 19:39:01, Info                  CSI    0000002a [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:12, Info                  CSI    0000002b [SR] Verify complete
2022-10-16 19:39:12, Info                  CSI    0000002c [SR] Verifying 100 components
2022-10-16 19:39:12, Info                  CSI    0000002d [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:14, Info                  CSI    0000002e [SR] Verify complete
2022-10-16 19:39:14, Info                  CSI    0000002f [SR] Verifying 100 components
2022-10-16 19:39:14, Info                  CSI    00000030 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:15, Info                  CSI    00000031 [SR] Verify complete
2022-10-16 19:39:15, Info                  CSI    00000032 [SR] Verifying 100 components
2022-10-16 19:39:15, Info                  CSI    00000033 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:17, Info                  CSI    00000035 [SR] Verify complete
2022-10-16 19:39:17, Info                  CSI    00000036 [SR] Verifying 100 components
2022-10-16 19:39:17, Info                  CSI    00000037 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:19, Info                  CSI    00000038 [SR] Verify complete
2022-10-16 19:39:19, Info                  CSI    00000039 [SR] Verifying 100 components
2022-10-16 19:39:19, Info                  CSI    0000003a [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:20, Info                  CSI    0000003b [SR] Verify complete
2022-10-16 19:39:20, Info                  CSI    0000003c [SR] Verifying 100 components
2022-10-16 19:39:20, Info                  CSI    0000003d [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:21, Info                  CSI    0000003e [SR] Verify complete
2022-10-16 19:39:21, Info                  CSI    0000003f [SR] Verifying 100 components
2022-10-16 19:39:21, Info                  CSI    00000040 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:23, Info                  CSI    00000041 [SR] Verify complete
2022-10-16 19:39:23, Info                  CSI    00000042 [SR] Verifying 100 components
2022-10-16 19:39:23, Info                  CSI    00000043 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:24, Info                  CSI    00000044 [SR] Verify complete
2022-10-16 19:39:24, Info                  CSI    00000045 [SR] Verifying 100 components
2022-10-16 19:39:24, Info                  CSI    00000046 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:27, Info                  CSI    00000049 [SR] Verify complete
2022-10-16 19:39:27, Info                  CSI    0000004a [SR] Verifying 100 components
2022-10-16 19:39:27, Info                  CSI    0000004b [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:29, Info                  CSI    0000004d [SR] Verify complete
2022-10-16 19:39:30, Info                  CSI    0000004e [SR] Verifying 100 components
2022-10-16 19:39:30, Info                  CSI    0000004f [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:31, Info                  CSI    00000050 [SR] Verify complete
2022-10-16 19:39:31, Info                  CSI    00000051 [SR] Verifying 100 components
2022-10-16 19:39:31, Info                  CSI    00000052 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:33, Info                  CSI    00000053 [SR] Verify complete
2022-10-16 19:39:33, Info                  CSI    00000054 [SR] Verifying 100 components
2022-10-16 19:39:33, Info                  CSI    00000055 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:34, Info                  CSI    00000056 [SR] Verify complete
2022-10-16 19:39:35, Info                  CSI    00000057 [SR] Verifying 100 components
2022-10-16 19:39:35, Info                  CSI    00000058 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:36, Info                  CSI    00000059 [SR] Verify complete
2022-10-16 19:39:37, Info                  CSI    0000005a [SR] Verifying 100 components
2022-10-16 19:39:37, Info                  CSI    0000005b [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:39, Info                  CSI    0000005d [SR] Verify complete
2022-10-16 19:39:39, Info                  CSI    0000005e [SR] Verifying 100 components
2022-10-16 19:39:39, Info                  CSI    0000005f [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:40, Info                  CSI    00000060 [SR] Verify complete
2022-10-16 19:39:40, Info                  CSI    00000061 [SR] Verifying 100 components
2022-10-16 19:39:40, Info                  CSI    00000062 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:42, Info                  CSI    00000063 [SR] Verify complete
2022-10-16 19:39:42, Info                  CSI    00000064 [SR] Verifying 100 components
2022-10-16 19:39:42, Info                  CSI    00000065 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:43, Info                  CSI    00000066 [SR] Verify complete
2022-10-16 19:39:44, Info                  CSI    00000067 [SR] Verifying 100 components
2022-10-16 19:39:44, Info                  CSI    00000068 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:45, Info                  CSI    00000069 [SR] Verify complete
2022-10-16 19:39:45, Info                  CSI    0000006a [SR] Verifying 100 components
2022-10-16 19:39:45, Info                  CSI    0000006b [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:47, Info                  CSI    0000006d [SR] Verify complete
2022-10-16 19:39:47, Info                  CSI    0000006e [SR] Verifying 100 components
2022-10-16 19:39:47, Info                  CSI    0000006f [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:48, Info                  CSI    00000070 [SR] Verify complete
2022-10-16 19:39:48, Info                  CSI    00000071 [SR] Verifying 100 components
2022-10-16 19:39:48, Info                  CSI    00000072 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:49, Info                  CSI    00000073 [SR] Verify complete
2022-10-16 19:39:50, Info                  CSI    00000074 [SR] Verifying 100 components
2022-10-16 19:39:50, Info                  CSI    00000075 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:50, Info                  CSI    00000076 [SR] Verify complete
2022-10-16 19:39:51, Info                  CSI    00000077 [SR] Verifying 100 components
2022-10-16 19:39:51, Info                  CSI    00000078 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:52, Info                  CSI    00000079 [SR] Verify complete
2022-10-16 19:39:52, Info                  CSI    0000007a [SR] Verifying 100 components
2022-10-16 19:39:52, Info                  CSI    0000007b [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:53, Info                  CSI    0000007c [SR] Verify complete
2022-10-16 19:39:53, Info                  CSI    0000007d [SR] Verifying 100 components
2022-10-16 19:39:53, Info                  CSI    0000007e [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:54, Info                  CSI    0000007f [SR] Verify complete
2022-10-16 19:39:54, Info                  CSI    00000080 [SR] Verifying 100 components
2022-10-16 19:39:54, Info                  CSI    00000081 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:56, Info                  CSI    00000083 [SR] Verify complete
2022-10-16 19:39:56, Info                  CSI    00000084 [SR] Verifying 100 components
2022-10-16 19:39:56, Info                  CSI    00000085 [SR] Beginning Verify and Repair transaction
2022-10-16 19:39:58, Info                  CSI    00000087 [SR] Verify complete
2022-10-16 19:39:59, Info                  CSI    00000088 [SR] Verifying 100 components
2022-10-16 19:39:59, Info                  CSI    00000089 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:00, Info                  CSI    0000008a [SR] Verify complete
2022-10-16 19:40:01, Info                  CSI    0000008b [SR] Verifying 100 components
2022-10-16 19:40:01, Info                  CSI    0000008c [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:03, Info                  CSI    0000008e [SR] Verify complete
2022-10-16 19:40:03, Info                  CSI    0000008f [SR] Verifying 100 components
2022-10-16 19:40:03, Info                  CSI    00000090 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:05, Info                  CSI    00000091 [SR] Verify complete
2022-10-16 19:40:06, Info                  CSI    00000092 [SR] Verifying 100 components
2022-10-16 19:40:06, Info                  CSI    00000093 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:08, Info                  CSI    00000098 [SR] Verify complete
2022-10-16 19:40:08, Info                  CSI    00000099 [SR] Verifying 100 components
2022-10-16 19:40:08, Info                  CSI    0000009a [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:13, Info                  CSI    000000a5 [SR] Verify complete
2022-10-16 19:40:13, Info                  CSI    000000a6 [SR] Verifying 100 components
2022-10-16 19:40:13, Info                  CSI    000000a7 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:15, Info                  CSI    000000a8 [SR] Verify complete
2022-10-16 19:40:15, Info                  CSI    000000a9 [SR] Verifying 100 components
2022-10-16 19:40:15, Info                  CSI    000000aa [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:19, Info                  CSI    000000b2 [SR] Verify complete
2022-10-16 19:40:20, Info                  CSI    000000b3 [SR] Verifying 100 components
2022-10-16 19:40:20, Info                  CSI    000000b4 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:21, Info                  CSI    000000b5 [SR] Verify complete
2022-10-16 19:40:21, Info                  CSI    000000b6 [SR] Verifying 100 components
2022-10-16 19:40:21, Info                  CSI    000000b7 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:22, Info                  CSI    000000b8 [SR] Verify complete
2022-10-16 19:40:22, Info                  CSI    000000b9 [SR] Verifying 100 components
2022-10-16 19:40:22, Info                  CSI    000000ba [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:25, Info                  CSI    000000bc [SR] Verify complete
2022-10-16 19:40:25, Info                  CSI    000000bd [SR] Verifying 100 components
2022-10-16 19:40:25, Info                  CSI    000000be [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:26, Info                  CSI    000000bf [SR] Verify complete
2022-10-16 19:40:26, Info                  CSI    000000c0 [SR] Verifying 100 components
2022-10-16 19:40:26, Info                  CSI    000000c1 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:27, Info                  CSI    000000c2 [SR] Verify complete
2022-10-16 19:40:27, Info                  CSI    000000c3 [SR] Verifying 100 components
2022-10-16 19:40:27, Info                  CSI    000000c4 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:29, Info                  CSI    000000c6 [SR] Verify complete
2022-10-16 19:40:29, Info                  CSI    000000c7 [SR] Verifying 100 components
2022-10-16 19:40:29, Info                  CSI    000000c8 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:31, Info                  CSI    000000ca [SR] Verify complete
2022-10-16 19:40:31, Info                  CSI    000000cb [SR] Verifying 100 components
2022-10-16 19:40:31, Info                  CSI    000000cc [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:35, Info                  CSI    000000d0 [SR] Verify complete
2022-10-16 19:40:35, Info                  CSI    000000d1 [SR] Verifying 100 components
2022-10-16 19:40:35, Info                  CSI    000000d2 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:37, Info                  CSI    000000d5 [SR] Verify complete
2022-10-16 19:40:37, Info                  CSI    000000d6 [SR] Verifying 100 components
2022-10-16 19:40:37, Info                  CSI    000000d7 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:39, Info                  CSI    000000d8 [SR] Verify complete
2022-10-16 19:40:39, Info                  CSI    000000d9 [SR] Verifying 100 components
2022-10-16 19:40:39, Info                  CSI    000000da [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:40, Info                  CSI    000000db [SR] Verify complete
2022-10-16 19:40:40, Info                  CSI    000000dc [SR] Verifying 100 components
2022-10-16 19:40:40, Info                  CSI    000000dd [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:41, Info                  CSI    000000de [SR] Verify complete
2022-10-16 19:40:42, Info                  CSI    000000df [SR] Verifying 100 components
2022-10-16 19:40:42, Info                  CSI    000000e0 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:43, Info                  CSI    000000e1 [SR] Verify complete
2022-10-16 19:40:43, Info                  CSI    000000e2 [SR] Verifying 100 components
2022-10-16 19:40:43, Info                  CSI    000000e3 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:46, Info                  CSI    000000e5 [SR] Verify complete
2022-10-16 19:40:46, Info                  CSI    000000e6 [SR] Verifying 100 components
2022-10-16 19:40:46, Info                  CSI    000000e7 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:47, Info                  CSI    000000e8 [SR] Verify complete
2022-10-16 19:40:47, Info                  CSI    000000e9 [SR] Verifying 100 components
2022-10-16 19:40:47, Info                  CSI    000000ea [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:49, Info                  CSI    000000ec [SR] Verify complete
2022-10-16 19:40:49, Info                  CSI    000000ed [SR] Verifying 100 components
2022-10-16 19:40:49, Info                  CSI    000000ee [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:53, Info                  CSI    000000f1 [SR] Verify complete
2022-10-16 19:40:53, Info                  CSI    000000f2 [SR] Verifying 100 components
2022-10-16 19:40:53, Info                  CSI    000000f3 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:55, Info                  CSI    000000f5 [SR] Verify complete
2022-10-16 19:40:55, Info                  CSI    000000f6 [SR] Verifying 100 components
2022-10-16 19:40:55, Info                  CSI    000000f7 [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:56, Info                  CSI    000000f8 [SR] Verify complete
2022-10-16 19:40:56, Info                  CSI    000000f9 [SR] Verifying 100 components
2022-10-16 19:40:56, Info                  CSI    000000fa [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:58, Info                  CSI    000000fb [SR] Verify complete
2022-10-16 19:40:58, Info                  CSI    000000fc [SR] Verifying 100 components
2022-10-16 19:40:58, Info                  CSI    000000fd [SR] Beginning Verify and Repair transaction
2022-10-16 19:40:59, Info                  CSI    000000ff [SR] Verify complete
2022-10-16 19:41:00, Info                  CSI    00000100 [SR] Verifying 100 components
2022-10-16 19:41:00, Info                  CSI    00000101 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:01, Info                  CSI    00000102 [SR] Verify complete
2022-10-16 19:41:01, Info                  CSI    00000103 [SR] Verifying 100 components
2022-10-16 19:41:01, Info                  CSI    00000104 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:03, Info                  CSI    00000105 [SR] Verify complete
2022-10-16 19:41:03, Info                  CSI    00000106 [SR] Verifying 100 components
2022-10-16 19:41:03, Info                  CSI    00000107 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:06, Info                  CSI    00000109 [SR] Verify complete
2022-10-16 19:41:06, Info                  CSI    0000010a [SR] Verifying 100 components
2022-10-16 19:41:06, Info                  CSI    0000010b [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:07, Info                  CSI    0000010c [SR] Verify complete
2022-10-16 19:41:07, Info                  CSI    0000010d [SR] Verifying 100 components
2022-10-16 19:41:07, Info                  CSI    0000010e [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:08, Info                  CSI    0000010f [SR] Verify complete
2022-10-16 19:41:09, Info                  CSI    00000110 [SR] Verifying 100 components
2022-10-16 19:41:09, Info                  CSI    00000111 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:10, Info                  CSI    00000112 [SR] Verify complete
2022-10-16 19:41:10, Info                  CSI    00000113 [SR] Verifying 100 components
2022-10-16 19:41:10, Info                  CSI    00000114 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:11, Info                  CSI    00000115 [SR] Verify complete
2022-10-16 19:41:12, Info                  CSI    00000116 [SR] Verifying 100 components
2022-10-16 19:41:12, Info                  CSI    00000117 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:13, Info                  CSI    00000118 [SR] Verify complete
2022-10-16 19:41:13, Info                  CSI    00000119 [SR] Verifying 100 components
2022-10-16 19:41:13, Info                  CSI    0000011a [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:15, Info                  CSI    0000011b [SR] Verify complete
2022-10-16 19:41:15, Info                  CSI    0000011c [SR] Verifying 100 components
2022-10-16 19:41:15, Info                  CSI    0000011d [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:16, Info                  CSI    0000011e [SR] Verify complete
2022-10-16 19:41:16, Info                  CSI    0000011f [SR] Verifying 100 components
2022-10-16 19:41:16, Info                  CSI    00000120 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:17, Info                  CSI    00000121 [SR] Verify complete
2022-10-16 19:41:18, Info                  CSI    00000122 [SR] Verifying 100 components
2022-10-16 19:41:18, Info                  CSI    00000123 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:19, Info                  CSI    00000124 [SR] Verify complete
2022-10-16 19:41:19, Info                  CSI    00000125 [SR] Verifying 100 components
2022-10-16 19:41:19, Info                  CSI    00000126 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:21, Info                  CSI    00000127 [SR] Verify complete
2022-10-16 19:41:21, Info                  CSI    00000128 [SR] Verifying 100 components
2022-10-16 19:41:21, Info                  CSI    00000129 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:22, Info                  CSI    0000012a [SR] Verify complete
2022-10-16 19:41:23, Info                  CSI    0000012b [SR] Verifying 100 components
2022-10-16 19:41:23, Info                  CSI    0000012c [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:24, Info                  CSI    0000012d [SR] Verify complete
2022-10-16 19:41:24, Info                  CSI    0000012e [SR] Verifying 100 components
2022-10-16 19:41:24, Info                  CSI    0000012f [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:26, Info                  CSI    00000131 [SR] Verify complete
2022-10-16 19:41:26, Info                  CSI    00000132 [SR] Verifying 100 components
2022-10-16 19:41:26, Info                  CSI    00000133 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:27, Info                  CSI    00000134 [SR] Verify complete
2022-10-16 19:41:28, Info                  CSI    00000135 [SR] Verifying 100 components
2022-10-16 19:41:28, Info                  CSI    00000136 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:30, Info                  CSI    00000139 [SR] Verify complete
2022-10-16 19:41:30, Info                  CSI    0000013a [SR] Verifying 100 components
2022-10-16 19:41:30, Info                  CSI    0000013b [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:32, Info                  CSI    0000013d [SR] Verify complete
2022-10-16 19:41:32, Info                  CSI    0000013e [SR] Verifying 100 components
2022-10-16 19:41:32, Info                  CSI    0000013f [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:35, Info                  CSI    00000142 [SR] Verify complete
2022-10-16 19:41:35, Info                  CSI    00000143 [SR] Verifying 100 components
2022-10-16 19:41:35, Info                  CSI    00000144 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:37, Info                  CSI    00000145 [SR] Verify complete
2022-10-16 19:41:37, Info                  CSI    00000146 [SR] Verifying 100 components
2022-10-16 19:41:37, Info                  CSI    00000147 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:41, Info                  CSI    0000014f [SR] Verify complete
2022-10-16 19:41:41, Info                  CSI    00000150 [SR] Verifying 100 components
2022-10-16 19:41:41, Info                  CSI    00000151 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:45, Info                  CSI    00000154 [SR] Verify complete
2022-10-16 19:41:45, Info                  CSI    00000155 [SR] Verifying 100 components
2022-10-16 19:41:45, Info                  CSI    00000156 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:47, Info                  CSI    00000157 [SR] Verify complete
2022-10-16 19:41:47, Info                  CSI    00000158 [SR] Verifying 100 components
2022-10-16 19:41:47, Info                  CSI    00000159 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:49, Info                  CSI    0000015a [SR] Verify complete
2022-10-16 19:41:49, Info                  CSI    0000015b [SR] Verifying 100 components
2022-10-16 19:41:49, Info                  CSI    0000015c [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:51, Info                  CSI    0000015e [SR] Verify complete
2022-10-16 19:41:51, Info                  CSI    0000015f [SR] Verifying 100 components
2022-10-16 19:41:51, Info                  CSI    00000160 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:56, Info                  CSI    00000164 [SR] Verify complete
2022-10-16 19:41:56, Info                  CSI    00000165 [SR] Verifying 100 components
2022-10-16 19:41:56, Info                  CSI    00000166 [SR] Beginning Verify and Repair transaction
2022-10-16 19:41:58, Info                  CSI    00000168 [SR] Verify complete
2022-10-16 19:41:58, Info                  CSI    00000169 [SR] Verifying 100 components
2022-10-16 19:41:58, Info                  CSI    0000016a [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:00, Info                  CSI    0000016c [SR] Verify complete
2022-10-16 19:42:00, Info                  CSI    0000016d [SR] Verifying 100 components
2022-10-16 19:42:00, Info                  CSI    0000016e [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:02, Info                  CSI    0000016f [SR] Verify complete
2022-10-16 19:42:02, Info                  CSI    00000170 [SR] Verifying 100 components
2022-10-16 19:42:02, Info                  CSI    00000171 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:05, Info                  CSI    00000173 [SR] Verify complete
2022-10-16 19:42:05, Info                  CSI    00000174 [SR] Verifying 100 components
2022-10-16 19:42:05, Info                  CSI    00000175 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:07, Info                  CSI    00000177 [SR] Verify complete
2022-10-16 19:42:08, Info                  CSI    00000178 [SR] Verifying 100 components
2022-10-16 19:42:08, Info                  CSI    00000179 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:09, Info                  CSI    0000017a [SR] Verify complete
2022-10-16 19:42:09, Info                  CSI    0000017b [SR] Verifying 100 components
2022-10-16 19:42:09, Info                  CSI    0000017c [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:10, Info                  CSI    0000017d [SR] Verify complete
2022-10-16 19:42:11, Info                  CSI    0000017e [SR] Verifying 100 components
2022-10-16 19:42:11, Info                  CSI    0000017f [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:12, Info                  CSI    00000180 [SR] Verify complete
2022-10-16 19:42:12, Info                  CSI    00000181 [SR] Verifying 100 components
2022-10-16 19:42:12, Info                  CSI    00000182 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:13, Info                  CSI    00000183 [SR] Verify complete
2022-10-16 19:42:14, Info                  CSI    00000184 [SR] Verifying 100 components
2022-10-16 19:42:14, Info                  CSI    00000185 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:16, Info                  CSI    00000187 [SR] Verify complete
2022-10-16 19:42:16, Info                  CSI    00000188 [SR] Verifying 100 components
2022-10-16 19:42:16, Info                  CSI    00000189 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:18, Info                  CSI    0000018a [SR] Verify complete
2022-10-16 19:42:18, Info                  CSI    0000018b [SR] Verifying 100 components
2022-10-16 19:42:18, Info                  CSI    0000018c [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:20, Info                  CSI    0000018d [SR] Verify complete
2022-10-16 19:42:21, Info                  CSI    0000018e [SR] Verifying 100 components
2022-10-16 19:42:21, Info                  CSI    0000018f [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:22, Info                  CSI    00000190 [SR] Verify complete
2022-10-16 19:42:22, Info                  CSI    00000191 [SR] Verifying 100 components
2022-10-16 19:42:22, Info                  CSI    00000192 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:24, Info                  CSI    00000193 [SR] Verify complete
2022-10-16 19:42:24, Info                  CSI    00000194 [SR] Verifying 100 components
2022-10-16 19:42:24, Info                  CSI    00000195 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:25, Info                  CSI    00000196 [SR] Verify complete
2022-10-16 19:42:25, Info                  CSI    00000197 [SR] Verifying 100 components
2022-10-16 19:42:25, Info                  CSI    00000198 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:27, Info                  CSI    0000019c [SR] Verify complete
2022-10-16 19:42:27, Info                  CSI    0000019d [SR] Verifying 100 components
2022-10-16 19:42:27, Info                  CSI    0000019e [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:28, Info                  CSI    0000019f [SR] Verify complete
2022-10-16 19:42:28, Info                  CSI    000001a0 [SR] Verifying 100 components
2022-10-16 19:42:28, Info                  CSI    000001a1 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:30, Info                  CSI    000001a3 [SR] Verify complete
2022-10-16 19:42:30, Info                  CSI    000001a4 [SR] Verifying 100 components
2022-10-16 19:42:30, Info                  CSI    000001a5 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:32, Info                  CSI    000001a6 [SR] Verify complete
2022-10-16 19:42:32, Info                  CSI    000001a7 [SR] Verifying 100 components
2022-10-16 19:42:32, Info                  CSI    000001a8 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:34, Info                  CSI    000001aa [SR] Verify complete
2022-10-16 19:42:34, Info                  CSI    000001ab [SR] Verifying 100 components
2022-10-16 19:42:34, Info                  CSI    000001ac [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:36, Info                  CSI    000001ae [SR] Verify complete
2022-10-16 19:42:37, Info                  CSI    000001af [SR] Verifying 100 components
2022-10-16 19:42:37, Info                  CSI    000001b0 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:39, Info                  CSI    000001b3 [SR] Verify complete
2022-10-16 19:42:39, Info                  CSI    000001b4 [SR] Verifying 100 components
2022-10-16 19:42:39, Info                  CSI    000001b5 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:40, Info                  CSI    000001b6 [SR] Verify complete
2022-10-16 19:42:41, Info                  CSI    000001b7 [SR] Verifying 100 components
2022-10-16 19:42:41, Info                  CSI    000001b8 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:42, Info                  CSI    000001ba [SR] Verify complete
2022-10-16 19:42:42, Info                  CSI    000001bb [SR] Verifying 100 components
2022-10-16 19:42:42, Info                  CSI    000001bc [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:44, Info                  CSI    000001bd [SR] Verify complete
2022-10-16 19:42:44, Info                  CSI    000001be [SR] Verifying 100 components
2022-10-16 19:42:44, Info                  CSI    000001bf [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:45, Info                  CSI    000001c0 [SR] Verify complete
2022-10-16 19:42:46, Info                  CSI    000001c1 [SR] Verifying 100 components
2022-10-16 19:42:46, Info                  CSI    000001c2 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:47, Info                  CSI    000001c4 [SR] Verify complete
2022-10-16 19:42:47, Info                  CSI    000001c5 [SR] Verifying 100 components
2022-10-16 19:42:47, Info                  CSI    000001c6 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:49, Info                  CSI    000001ca [SR] Verify complete
2022-10-16 19:42:50, Info                  CSI    000001cb [SR] Verifying 100 components
2022-10-16 19:42:50, Info                  CSI    000001cc [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:51, Info                  CSI    000001cf [SR] Verify complete
2022-10-16 19:42:51, Info                  CSI    000001d0 [SR] Verifying 100 components
2022-10-16 19:42:51, Info                  CSI    000001d1 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:53, Info                  CSI    000001d2 [SR] Verify complete
2022-10-16 19:42:53, Info                  CSI    000001d3 [SR] Verifying 100 components
2022-10-16 19:42:53, Info                  CSI    000001d4 [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:58, Info                  CSI    000001d8 [SR] Verify complete
2022-10-16 19:42:58, Info                  CSI    000001d9 [SR] Verifying 100 components
2022-10-16 19:42:58, Info                  CSI    000001da [SR] Beginning Verify and Repair transaction
2022-10-16 19:42:59, Info                  CSI    000001db [SR] Verify complete
2022-10-16 19:42:59, Info                  CSI    000001dc [SR] Verifying 100 components
2022-10-16 19:42:59, Info                  CSI    000001dd [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:00, Info                  CSI    000001de [SR] Verify complete
2022-10-16 19:43:01, Info                  CSI    000001df [SR] Verifying 100 components
2022-10-16 19:43:01, Info                  CSI    000001e0 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:02, Info                  CSI    000001e1 [SR] Verify complete
2022-10-16 19:43:02, Info                  CSI    000001e2 [SR] Verifying 100 components
2022-10-16 19:43:02, Info                  CSI    000001e3 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:03, Info                  CSI    000001e4 [SR] Verify complete
2022-10-16 19:43:04, Info                  CSI    000001e5 [SR] Verifying 100 components
2022-10-16 19:43:04, Info                  CSI    000001e6 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:05, Info                  CSI    000001e8 [SR] Verify complete
2022-10-16 19:43:06, Info                  CSI    000001e9 [SR] Verifying 100 components
2022-10-16 19:43:06, Info                  CSI    000001ea [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:07, Info                  CSI    000001eb [SR] Verify complete
2022-10-16 19:43:07, Info                  CSI    000001ec [SR] Verifying 100 components
2022-10-16 19:43:07, Info                  CSI    000001ed [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:10, Info                  CSI    000001ef [SR] Verify complete
2022-10-16 19:43:10, Info                  CSI    000001f0 [SR] Verifying 100 components
2022-10-16 19:43:10, Info                  CSI    000001f1 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:11, Info                  CSI    000001f2 [SR] Verify complete
2022-10-16 19:43:11, Info                  CSI    000001f3 [SR] Verifying 100 components
2022-10-16 19:43:11, Info                  CSI    000001f4 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:13, Info                  CSI    000001f5 [SR] Verify complete
2022-10-16 19:43:13, Info                  CSI    000001f6 [SR] Verifying 100 components
2022-10-16 19:43:13, Info                  CSI    000001f7 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:15, Info                  CSI    000001f8 [SR] Verify complete
2022-10-16 19:43:15, Info                  CSI    000001f9 [SR] Verifying 100 components
2022-10-16 19:43:15, Info                  CSI    000001fa [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:16, Info                  CSI    000001fb [SR] Verify complete
2022-10-16 19:43:16, Info                  CSI    000001fc [SR] Verifying 100 components
2022-10-16 19:43:16, Info                  CSI    000001fd [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:18, Info                  CSI    000001fe [SR] Verify complete
2022-10-16 19:43:18, Info                  CSI    000001ff [SR] Verifying 100 components
2022-10-16 19:43:18, Info                  CSI    00000200 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:21, Info                  CSI    00000202 [SR] Verify complete
2022-10-16 19:43:21, Info                  CSI    00000203 [SR] Verifying 100 components
2022-10-16 19:43:21, Info                  CSI    00000204 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:22, Info                  CSI    00000208 [SR] Verify complete
2022-10-16 19:43:22, Info                  CSI    00000209 [SR] Verifying 100 components
2022-10-16 19:43:22, Info                  CSI    0000020a [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:24, Info                  CSI    0000020b [SR] Verify complete
2022-10-16 19:43:24, Info                  CSI    0000020c [SR] Verifying 100 components
2022-10-16 19:43:24, Info                  CSI    0000020d [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:25, Info                  CSI    0000020e [SR] Verify complete
2022-10-16 19:43:25, Info                  CSI    0000020f [SR] Verifying 100 components
2022-10-16 19:43:25, Info                  CSI    00000210 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:26, Info                  CSI    00000211 [SR] Verify complete
2022-10-16 19:43:26, Info                  CSI    00000212 [SR] Verifying 100 components
2022-10-16 19:43:26, Info                  CSI    00000213 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:27, Info                  CSI    00000214 [SR] Verify complete
2022-10-16 19:43:27, Info                  CSI    00000215 [SR] Verifying 100 components
2022-10-16 19:43:27, Info                  CSI    00000216 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:29, Info                  CSI    00000218 [SR] Verify complete
2022-10-16 19:43:29, Info                  CSI    00000219 [SR] Verifying 100 components
2022-10-16 19:43:29, Info                  CSI    0000021a [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:32, Info                  CSI    0000021c [SR] Verify complete
2022-10-16 19:43:32, Info                  CSI    0000021d [SR] Verifying 100 components
2022-10-16 19:43:32, Info                  CSI    0000021e [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:33, Info                  CSI    0000021f [SR] Verify complete
2022-10-16 19:43:33, Info                  CSI    00000220 [SR] Verifying 100 components
2022-10-16 19:43:33, Info                  CSI    00000221 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:35, Info                  CSI    00000223 [SR] Verify complete
2022-10-16 19:43:36, Info                  CSI    00000224 [SR] Verifying 100 components
2022-10-16 19:43:36, Info                  CSI    00000225 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:38, Info                  CSI    00000227 [SR] Verify complete
2022-10-16 19:43:38, Info                  CSI    00000228 [SR] Verifying 100 components
2022-10-16 19:43:38, Info                  CSI    00000229 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:40, Info                  CSI    0000022a [SR] Verify complete
2022-10-16 19:43:40, Info                  CSI    0000022b [SR] Verifying 100 components
2022-10-16 19:43:40, Info                  CSI    0000022c [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:42, Info                  CSI    0000022d [SR] Verify complete
2022-10-16 19:43:42, Info                  CSI    0000022e [SR] Verifying 100 components
2022-10-16 19:43:42, Info                  CSI    0000022f [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:45, Info                  CSI    00000231 [SR] Verify complete
2022-10-16 19:43:45, Info                  CSI    00000232 [SR] Verifying 100 components
2022-10-16 19:43:45, Info                  CSI    00000233 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:46, Info                  CSI    00000234 [SR] Verify complete
2022-10-16 19:43:46, Info                  CSI    00000235 [SR] Verifying 100 components
2022-10-16 19:43:46, Info                  CSI    00000236 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:48, Info                  CSI    00000237 [SR] Verify complete
2022-10-16 19:43:48, Info                  CSI    00000238 [SR] Verifying 100 components
2022-10-16 19:43:48, Info                  CSI    00000239 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:50, Info                  CSI    0000023a [SR] Verify complete
2022-10-16 19:43:50, Info                  CSI    0000023b [SR] Verifying 100 components
2022-10-16 19:43:50, Info                  CSI    0000023c [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:51, Info                  CSI    0000023d [SR] Verify complete
2022-10-16 19:43:52, Info                  CSI    0000023e [SR] Verifying 100 components
2022-10-16 19:43:52, Info                  CSI    0000023f [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:53, Info                  CSI    00000240 [SR] Verify complete
2022-10-16 19:43:54, Info                  CSI    00000241 [SR] Verifying 100 components
2022-10-16 19:43:54, Info                  CSI    00000242 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:56, Info                  CSI    00000247 [SR] Verify complete
2022-10-16 19:43:56, Info                  CSI    00000248 [SR] Verifying 100 components
2022-10-16 19:43:56, Info                  CSI    00000249 [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:58, Info                  CSI    0000024a [SR] Verify complete
2022-10-16 19:43:58, Info                  CSI    0000024b [SR] Verifying 100 components
2022-10-16 19:43:58, Info                  CSI    0000024c [SR] Beginning Verify and Repair transaction
2022-10-16 19:43:59, Info                  CSI    0000024d [SR] Verify complete
2022-10-16 19:43:59, Info                  CSI    0000024e [SR] Verifying 100 components
2022-10-16 19:43:59, Info                  CSI    0000024f [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:02, Info                  CSI    00000250 [SR] Verify complete
2022-10-16 19:44:02, Info                  CSI    00000251 [SR] Verifying 100 components
2022-10-16 19:44:02, Info                  CSI    00000252 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:03, Info                  CSI    00000253 [SR] Verify complete
2022-10-16 19:44:04, Info                  CSI    00000254 [SR] Verifying 100 components
2022-10-16 19:44:04, Info                  CSI    00000255 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:06, Info                  CSI    00000257 [SR] Verify complete
2022-10-16 19:44:06, Info                  CSI    00000258 [SR] Verifying 100 components
2022-10-16 19:44:06, Info                  CSI    00000259 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:08, Info                  CSI    0000025a [SR] Verify complete
2022-10-16 19:44:08, Info                  CSI    0000025b [SR] Verifying 100 components
2022-10-16 19:44:08, Info                  CSI    0000025c [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:10, Info                  CSI    0000025d [SR] Verify complete
2022-10-16 19:44:10, Info                  CSI    0000025e [SR] Verifying 100 components
2022-10-16 19:44:10, Info                  CSI    0000025f [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:13, Info                  CSI    00000262 [SR] Verify complete
2022-10-16 19:44:13, Info                  CSI    00000263 [SR] Verifying 100 components
2022-10-16 19:44:13, Info                  CSI    00000264 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:15, Info                  CSI    00000266 [SR] Verify complete
2022-10-16 19:44:16, Info                  CSI    00000267 [SR] Verifying 100 components
2022-10-16 19:44:16, Info                  CSI    00000268 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:17, Info                  CSI    00000269 [SR] Verify complete
2022-10-16 19:44:17, Info                  CSI    0000026a [SR] Verifying 100 components
2022-10-16 19:44:17, Info                  CSI    0000026b [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:18, Info                  CSI    0000026c [SR] Verify complete
2022-10-16 19:44:19, Info                  CSI    0000026d [SR] Verifying 100 components
2022-10-16 19:44:19, Info                  CSI    0000026e [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:20, Info                  CSI    0000026f [SR] Verify complete
2022-10-16 19:44:20, Info                  CSI    00000270 [SR] Verifying 100 components
2022-10-16 19:44:20, Info                  CSI    00000271 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:21, Info                  CSI    00000272 [SR] Verify complete
2022-10-16 19:44:22, Info                  CSI    00000273 [SR] Verifying 100 components
2022-10-16 19:44:22, Info                  CSI    00000274 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:23, Info                  CSI    00000275 [SR] Verify complete
2022-10-16 19:44:24, Info                  CSI    00000276 [SR] Verifying 100 components
2022-10-16 19:44:24, Info                  CSI    00000277 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:25, Info                  CSI    00000279 [SR] Verify complete
2022-10-16 19:44:25, Info                  CSI    0000027a [SR] Verifying 100 components
2022-10-16 19:44:25, Info                  CSI    0000027b [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:26, Info                  CSI    0000027d [SR] Verify complete
2022-10-16 19:44:26, Info                  CSI    0000027e [SR] Verifying 100 components
2022-10-16 19:44:26, Info                  CSI    0000027f [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:28, Info                  CSI    00000280 [SR] Verify complete
2022-10-16 19:44:28, Info                  CSI    00000281 [SR] Verifying 100 components
2022-10-16 19:44:28, Info                  CSI    00000282 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:29, Info                  CSI    00000284 [SR] Verify complete
2022-10-16 19:44:30, Info                  CSI    00000285 [SR] Verifying 100 components
2022-10-16 19:44:30, Info                  CSI    00000286 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:31, Info                  CSI    00000288 [SR] Verify complete
2022-10-16 19:44:32, Info                  CSI    00000289 [SR] Verifying 100 components
2022-10-16 19:44:32, Info                  CSI    0000028a [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:34, Info                  CSI    0000028d [SR] Verify complete
2022-10-16 19:44:34, Info                  CSI    0000028e [SR] Verifying 33 components
2022-10-16 19:44:34, Info                  CSI    0000028f [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:35, Info                  CSI    00000290 [SR] Verify complete
2022-10-16 19:44:35, Info                  CSI    00000291 [SR] Repairing 0 components
2022-10-16 19:44:35, Info                  CSI    00000292 [SR] Beginning Verify and Repair transaction
2022-10-16 19:44:35, Info                  CSI    00000293 [SR] Repair complete
 
========= End of CMD: =========
 
 
========= FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" =========
 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "AMSI/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Application" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "DirectShowFilterGraph" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "DirectShowPluginControl" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Els_Hyphenation/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "EndpointMapper" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "FirstUXPerf-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "ForwardedEvents" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "HardwareEvents" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "IHM_DebugChannel" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Intel-iaLPSS-GPIO/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Intel-iaLPSS-I2C/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Intel-iaLPSS2-GPIO2/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Intel-iaLPSS2-GPIO2/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Intel-iaLPSS2-I2C/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Intel-iaLPSS2-I2C/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Internet Explorer" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Key Management Service" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MF_MediaFoundationDeviceMFT" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MF_MediaFoundationDeviceProxy" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MF_MediaFoundationFrameServer" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MedaFoundationVideoProc" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MedaFoundationVideoProcD3D" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationAsyncWrapper" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationContentProtection" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationDS" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationDeviceProxy" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationMP4" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationMediaEngine" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationPerformance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationPerformanceCore" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationPipeline" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationPlatform" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "MediaFoundationSrcPrefetch" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-AppV-Client-Streamingux/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-AppV-Client/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-AppV-Client/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-AppV-Client/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-AppV-Client/Virtual Applications" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-AppV-SharedPerformance/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Client-License-Flexible-Platform/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Client-License-Flexible-Platform/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Client-License-Flexible-Platform/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Client-Licensing-Platform/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Client-Licensing-Platform/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Client-Licensing-Platform/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-IE/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-IEFRAME/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-JSDumpHeap/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-OneCore-Setup/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-PerfTrack-IEFRAME/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-PerfTrack-MSHTML/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-Admin/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-Agent Driver/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-Agent Driver/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-App Agent/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-App Agent/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-App Agent/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-IPC/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-SQM Uploader/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-SQM Uploader/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-User Experience Virtualization-SQM Uploader/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AAD/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AAD/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ADSI/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ASN1/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ATAPort/General" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ATAPort/SATA-LPM" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ActionQueue/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-All-User-Install-Agent/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AllJoyn/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AllJoyn/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppHost/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppHost/ApplicationTracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppHost/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppHost/Internal" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppID/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppLocker/EXE and DLL" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppLocker/MSI and Script" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppLocker/Packaged app-Deployment" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppLocker/Packaged app-Execution" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppModel-Runtime/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppModel-Runtime/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppModel-Runtime/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppModel-Runtime/Diagnostics" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppModel-State/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppModel-State/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppReadiness/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppReadiness/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppReadiness/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppSruProv" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppXDeployment/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppXDeployment/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppXDeploymentServer/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppXDeploymentServer/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppXDeploymentServer/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppXDeploymentServer/Restricted" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ApplicabilityEngine/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ApplicabilityEngine/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application Server-Applications/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application Server-Applications/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application Server-Applications/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application Server-Applications/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Compatibility-Infrastructure-Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Compatibility-Assistant" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Compatibility-Assistant/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Compatibility-Assistant/Trace" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Compatibility-Troubleshooter" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Inventory" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Telemetry" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Steps-Recorder" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppxPackaging/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppxPackaging/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AppxPackaging/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AssignedAccess/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AssignedAccess/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AssignedAccessBroker/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AssignedAccessBroker/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AsynchronousCausality/Causality" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Audio/CaptureMonitor" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Audio/GlitchDetection" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Audio/Informational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Audio/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Audio/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Audio/PlaybackManager" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Audit/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Authentication User Interface/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Authentication/AuthenticationPolicyFailures-DomainController" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Authentication/ProtectedUser-Client" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Authentication/ProtectedUserFailures-DomainController" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Authentication/ProtectedUserSuccesses-DomainController" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-AxInstallService/Log" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BTH-BTHPORT/HCI" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BTH-BTHPORT/L2CAP" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BTH-BTHUSB/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BTH-BTHUSB/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BackgroundTaskInfrastructure/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BackgroundTaskInfrastructure/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BackgroundTransfer-ContentPrefetcher/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Backup" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Base-Filtering-Engine-Connections/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Base-Filtering-Engine-Resource-Flows/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Battery/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Biometrics/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Biometrics/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BitLocker-DrivePreparationTool/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BitLocker-DrivePreparationTool/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BitLocker-Driver-Performance/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BitLocker/BitLocker Management" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BitLocker/BitLocker Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BitLocker/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Bits-Client/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Bits-Client/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Bluetooth-BthLEPrepairing/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Bluetooth-Bthmini/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Bluetooth-MTPEnum/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Bluetooth-Policy/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BranchCache/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BranchCacheClientEventProvider/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BranchCacheEventProvider/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BranchCacheMonitoring/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BranchCacheSMB/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-BranchCacheSMB/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CAPI2/Catalog Database Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CAPI2/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CDROM/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COM/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COM/ApartmentInitialize" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COM/ApartmentUninitialize" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COM/Call" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COM/CreateInstance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COM/ExtensionCatalog" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COM/FreeUnusedLibrary" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COM/RundownInstrumentation" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COMRuntime/Activations" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COMRuntime/MessageProcessing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-COMRuntime/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CertPoleEng/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CertificateServicesClient-CredentialRoaming/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CertificateServicesClient-Lifecycle-System/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CertificateServicesClient-Lifecycle-User/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Cleanmgr/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ClearTypeTextTuner/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CloudStore/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CloudStore/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CmiSetup/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CodeIntegrity/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CodeIntegrity/Verbose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ComDlg32/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ComDlg32/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Compat-Appraiser/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Compat-Appraiser/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Containers-BindFlt/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Containers-BindFlt/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Containers-Wcifs/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Containers-Wcifs/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Containers-Wcnfs/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Containers-Wcnfs/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CoreApplication/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CoreApplication/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CoreApplication/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CoreSystem-SmsRouter-Events/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CoreSystem-SmsRouter-Events/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CoreWindow/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CoreWindow/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CorruptedFileRecovery-Client/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CorruptedFileRecovery-Server/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crashdump/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-CredUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crypto-BCRYPT/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crypto-CNG/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crypto-DPAPI/BackUpKeySvc" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crypto-DPAPI/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crypto-DPAPI/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crypto-DSSEnh/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crypto-NCrypt/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crypto-RNG/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Crypto-RSAEnh/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-D3D10Level9/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-D3D10Level9/PerfTiming" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DAL-Provider/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DAL-Provider/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DAMM/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DCLocator/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DDisplay/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DDisplay/Logging" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DLNA-Namespace/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DNS-Client/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DSC/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DSC/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DSC/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DSC/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DUSER/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DXGI/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DXGI/Logging" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DXP/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Data-Pdf/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DataIntegrityScan/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DataIntegrityScan/CrashRecovery" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DateTimeControlPanel/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DateTimeControlPanel/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DateTimeControlPanel/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Deduplication/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Deduplication/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Deduplication/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Deduplication/Scrubbing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Defrag-Core/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Deplorch/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DesktopActivityModerator/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DesktopWindowManager-Diag/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceAssociationService/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceConfidence/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceGuard/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceGuard/Verbose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceSetupManager/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceSetupManager/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceSetupManager/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceSetupManager/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceSync/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceSync/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceUpdateAgent/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceUx/Informational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DeviceUx/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Devices-Background/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dhcp-Client/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dhcp-Client/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dhcpv6-Client/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dhcpv6-Client/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DiagCpl/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-AdvancedTaskManager/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-DPS/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-DPS/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-DPS/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-MSDE/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PCW/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PCW/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PCW/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PLA/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PLA/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Perfhost/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scheduled/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scripted/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scripted/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scripted/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scripted/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-ScriptedDiagnosticsProvider/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-ScriptedDiagnosticsProvider/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-WDC/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-WDI/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Networking/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Networking/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-PerfTrack-Counters/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-PerfTrack/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Performance/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Performance/Diagnostic/Loopback" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Performance/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3D10/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3D10_1/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3D11/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3D11/Logging" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3D11/PerfTiming" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3D12/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3D12/Logging" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3D12/PerfTiming" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3D9/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Direct3DShaderCache/Default" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DirectComposition/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DirectManipulation/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DirectShow-KernelSupport/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DirectSound/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Disk/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DiskDiagnostic/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DiskDiagnosticDataCollector/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DiskDiagnosticResolver/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dism-Api/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dism-Api/ExternalAnalytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dism-Api/InternalAnalytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dism-Cli/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DisplayColorCalibration/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DisplayColorCalibration/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DisplaySwitch/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Documents/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dot3MM/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DriverFrameworks-UserMode/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DucUpdateAgent/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dwm-API/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dwm-Core/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dwm-Dwm/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dwm-Redir/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Dwm-Udwm/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl-Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl-Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl/Contention" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl/Power" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-DxpTaskSyncProvider/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EDP-Application-Learning/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EDP-Audit-Regular/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EDP-Audit-TCB/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EFS/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ESE/IODiagnose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ESE/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EapHost/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EapHost/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EapHost/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EapMethods-RasChap/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EapMethods-RasTls/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EapMethods-Sim/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EapMethods-Ttls/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EaseOfAccess/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Energy-Estimation-Engine/EventLog" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Energy-Estimation-Engine/Trace" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EnhancedStorage-EhStorTcgDrv/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EventCollector/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EventCollector/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EventLog-WMIProvider/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EventLog/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-EventLog/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FMS/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FMS/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FMS/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FailoverClustering-Client/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Fault-Tolerant-Heap/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FeatureConfiguration/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FeatureConfiguration/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Catalog/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Catalog/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-ConfigManager/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-ConfigManager/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Core/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Core/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Core/WHC" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Engine/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Engine/BackupLog" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Engine/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-EventListener/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-EventListener/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Service/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Service/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-UI-Events/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-UI-Events/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-FileInfoMinifilter/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Firewall-CPL/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Folder Redirection/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Forwarding/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Forwarding/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-GPIO-ClassExtension/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-GenericRoaming/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-GroupPolicy/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HAL/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HealthCenter/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HealthCenter/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HealthCenterCPL/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HelloForBusiness/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Help/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Control Panel Performance/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Control Panel/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Listener Service/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Provider Service Performance/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Provider Service/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup-ListenerService" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HotspotAuth/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HotspotAuth/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HttpService/Log" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-HttpService/Trace" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Diagnose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Hypervisor-Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Hypervisor-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Hypervisor-Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-NETVSC/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-VID-Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-VID-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IE-SmartScreen" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IKE/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IKEDBG/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-Broker/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-CandidateUI/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-CustomerFeedbackManager/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-CustomerFeedbackManagerUI/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-JPAPI/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-JPLMP/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-JPPRED/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-JPSetting/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-JPTIP/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-KRAPI/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-KRTIP/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-OEDCompiler/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-TCCORE/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-TCTIP/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IME-TIP/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IPNAT/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IPSEC-SRV/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IPxlatCfg/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IPxlatCfg/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IdCtrls/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IdCtrls/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-IndirectDisplays-ClassExtension-Events/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Input-HIDCLASS-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-InputSwitch/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-International-RegionalOptionsControlPanel/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Iphlpsvc/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Iphlpsvc/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Iphlpsvc/Trace" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-KdsSvc/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kerberos/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Acpi/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-AppCompat/General" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-AppCompat/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ApphelpCache/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ApphelpCache/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ApphelpCache/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Boot/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Boot/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-BootDiagnostics/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Disk/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-EventTracing/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-EventTracing/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-File/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-IO/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Interrupt-Steering/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-IoTrace/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-LiveDump/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-LiveDump/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Memory/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Network/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Pdc/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Pep/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Boot Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Configuration" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Configuration Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Device Enumeration Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Driver Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Driver Watchdog" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Power/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Power/Thermal-Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Power/Thermal-Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Prefetch/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Process/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Processor-Power/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Registry/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Registry/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ShimEngine/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ShimEngine/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ShimEngine/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-StoreMgr/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-StoreMgr/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WDI/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WDI/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WDI/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WHEA/Errors" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WHEA/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Kernel-XDV/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-KeyboardFilter/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-KeyboardFilter/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-KeyboardFilter/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Known Folders API Service" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-L2NA/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LDAP-Client/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LSA/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LSA/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LSA/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LUA-ConsentUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LanguagePackSetup/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LanguagePackSetup/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LanguagePackSetup/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LimitsManagement/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LinkLayerDiscoveryProtocol/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LinkLayerDiscoveryProtocol/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LiveId/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-LiveId/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MPEG2-Video-Encoder-MFT_Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MPS-CLNT/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MPS-DRV/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MPS-SRV/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MSFTEDIT/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MUI/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MUI/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MUI/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MUI/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Media-Streaming/DMC" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Media-Streaming/DMR" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Media-Streaming/MDE" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-MFCaptureEngine/MFCaptureEngine" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-MFReadWrite/SinkWriter" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-MFReadWrite/SourceReader" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-MFReadWrite/Transform" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-Performance/SARStreamResource" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-PlayAPI/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MemoryDiagnostics-Results/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Minstore/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Minstore/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-Api-Internal/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-Api/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-Parser-Task/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-Parser-Task/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-SmsApi/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-MobilityCenter/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/Autopilot" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/Diagnostics" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/ManagementService" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Mprddm/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NCSI/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NCSI/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NDF-HelperClassDiscovery/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NDIS-PacketCapture/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NDIS/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NDIS/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NTLM/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NWiFi/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Narrator/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Ncasvc/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NcdAutoSetup/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NcdAutoSetup/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NdisImPlatform/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Ndu/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetShell/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Network-Connection-Broker" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Network-DataUsage/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Network-Setup/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Network-and-Sharing-Center/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetworkBridge/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetworkLocationWizard/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetworkProfile/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetworkProfile/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetworkProvider/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetworkProvisioning/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetworkProvisioning/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetworkSecurity/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NetworkStatus/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Networking-Correlation/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Networking-RealTimeCommunication/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NlaSvc/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-NlaSvc/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Ntfs/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Ntfs/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Ntfs/WHC" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OLE/Clipboard-Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OLEACC/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OLEACC/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OOBE-FirstLogonAnim/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OOBE-Machine-Core/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OOBE-Machine-DUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OOBE-Machine-DUI/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OOBE-Machine-Plugins-Wireless/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OcpUpdateAgent/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OfflineFiles/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OfflineFiles/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OfflineFiles/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OfflineFiles/SyncLog" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OneBackup/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OneX/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OneX/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OobeLdr/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-OtpCredentialProvider/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PCI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PackageStateRoaming/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PackageStateRoaming/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PackageStateRoaming/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ParentalControls/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Partition/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Partition/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PeerToPeerDrtEventProvider/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PerceptionRuntime/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PerceptionSensorDataService/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-Nvdimm/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-Nvdimm/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-Nvdimm/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-PmemDisk/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-PmemDisk/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-PmemDisk/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-ScmBus/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-ScmBus/Certification" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-ScmBus/Diagnose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-ScmBus/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PhotoAcq/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PlayToManager/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Policy/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Policy/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PortableDeviceStatusProvider/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PortableDeviceSyncProvider/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Power-Meter-Polling/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerCfg/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerCpl/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerEfficiencyDiagnostics/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerShell-DesiredStateConfiguration-FileDownloadManager/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerShell-DesiredStateConfiguration-FileDownloadManager/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerShell-DesiredStateConfiguration-FileDownloadManager/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerShell/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerShell/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerShell/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PowerShell/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PrimaryNetworkIcon/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PrintBRM/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PrintService-USBMon/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PrintService/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PrintService/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PrintService/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Privacy-Auditing/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ProcessStateManager/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Program-Compatibility-Assistant/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Program-Compatibility-Assistant/CompatAfterUpgrade" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Provisioning-Diagnostics-Provider/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Provisioning-Diagnostics-Provider/AutoPilot" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Provisioning-Diagnostics-Provider/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Provisioning-Diagnostics-Provider/ManagementService" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Proximity-Common/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Proximity-Common/Informational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Proximity-Common/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-Developer/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-InProc/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-Platform/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-Platform/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-Platform/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-QoS-Pacer/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-QoS-qWAVE/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RPC-Proxy/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RPC/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RPC/EEInfo" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RRAS/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RRAS/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RadioManager/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Ras-NdisWanPacketCapture/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RasAgileVpn/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RasAgileVpn/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ReFS/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ReadyBoost/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ReadyBoost/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ReadyBoostDriver/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ReadyBoostDriver/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Regsvr32/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteApp and Desktop Connections/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteApp and Desktop Connections/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteAssistance/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteAssistance/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteAssistance/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RdpCoreTS/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RdpCoreTS/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RdpCoreTS/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RemoteFX-Synth3dvsc/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RemoteFX-VM-Kernel-Mode-Transport/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RemoteFX-VM-User-Mode-Transport/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-SessionServices/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Remotefs-Rdbss/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Remotefs-Rdbss/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ResetEng-Trace/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Resource-Exhaustion-Detector/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Resource-Exhaustion-Resolver/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ResourcePublication/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RestartManager/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RetailDemo/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-RetailDemo/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Graphics/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Networking-BackgroundTransfer/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Networking/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Web-Http/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime-WebAPI/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Windows-Media/WinRTAdaptiveMediaSource" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Windows-Media/WinRTCaptureEngine" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Windows-Media/WinRTMediaStreamSource" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Windows-Media/WinRTTranscode" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime/CreateInstance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Runtime/Error" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SENSE/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBClient/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBClient/HelperClassDiagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBClient/ObjectStateDiagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBClient/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBDirect/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBDirect/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBDirect/Netmon" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Audit" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Connectivity" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Security" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBWitnessClient/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SMBWitnessClient/Informational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SPB-ClassExtension/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SPB-HIDI2C/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Schannel-Events/Perf" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Sdbus/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Sdbus/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Sdstor/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Search-Core/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Search-ProtocolHandlers/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SearchUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SearchUI/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SecureAssessment/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-Adminless/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-Audit-Configuration-Client/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-Audit-Configuration-Client/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-EnterpriseData-FileRevocationManager/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-ExchangeActiveSyncProvisioning/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-ExchangeActiveSyncProvisioning/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-IdentityListener/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-IdentityStore/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-LessPrivilegedAppContainer/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-Mitigations/KernelMode" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-Mitigations/UserMode" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-Netlogon/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP-UX-GC/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP-UX-GenuineCenter-Logging/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP-UX-Notifications/ActionCenter" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP-UX/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP/Perf" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-UserConsentVerifier/Audit" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Security-Vault/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SecurityMitigationsBroker/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SecurityMitigationsBroker/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SecurityMitigationsBroker/Perf" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SendTo/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Sens/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SenseIR/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Sensors/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Sensors/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Serial-ClassExtension-V2/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Serial-ClassExtension/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ServiceReportingApi/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Services-Svchost/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Services/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Servicing/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-Azure/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-Azure/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-OneDrive/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-OneDrive/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-OneDrive/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SettingSync/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SettingSync/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SettingSync/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SettingSync/VerboseDebug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Setup/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SetupCl/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SetupPlatform/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SetupQueue/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SetupUGC/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ShareMedia-ControlPanel/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-AppWizCpl/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-BootAnim/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-Common/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-CredUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-CredentialProviderUser/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-Logon/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-LogonUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-Shutdown/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-ConnectedAccountState/ActionCenter" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/ActionCenter" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/AppDefaults" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/LogonTasksChannel" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-DefaultPrograms/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-LockScreenContent/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-OpenWith/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-Shwebsvc" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shell-ZipFolder/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ShellCommon-StartLayoutPopulation/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ShellCommon-StartLayoutPopulation/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Shsvcs/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SleepStudy/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SmartCard-Audit/Authentication" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SmartCard-DeviceEnum/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SmartCard-TPM-VCard-Module/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SmartCard-TPM-VCard-Module/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SmartScreen/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SmbClient/Audit" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SmbClient/Connectivity" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SmbClient/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SmbClient/Security" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Speech-UserExperience/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Spell-Checking/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SpellChecker/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Spellchecking-Host/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SruMon/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SrumTelemetry" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StateRepository/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StateRepository/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StateRepository/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StateRepository/Restricted" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorDiag/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorPort/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Diagnose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Diagnose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Diagnose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Diagnose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Health" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Tiering-IoHeat/Heat" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storage-Tiering/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorageManagement/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorageManagement/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorageSettings/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-Driver/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-Driver/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-Driver/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-ManagementAgent/WHC" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-SpaceManager/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-SpaceManager/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Store/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Storsvc/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Subsys-Csr/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Subsys-SMSS/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Superfetch/Main" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Superfetch/PfApLog" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Superfetch/StoreLog" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Sysprep/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-System-Profile-HardwareId/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SystemSettingsHandlers/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SystemSettingsThreshold/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SystemSettingsThreshold/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-SystemSettingsThreshold/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TCPIP/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TCPIP/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TSF-msctf/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TSF-msctf/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TSF-msutb/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TSF-msutb/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TTS/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TWinAPI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TWinUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TWinUI/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TZSync/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TZSync/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TZUtil/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TaskScheduler/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TaskScheduler/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TaskScheduler/Maintenance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TaskScheduler/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TaskbarCPL/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TenantRestrictions/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ClientUSBDevices/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ClientUSBDevices/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ClientUSBDevices/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ClientUSBDevices/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-LocalSessionManager/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-LocalSessionManager/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-LocalSessionManager/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-LocalSessionManager/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-MediaRedirection/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-PnPDevices/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-PnPDevices/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-PnPDevices/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-PnPDevices/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-Printers/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-Printers/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-Printers/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-Printers/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RDPClient/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RDPClient/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RDPClient/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RdpSoundDriver/Capture" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RdpSoundDriver/Playback" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RemoteConnectionManager/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RemoteConnectionManager/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RemoteConnectionManager/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RemoteConnectionManager/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ServerUSBDevices/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ServerUSBDevices/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ServerUSBDevices/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ServerUSBDevices/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Tethering-Manager/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Tethering-Station/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ThemeCPL/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ThemeUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Threat-Intelligence/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Time-Service-PTP-Provider/PTP-Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Time-Service/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Troubleshooting-Recommended/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Troubleshooting-Recommended/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-TunnelDriver" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UAC-FileVirtualization/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UAC/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UI-Shell/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UIAnimation/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UIAutomationCore/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UIAutomationCore/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UIAutomationCore/Perf" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UIRibbon/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-USB-MAUSBHOST-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-USB-UCX-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-USB-USBHUB/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-USB-USBHUB3-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-USB-USBPORT/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-USB-USBXHCI-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-USB-USBXHCI-Trustlet-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-USBVideo/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UniversalTelemetryClient/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User Control Panel Performance/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User Control Panel Usage/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User Control Panel/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User Control Panel/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User Device Registration/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User Device Registration/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User Profile Service/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User Profile Service/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User-Loader/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-User-Loader/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UserAccountControl/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UserModePowerService/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/ActionCenter" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/DeviceInstall" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/DeviceMetadata/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/SchedulerOperations" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UxInit/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-UxTheme/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VAN/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VDRVROOT/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VHDMP-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VHDMP-Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VIRTDISK-Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VPN-Client/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VPN/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VWiFi/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VerifyHardwareSecurity/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VerifyHardwareSecurity/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Volume/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VolumeControl/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VolumeSnapshot-Driver/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-VolumeSnapshot-Driver/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WABSyncProvider/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WCN-Config-Registrar/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WCNWiz/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WDAG-PolicyEvaluator-CSP/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WDAG-PolicyEvaluator-GP/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WEPHOSTSVC/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WER-PayloadHealth/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WFP/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WFP/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WLAN-AutoConfig/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WLAN-Autoconfig/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WLAN-Driver/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WLAN-MediaManager/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WLANConnectionFlow/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WMI-Activity/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WMI-Activity/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WMI-Activity/Trace" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WMPDMCUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WMPNSS-PublicAPI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WMPNSS-Service/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WMPNSS-Service/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WMPNSSUI/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-API/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-ClassInstaller/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-ClassInstaller/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-CompositeClassDriver/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-CompositeClassDriver/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPBT/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPClassDriver/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPClassDriver/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPIP/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPUS/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WSC-SRV/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WUSA/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WWAN-CFE/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WWAN-MM-Events/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WWAN-MediaManager/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WWAN-NDISUIO-EVENTS/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WWAN-SVC-Events/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WWAN-SVC-Events/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Wcmsvc/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Wcmsvc/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WebAuth/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WebAuthN/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WebIO-NDF/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WebIO/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WebPlatStorage-Server" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WebServices/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WebcamProvider/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Websocket-Protocol-Component/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WiFiDisplay/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Concurrency" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Contention" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Messages" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Power" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Render" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Win32k/UIPI" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinHTTP-NDF/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinHttp-Pca" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinHttp/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinHttp/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinINet-Capture/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinINet-Config/ProxyConfigChanged" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinINet/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinINet/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinINet/Pca" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinINet/UsageLog" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinINet/WebSocket" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinMDE/MDE" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinML/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinNat/Oper" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinNat/Trace" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinRM/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinRM/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinRM/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WinURLMon/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Windeploy/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Windows Defender/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Windows Defender/WHC" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/ConnectionSecurity" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/ConnectionSecurityVerbose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/Firewall" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/FirewallDiagnostics" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/FirewallVerbose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WindowsBackup/ActionCenter" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WindowsColorSystem/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WindowsColorSystem/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WindowsSystemAssessmentTool/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WindowsSystemAssessmentTool/Tracing" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WindowsUIImmersive/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WindowsUIImmersive/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WindowsUpdateClient/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WindowsUpdateClient/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Wininit/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Winlogon/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Winlogon/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Winsock-AFD/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Winsock-NameResolution/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Winsock-WS2HELP/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Winsrv/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Wired-AutoConfig/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Wired-AutoConfig/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WlanDlg/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Wordpad/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Wordpad/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Wordpad/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WorkFolders/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WorkFolders/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WorkFolders/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-WorkFolders/WHC" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-Workplace Join/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-XAML-Diagnostics/Default" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-XAML/Default" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-XAudio2/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-XAudio2/Performance" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-glcnd/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-glcnd/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-glcnd/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-mobsync/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ntshrui" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-ntshrui-perf" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-osk/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-stobject/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-wmbclass/Analytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-Windows-wmbclass/Trace" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-WindowsPhone-Connectivity-WiFiConnSvc-Channel" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-WindowsPhone-LocationServiceProvider/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-WindowsPhone-Net-Cellcore-CellManager/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Microsoft-WindowsPhone-Net-Cellcore-CellularAPI/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "NIS-Driver-WFP/Diagnostic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Navigator" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Network Isolation Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "OSK_SoftKeyboard_Channel" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "OpenSSH/Admin" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "OpenSSH/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "OpenSSH/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Physical_Keyboard_Manager_Channel" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "PlayReadyPerformanceChannel" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "RTWorkQueueExtended" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "RTWorkQueueTheading" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "SMSApi" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Security" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Setup" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "SmbWmiAnalytic" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "System" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "SystemEventsBroker" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "TabletPC_InputPanel_Channel" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "TabletPC_InputPanel_Channel/IHM" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "TimeBroker" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "UIManager_Channel" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Uac/Debug" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WINDOWS_KS_CHANNEL" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WINDOWS_MFH264Enc_CHANNEL" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WINDOWS_MP4SDECD_CHANNEL" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WINDOWS_MSMPEG2ADEC_CHANNEL" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WINDOWS_MSMPEG2VDEC_CHANNEL" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WINDOWS_VC1ENC_CHANNEL" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WINDOWS_WMPHOTO_CHANNEL" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WINDOWS_wmvdecod_CHANNEL" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WMPSetup" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "WMPSyncEngine" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Windows Networking Vpn Plugin Platform/Operational" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Windows Networking Vpn Plugin Platform/OperationalVerbose" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "Windows PowerShell" 
 
C:\Users\doher\OneDrive\Desktop>wevtutil cl "muxencode" 
 
========= End of CMD: =========
 
 
 
The system needed a reboot.
 
==== End of Fixlog 19:45:20 ====

  • 0

#35
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

ProcessExplorerDataWithEdge

 

Process CPU Private Bytes Working Set PID Description Company Name Verified Signer User Name Path VirusTotal
System Idle Process 79.27 60 K 8 K 0 NT AUTHORITY\SYSTEM
procexp64.exe 12.20 69,412 K 104,460 K 3284 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation HAL900\Rockets C:\Users\Rockets\AppData\Local\Temp\procexp64.exe
SynTPEnh.exe 2.29 4,928 K 20,676 K 1492 Synaptics TouchPad 64-bit Enhancements Synaptics Incorporated (Verified) Synaptics Incorporated HAL900\Rockets C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
System 1.52 260 K 28,396 K 4 NT AUTHORITY\SYSTEM
MsMpEng.exe 1.52 236,464 K 183,652 K 3600 Antimalware Service Executable Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe
msedge.exe 1.52 161,584 K 235,148 K 5488 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
Interrupts 1.52 0 K 0 K n/a Hardware Interrupts and DPCs
dwm.exe 0.76 56,304 K 67,872 K 428 Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows Window Manager\DWM-1 C:\Windows\System32\dwm.exe
audiodg.exe < 0.01 7,244 K 12,688 K 7084 Windows Audio Device Graph Isolation Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\audiodg.exe
csrss.exe < 0.01 9,328 K 5,712 K 596 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\csrss.exe
msedge.exe < 0.01 8,596 K 23,048 K 4840 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
explorer.exe < 0.01 56,124 K 142,800 K 4808 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\explorer.exe
msedge.exe < 0.01 55,988 K 149,600 K 6252 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
svchost.exe < 0.01 5,876 K 12,820 K 984 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
msedge.exe < 0.01 44,820 K 100,116 K 2352 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge.exe < 0.01 13,996 K 38,104 K 2552 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
svchost.exe < 0.01 2,968 K 17,456 K 5104 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher HAL900\Rockets C:\Windows\System32\svchost.exe
msedge.exe < 0.01 67,324 K 115,396 K 4608 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge.exe < 0.01 27,488 K 45,500 K 2976 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
SearchProtocolHost.exe < 0.01 1,804 K 8,404 K 1028 Microsoft Windows Search Protocol Host Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\SearchProtocolHost.exe
svchost.exe < 0.01 1,436 K 6,200 K 1092 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe < 0.01 9,552 K 26,128 K 808 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe < 0.01 3,348 K 13,120 K 3752 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
WUDFHost.exe 1,904 K 8,628 K 1920 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\WUDFHost.exe
WmiPrvSE.exe 2,416 K 9,460 K 6632 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\SYSTEM C:\Windows\System32\wbem\WmiPrvSE.exe
winlogon.exe 2,616 K 12,440 K 800 Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\SYSTEM C:\Windows\System32\winlogon.exe
wininit.exe 1,348 K 7,160 K 588 Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\wininit.exe
TextInputHost.exe 13,772 K 47,688 K 2252 Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe
taskhostw.exe 5,796 K 16,344 K 4248 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\taskhostw.exe
SynTPHelper.exe 1,072 K 5,104 K 4656 Synaptics Pointing Device Helper Synaptics Incorporated (Verified) Synaptics Incorporated HAL900\Rockets C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE
SynTPEnhService.exe 1,152 K 4,944 K 3504 64-bit Synaptics Pointing Enhance Service Synaptics Incorporated (Verified) Microsoft Windows Hardware Compatibility Publisher NT AUTHORITY\SYSTEM C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
svchost.exe 2,588 K 12,832 K 4696 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,256 K 8,220 K 396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 14,628 K 18,320 K 1396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,248 K 7,672 K 1688 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,840 K 8,448 K 2556 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
svchost.exe 9,476 K 19,552 K 3412 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 21,036 K 27,508 K 3380 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,704 K 9,148 K 3028 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 7,440 K 32,860 K 1348 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher HAL900\Rockets C:\Windows\System32\svchost.exe
svchost.exe 2,696 K 11,916 K 5856 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 4,196 K 11,908 K 1936 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,628 K 11,604 K 6904 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 3,280 K 19,020 K 584 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,624 K 7,684 K 2012 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,752 K 9,568 K 2088 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 10,608 K 19,848 K 2584 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,984 K 8,380 K 3080 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,844 K 7,928 K 4768 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 3,240 K 13,920 K 2600 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,300 K 5,652 K 3704 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,560 K 9,740 K 1388 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 4,260 K 19,900 K 3552 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,552 K 10,552 K 1968 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 6,272 K 14,456 K 1696 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 5,372 K 18,488 K 2940 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,172 K 8,992 K 2020 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,732 K 10,664 K 3352 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,760 K 11,012 K 3660 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,268 K 5,840 K 3540 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 4,060 K 16,812 K 4532 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,648 K 6,892 K 2740 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,444 K 10,240 K 2760 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,824 K 8,144 K 2232 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,300 K 11,876 K 2284 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,244 K 5,980 K 1040 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,864 K 7,856 K 2040 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,708 K 8,332 K 1100 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,276 K 10,464 K 1108 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,752 K 8,616 K 4168 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,776 K 7,600 K 2464 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 4,984 K 15,844 K 4664 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 5,920 K 15,580 K 1216 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 14,832 K 31,236 K 3372 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,664 K 7,412 K 2176 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,848 K 8,432 K 2096 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 3,116 K 14,012 K 1248 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 3,572 K 7,956 K 1588 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,756 K 12,636 K 6380 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher HAL900\Rockets C:\Windows\System32\svchost.exe
svchost.exe 2,556 K 11,860 K 6564 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,252 K 9,432 K 3532 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,184 K 8,964 K 5132 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,720 K 8,196 K 4396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,816 K 6,204 K 4420 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 3,892 K 17,304 K 1244 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher HAL900\Rockets C:\Windows\System32\svchost.exe
svchost.exe 1,564 K 6,968 K 3492 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,204 K 5,948 K 3320 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,592 K 8,248 K 3396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,032 K 12,676 K 2996 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,948 K 8,800 K 2404 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,376 K 7,296 K 1408 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 3,080 K 9,308 K 1276 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,260 K 5,524 K 1044 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,580 K 10,980 K 6136 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
StartMenuExperienceHost.exe 25,376 K 73,704 K 2616 (Verified) Microsoft Windows HAL900\Rockets C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
spoolsv.exe 5,024 K 15,476 K 3052 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\SYSTEM C:\Windows\System32\spoolsv.exe
smss.exe 1,064 K 1,212 K 368 Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\smss.exe
smartscreen.exe 7,940 K 24,108 K 6344 Windows Defender SmartScreen Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\smartscreen.exe
sihost.exe 5,280 K 26,052 K 1120 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\sihost.exe
ShellExperienceHost.exe Suspended 16,432 K 55,960 K 2416 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
SgrmBroker.exe 4,152 K 7,672 K 7136 System Guard Runtime Monitor Broker Service Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\SgrmBroker.exe
services.exe 4,820 K 10,136 K 656 Services and Controller app Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\services.exe
SecurityHealthSystray.exe 1,796 K 13,200 K 5892 Windows Security notification icon Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\SecurityHealthSystray.exe
SecurityHealthService.exe 4,804 K 17,188 K 5716 Windows Security Health Service Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\SecurityHealthService.exe
SearchIndexer.exe 22,836 K 28,304 K 6120 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\SYSTEM C:\Windows\System32\SearchIndexer.exe
SearchFilterHost.exe 1,436 K 7,484 K 1820 Microsoft Windows Search Filter Host Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\SYSTEM C:\Windows\System32\SearchFilterHost.exe
SearchApp.exe Suspended 92,192 K 168,456 K 5280 Search application Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
RuntimeBroker.exe 2,828 K 18,540 K 6804 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker.exe 7,456 K 27,824 K 6076 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker.exe 7,260 K 28,060 K 5396 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker.exe 3,980 K 24,700 K 5052 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\RuntimeBroker.exe
Registry 2,048 K 75,672 K 92 NT AUTHORITY\SYSTEM [A device attached to the system is not functioning.]
procexp.exe 7,796 K 13,596 K 6548 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation HAL900\Rockets C:\Users\Rockets\Desktop\procexp.exe
OneDrive.exe 23,704 K 88,400 K 1324 Microsoft OneDrive Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Users\Rockets\AppData\Local\Microsoft\OneDrive\OneDrive.exe
NisSrv.exe 3,744 K 11,424 K 2904 Microsoft Network Realtime Inspection Service Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe
msedge.exe 8,064 K 19,676 K 6428 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge.exe 8,640 K 26,512 K 2840 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge.exe 15,184 K 33,172 K 2916 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge.exe 21,608 K 54,988 K 6140 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge.exe 1,992 K 7,520 K 5628 Microsoft Edge Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
Microsoft.SharePoint.exe 7,376 K 27,788 K 6884 Microsoft SharePoint Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Users\Rockets\AppData\Local\Microsoft\OneDrive\22.196.0918.0001\Microsoft.SharePoint.exe
lsass.exe 6,684 K 19,448 K 664 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\lsass.exe
fontdrvhost.exe 3,392 K 9,020 K 908 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows Font Driver Host\UMFD-1 C:\Windows\System32\fontdrvhost.exe
fontdrvhost.exe 1,280 K 3,976 K 844 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows Font Driver Host\UMFD-0 C:\Windows\System32\fontdrvhost.exe
ctfmon.exe 4,004 K 20,552 K 4492 CTF Loader Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\ctfmon.exe
csrss.exe 1,880 K 5,444 K 480 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\csrss.exe
atiesrxx.exe 1,120 K 4,984 K 1860 AMD External Events Service Module AMD (Verified) Microsoft Windows Hardware Compatibility Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\atiesrxx.exe
atieclxx.exe 2,276 K 9,528 K 1988 AMD External Events Client Module AMD (Verified) Microsoft Windows Hardware Compatibility Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\atieclxx.exe
ApplicationFrameHost.exe 3,816 K 23,916 K 860 Application Frame Host Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\ApplicationFrameHost.exe


Edited by ForrestGump, 16 October 2022 - 09:05 PM.

  • 0

#36
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2022
Ran by Rockets (administrator) on HAL900 (Hewlett-Packard HP G61 Notebook PC) (16-10-2022 20:00:31)
Running from C:\Users\Rockets\Desktop
Loaded Profiles: Rockets
Platform: Microsoft Windows 10 Pro Version 21H2 19044.2130 (X64) Language: English (United States)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954352 2016-03-31] (Synaptics Incorporated -> Synaptics Incorporated)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1CE37D36-DA41-47D4-BD27-68D60E20CBC1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8F3C57C3-97DD-42D4-9A1C-9D79EB04C0D2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8FD85271-6AEF-4A40-8FA6-B5407B2892D0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C19FAA37-86F1-47D0-BD8D-A2598B4315D5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{e77e5341-dabe-4bfc-be4d-04e0b11879c9}: [DhcpNameServer] 192.168.2.1

Edge:
=======
Edge Profile: C:\Users\Rockets\AppData\Local\Microsoft\Edge\User Data\Default [2022-10-16]
Edge Notifications: Default -> hxxps://www.youtube.com

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224192 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2209.7-0\NisSrv.exe [3170576 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2209.7-0\MsMpEng.exe [133584 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 uhssvc; "C:\Program Files\Microsoft Update Health Tools\uhssvc.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleKIS; C:\WINDOWS\System32\drivers\AppleKIS.sys [66976 2022-09-14] (Apple Inc. -> Apple Inc.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleRSM; C:\WINDOWS\System32\drivers\AppleRSM.sys [77720 2022-09-13] (Apple Inc. -> Apple Inc.)
S3 MirayRAMDrive; C:\WINDOWS\System32\drivers\mrdo.sys [65488 2022-02-10] (Miray Software AG -> Miray)
S3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [27744 2021-03-09] (Daniel Terhell -> Resplendence Software Projects Sp.)
S3 rspSanity; C:\WINDOWS\System32\DRIVERS\rspSanity64.sys [31328 2012-10-29] (Daniel Terhell -> Resplendence Software Projects Sp.)
S3 rspWhySoSlow; C:\WINDOWS\System32\DRIVERS\rspWhy64.sys [28928 2016-12-17] (Daniel Terhell -> Resplendence Software Projects Sp.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2022-09-23] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49616 2022-10-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [455968 2022-10-15] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-10-15] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-10-16 20:00 - 2022-10-16 20:00 - 000000000 ____D C:\Users\Rockets\Desktop\FRST-OlderVersion
2022-10-16 18:31 - 2022-10-16 18:31 - 000009290 _____ C:\Users\Rockets\Desktop\CHKDSKResults.txt
2022-10-16 18:01 - 2022-10-16 18:01 - 000004040 _____ C:\WINDOWS\system32\Tasks\PostponeDeviceSetupToast_S-1-5-21-1890784580-1000596592-3856219040-1001_0
2022-10-16 17:57 - 2022-10-16 17:57 - 000000000 ____D C:\WINDOWS\Panther
2022-10-16 16:52 - 2022-10-16 16:52 - 000000414 _____ C:\Users\doher\Downloads\fixlist (2).txt
2022-10-16 16:52 - 2022-10-16 16:52 - 000000414 _____ C:\Users\doher\Downloads\fixlist (1).txt
2022-10-16 15:08 - 2022-10-16 15:08 - 000000000 ____D C:\Users\doher\AppData\Local\OneDrive
2022-10-16 01:38 - 2022-10-16 01:38 - 000521728 _____ (UserBenchmark) C:\Users\doher\Downloads\UserBenchmarkInstaller (1).exe
2022-10-16 01:18 - 2022-10-16 01:30 - 000001044 _____ C:\Users\Rockets\Desktop\UserBenchmark.lnk
2022-10-16 01:17 - 2022-10-16 01:30 - 000000000 ____D C:\Users\Rockets\AppData\Roaming\UserBenchmark
2022-10-16 01:16 - 2022-10-16 01:16 - 000521728 _____ (UserBenchmark) C:\Users\doher\Downloads\UserBenchmarkInstaller.exe
2022-10-15 23:38 - 2022-10-15 23:38 - 000017679 _____ C:\Users\Rockets\Desktop\WithEdge.txt
2022-10-15 23:33 - 2022-10-15 23:38 - 000017430 _____ C:\Users\Rockets\Desktop\svchost.exe.txt
2022-10-15 23:20 - 2022-10-15 23:20 - 000036208 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
2022-10-15 23:19 - 2022-10-15 23:19 - 002839416 _____ (Sysinternals - www.sysinternals.com) C:\Users\Rockets\Desktop\procexp.exe
2022-10-15 22:56 - 2022-10-15 22:56 - 000007438 _____ C:\Users\Rockets\AppData\Local\Temp22.html
2022-10-15 22:43 - 2022-10-15 22:49 - 000001293 _____ C:\Users\Rockets\AppData\Local\Temp1.html
2022-10-15 22:42 - 2022-10-15 22:49 - 000001049 _____ C:\Users\Rockets\Desktop\SanityCheck.lnk
2022-10-15 22:42 - 2022-10-15 22:42 - 000000000 ____D C:\Program Files\SanityCheck
2022-10-15 22:42 - 2012-10-29 23:41 - 000031328 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspSanity64.sys
2022-10-15 22:29 - 2022-10-15 22:33 - 000001052 _____ C:\Users\Rockets\Desktop\WhySoSlow.lnk
2022-10-15 22:29 - 2022-10-15 22:29 - 000000000 ____D C:\Users\Rockets\AppData\Local\Resplendence
2022-10-15 22:29 - 2022-10-15 22:29 - 000000000 ____D C:\Program Files\WhySoSlow
2022-10-15 22:29 - 2016-12-17 20:59 - 000028928 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspWhy64.sys
2022-10-15 22:25 - 2022-10-15 23:06 - 000001042 _____ C:\Users\Rockets\Desktop\LatencyMon.lnk
2022-10-15 22:25 - 2022-10-15 22:25 - 000000000 ____D C:\Users\Rockets\AppData\Local\DBG
2022-10-15 22:25 - 2022-10-15 22:25 - 000000000 ____D C:\Program Files\LatencyMon
2022-10-15 22:25 - 2021-03-09 15:07 - 000027744 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspLLL64.sys
2022-10-15 22:22 - 2022-10-15 22:22 - 003622480 _____ (Resplendence Software Projects Sp. ) C:\Users\Rockets\Desktop\LatencyMon.exe
2022-10-15 22:22 - 2022-10-15 22:22 - 003040528 _____ (Resplendence Software Projects Sp. ) C:\Users\Rockets\Desktop\WhySoSlowSetup.exe
2022-10-15 22:20 - 2022-10-15 22:20 - 003124592 _____ (Resplendence Software Projects Sp. ) C:\Users\Rockets\Downloads\sanitySetup (1).exe
2022-10-15 22:20 - 2022-10-15 22:20 - 003124592 _____ (Resplendence Software Projects Sp. ) C:\Users\Rockets\Desktop\sanitySetup.exe
2022-10-15 22:00 - 2022-10-15 22:00 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\22526500.sys
2022-10-15 22:00 - 2022-10-15 22:00 - 000000000 ____D C:\ProgramData\Malwarebytes
2022-10-15 21:59 - 2022-10-15 22:16 - 000000000 ____D C:\Users\Rockets\Desktop\mbar
2022-10-15 21:59 - 2022-10-15 22:16 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2022-10-15 21:59 - 2022-10-15 21:59 - 000192952 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2022-10-15 21:58 - 2022-10-15 21:58 - 014178840 _____ (Malwarebytes Corp.) C:\Users\Rockets\Downloads\mbar-1.10.3.1001.exe
2022-10-15 21:39 - 2022-10-15 21:41 - 000009491 _____ C:\Users\Rockets\Desktop\Addition.txt
2022-10-15 21:26 - 2022-10-16 20:01 - 000006585 _____ C:\Users\Rockets\Desktop\FRST.txt
2022-10-15 21:25 - 2022-10-15 21:25 - 000000000 ____D C:\Users\Rockets\AppData\Local\Comms
2022-10-15 21:22 - 2022-10-16 20:00 - 002373632 _____ (Farbar) C:\Users\Rockets\Desktop\FRST64.exe
2022-10-15 21:11 - 2022-10-16 17:02 - 000000000 ____D C:\Users\Rockets\AppData\Local\PlaceholderTileLogoFolder
2022-10-15 21:11 - 2022-10-15 21:11 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1890784580-1000596592-3856219040-1002
2022-10-15 21:10 - 2022-10-16 17:29 - 000000000 ____D C:\Users\Rockets\AppData\Local\D3DSCache
2022-10-15 21:10 - 2022-10-15 21:11 - 000003366 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1890784580-1000596592-3856219040-1002
2022-10-15 21:10 - 2022-10-15 21:10 - 000000000 ___RD C:\Users\Rockets\OneDrive
2022-10-15 21:02 - 2022-10-16 17:08 - 000000000 ____D C:\Users\Rockets\AppData\Local\Packages
2022-10-15 21:02 - 2022-10-15 21:02 - 000000000 ___RD C:\Users\Rockets\3D Objects
2022-10-15 21:02 - 2022-10-15 21:02 - 000000000 ____D C:\Users\Rockets\AppData\Roaming\Adobe
2022-10-15 21:02 - 2022-10-15 21:02 - 000000000 ____D C:\Users\Rockets\AppData\Local\VirtualStore
2022-10-15 21:02 - 2022-10-15 21:02 - 000000000 ____D C:\Users\Rockets\AppData\Local\Publishers
2022-10-15 21:02 - 2022-10-15 21:02 - 000000000 ____D C:\Users\Rockets\AppData\Local\ConnectedDevicesPlatform
2022-10-15 20:23 - 2022-10-15 20:23 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2022-10-15 20:23 - 2022-10-15 20:23 - 000000000 ____D C:\Program Files (x86)\Realtek
2022-10-15 20:23 - 2022-08-18 10:47 - 001188672 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2022-10-15 20:22 - 2022-10-15 20:22 - 000000000 ____D C:\Users\doher\Downloads\Install_Win10_10060_08222022
2022-10-15 20:21 - 2022-10-15 20:21 - 004975146 _____ C:\Users\doher\Downloads\Install_Win10_10060_08222022.zip
2022-10-15 20:00 - 2022-10-15 20:00 - 000000000 ____D C:\Users\Rockets\AppData\Local\PeerDistRepub
2022-10-15 19:12 - 2022-10-15 21:11 - 000002375 _____ C:\Users\Rockets\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-10-15 19:12 - 2022-10-15 21:10 - 000000000 ____D C:\Users\Rockets
2022-10-15 19:12 - 2022-10-15 19:12 - 000000020 ___SH C:\Users\Rockets\ntuser.ini
2022-10-15 16:49 - 2022-10-15 16:49 - 000000000 ____D C:\Users\doher\AppData\Local\Comms
2022-10-15 16:40 - 2022-10-15 16:42 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-10-15 16:38 - 2022-10-15 18:54 - 000000000 ____D C:\Users\doher\AppData\Local\PlaceholderTileLogoFolder
2022-10-15 16:37 - 2022-10-15 19:01 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-10-15 16:34 - 2022-10-16 16:35 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1890784580-1000596592-3856219040-1001
2022-10-15 16:34 - 2022-10-16 16:35 - 000003362 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1890784580-1000596592-3856219040-1001
2022-10-15 16:33 - 2022-10-15 16:33 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-10-15 16:32 - 2022-10-15 20:02 - 000000000 ____D C:\Users\doher\AppData\Local\D3DSCache
2022-10-15 16:31 - 2022-10-15 19:05 - 000000000 ____D C:\Users\doher\AppData\Local\Packages
2022-10-15 16:31 - 2022-10-15 17:25 - 000000000 ____D C:\ProgramData\Packages
2022-10-15 16:31 - 2022-10-15 16:31 - 000000000 ____D C:\Users\doher\AppData\Roaming\Adobe
2022-10-15 16:31 - 2022-10-15 16:31 - 000000000 ____D C:\Users\doher\AppData\Local\VirtualStore
2022-10-15 16:31 - 2022-10-15 16:31 - 000000000 ____D C:\Users\doher\AppData\Local\Publishers
2022-10-15 16:30 - 2022-10-15 18:53 - 000000000 ____D C:\Users\doher\AppData\Local\ConnectedDevicesPlatform
2022-10-15 16:30 - 2022-10-15 16:30 - 000000020 ___SH C:\Users\doher\ntuser.ini
2022-10-15 08:04 - 2022-10-15 08:05 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2022-10-15 08:01 - 2022-10-15 08:01 - 000000000 ____D C:\WINDOWS\SystemTemp
2022-10-15 08:01 - 2022-10-15 08:01 - 000000000 ____D C:\ProgramData\ssh
2022-10-15 07:53 - 2022-10-15 07:53 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2022-10-15 07:53 - 2022-10-15 07:53 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2022-10-15 07:53 - 2022-10-15 07:53 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2022-10-15 07:53 - 2022-10-15 07:53 - 000479744 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2022-10-15 07:53 - 2022-10-15 07:53 - 000188928 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2022-10-15 07:53 - 2022-10-15 07:53 - 000158208 _____ C:\WINDOWS\system32\uwfcsp.dll
2022-10-15 07:53 - 2022-10-15 07:53 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll
2022-10-15 07:53 - 2022-10-15 07:53 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll
2022-10-15 07:53 - 2022-10-15 07:53 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2022-10-15 07:53 - 2022-10-15 07:53 - 000040960 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 000693248 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 000530944 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2022-10-15 07:52 - 2022-10-15 07:52 - 000470528 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2022-10-15 07:52 - 2022-10-15 07:52 - 000170496 _____ C:\WINDOWS\system32\DeviceUpdateCenterCsp.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 000152064 _____ C:\WINDOWS\system32\EsclProtocol.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2022-10-15 07:52 - 2022-10-15 07:52 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com
2022-10-15 07:52 - 2022-10-15 07:52 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2022-10-15 07:52 - 2022-10-15 07:52 - 000018944 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll
2022-10-15 07:52 - 2022-10-15 07:52 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com
2022-10-15 07:52 - 2022-10-15 07:52 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com
2022-10-15 07:52 - 2022-10-15 07:52 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com
2022-10-15 07:51 - 2022-10-15 07:51 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 002111488 _____ (Digimarc) C:\WINDOWS\SysWOW64\DMRCDecoder.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 001164288 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2022-10-15 07:51 - 2022-10-15 07:51 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000611960 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000270848 _____ C:\WINDOWS\system32\EsclScan.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2022-10-15 07:51 - 2022-10-15 07:51 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2022-10-15 07:51 - 2022-10-15 07:51 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-10-15 07:51 - 2022-10-15 07:51 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2022-10-15 07:50 - 2022-10-15 07:50 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2022-10-15 07:50 - 2022-10-15 07:50 - 000061952 _____ C:\WINDOWS\system32\printticketvalidation.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-10-15 07:50 - 2022-10-15 07:50 - 000057344 _____ C:\WINDOWS\system32\APMonUI.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2022-10-15 07:50 - 2022-10-15 07:50 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 002295296 _____ (Digimarc) C:\WINDOWS\system32\DMRCDecoder.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000706536 _____ C:\WINDOWS\system32\TextShaping.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000640512 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000413696 _____ C:\WINDOWS\system32\AzureCheck.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000272896 _____ C:\WINDOWS\system32\TpmTool.exe
2022-10-15 07:49 - 2022-10-15 07:49 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000162304 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2022-10-15 07:49 - 2022-10-15 07:49 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2022-10-15 07:49 - 2022-10-15 07:49 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000024576 _____ C:\WINDOWS\system32\WsdProviderUtil.dll
2022-10-15 07:49 - 2022-10-15 07:49 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2022-10-15 07:48 - 2022-10-15 07:48 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2022-10-15 07:48 - 2022-10-15 07:48 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2022-10-15 07:48 - 2022-10-15 07:48 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-10-15 07:48 - 2022-10-15 07:48 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2022-10-15 07:48 - 2022-10-15 07:48 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2022-10-15 07:48 - 2022-10-15 07:48 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2022-10-15 07:48 - 2022-10-15 07:48 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2022-10-15 07:48 - 2022-10-15 07:48 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2022-10-15 07:48 - 2022-10-15 07:48 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2022-10-15 07:48 - 2022-10-15 07:48 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2022-10-15 07:33 - 2022-10-15 07:33 - 000000000 ____D C:\Program Files\Reference Assemblies
2022-10-15 07:33 - 2022-10-15 07:33 - 000000000 ____D C:\Program Files\MSBuild
2022-10-15 07:33 - 2022-10-15 07:33 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2022-10-15 07:33 - 2022-10-15 07:33 - 000000000 ____D C:\Program Files (x86)\MSBuild
2022-10-15 07:29 - 2022-10-15 07:29 - 000000000 ____D C:\Program Files\Synaptics
2022-10-15 07:27 - 2022-10-15 07:27 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2022-10-15 04:25 - 2022-10-16 20:00 - 000840598 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-10-15 04:20 - 2022-10-16 19:55 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-10-15 04:20 - 2022-10-15 16:39 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-10-15 04:20 - 2022-10-15 04:20 - 000003612 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{A05DE810-272B-4EDD-A2E6-AD0A7D7AE9C4}
2022-10-15 04:20 - 2022-10-15 04:20 - 000003488 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{678C2896-E540-450C-9B4E-39C60D36D845}
2022-10-15 04:15 - 2022-10-16 16:35 - 000002385 _____ C:\Users\doher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-10-15 04:15 - 2022-10-15 16:31 - 000000000 ____D C:\Users\doher
2022-10-15 04:12 - 2022-10-15 04:12 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2022-10-15 04:12 - 2022-10-15 04:12 - 000000000 _____ C:\WINDOWS\ativpsrm.bin
2022-10-15 04:11 - 2022-10-15 04:11 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2022-10-15 04:10 - 2022-10-16 15:00 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-10-15 04:10 - 2022-10-15 04:10 - 000257824 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-10-15 03:08 - 2022-10-15 04:18 - 000000000 ___HD C:\$SysReset
2022-10-15 00:09 - 2022-10-15 08:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultiMon
2022-10-14 23:44 - 2022-10-15 08:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhySoSlow
2022-10-14 22:52 - 2022-10-14 22:52 - 000001701 _____ C:\Users\Public\Desktop\Recuva.lnk
2022-10-14 21:50 - 2022-10-15 08:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SanityCheck
2022-10-14 20:50 - 2022-10-15 22:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LatencyMon
2022-10-14 19:34 - 2022-10-14 19:34 - 000000839 _____ C:\Users\Public\Desktop\Speccy.lnk
2022-10-14 19:15 - 2022-10-15 23:44 - 000011666 _____ C:\junk.txt
2022-10-13 02:08 - 2022-10-13 02:09 - 030831256 _____ (Proton Technologies AG) C:\Users\doher\Downloads\ProtonVPN_win_v2.1.1.exe
2022-10-13 00:41 - 2022-10-13 00:41 - 000000000 _____ C:\Users\doher\whoami
2022-10-12 02:43 - 2022-09-23 04:48 - 006126344 _____ (Apple, Inc.) C:\WINDOWS\system32\usbaaplrc.dll
2022-10-12 02:43 - 2022-09-23 04:48 - 000054784 _____ (Apple, Inc.) C:\WINDOWS\system32\Drivers\usbaapl64.sys
2022-10-12 02:43 - 2022-09-14 00:33 - 000066976 _____ (Apple Inc.) C:\WINDOWS\system32\Drivers\AppleKIS.sys
2022-10-12 02:43 - 2022-09-14 00:33 - 000036744 _____ (Apple Inc.) C:\WINDOWS\system32\Drivers\AppleKISInterface.dll
2022-10-12 02:43 - 2022-09-13 06:30 - 000077720 _____ (Apple Inc.) C:\WINDOWS\system32\Drivers\AppleRSM.sys
2022-10-12 02:43 - 2022-09-13 06:30 - 000036768 _____ (Apple Inc.) C:\WINDOWS\system32\Drivers\AppleRSMInterface.dll
2022-10-12 00:37 - 2022-10-12 20:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2022-10-12 00:36 - 2022-09-23 14:59 - 000110336 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudbus.sys
2022-10-12 00:35 - 2022-10-12 00:37 - 000000000 ____D C:\Users\Public\Documents\Wondershare
2022-10-11 13:18 - 2022-10-11 13:20 - 000000000 ___HD C:\$WinREAgent
2022-10-11 05:52 - 2022-10-11 05:52 - 000000000 ____D C:\Users\Public\Desktop\CC Support
2022-10-10 02:28 - 2022-10-10 02:28 - 000000000 ___HD C:\$Windows.~WS
2022-10-09 19:29 - 2022-10-09 19:29 - 001666080 _____ (O&O Software GmbH) C:\Users\doher\Downloads\OOSU10.exe
2022-10-08 23:54 - 2022-10-08 23:54 - 000000112 ___SH C:\bootTel.dat
2022-10-08 03:32 - 2022-10-15 04:21 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-10-05 17:31 - 2022-10-16 20:01 - 000000000 ____D C:\FRST
2022-10-03 04:54 - 2022-10-03 04:55 - 000000000 ____D C:\Users\doher\AppData\LocalLow\IObit
2022-09-22 20:23 - 2022-09-22 20:23 - 000000000 ____D C:\ATTO
2022-09-22 20:22 - 2022-09-22 20:22 - 003993048 _____ (ATTO Technology, Inc.) C:\Users\doher\Downloads\win_app_benchmark_4000f2.exe
2022-09-22 02:50 - 2022-09-22 02:50 - 000000000 ____D C:\Users\doher\.wdc
2022-09-22 02:32 - 2022-09-22 02:32 - 003637651 _____ C:\Users\doher\Downloads\c01868653.pdf
2022-09-21 00:02 - 2022-09-21 00:02 - 000001024 ____H C:\SYSTAG.BIN
2022-09-20 23:05 - 2022-09-22 23:31 - 000001024 ____H C:\AMTAG.BIN
2022-09-19 10:44 - 2022-09-19 21:53 - 000000000 ____D C:\Users\doher\Downloads\aida64business675_portable
2022-09-19 10:44 - 2022-09-19 10:44 - 049661152 _____ C:\Users\doher\Downloads\aida64business675_portable.zip
2022-09-19 03:15 - 2022-09-19 03:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPatrol
2022-09-18 17:49 - 2022-10-03 08:37 - 000000000 ___HD C:\OneDriveTemp
2022-09-18 17:48 - 2022-10-16 18:01 - 000000000 ___RD C:\Users\doher\OneDrive
2022-09-18 17:44 - 2022-10-15 21:02 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-09-18 17:44 - 2022-10-15 16:31 - 000000000 ___RD C:\Users\doher\3D Objects
2022-09-18 07:41 - 2022-09-18 07:41 - 000000000 _SHDL C:\Documents and Settings
2022-09-18 07:40 - 2022-09-18 07:40 - 000000000 ____D C:\WINDOWS\CSC
2022-09-18 07:31 - 2022-10-15 04:21 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-09-18 07:26 - 2022-10-16 19:55 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-16 17:10 - 2016-03-31 02:24 - 000772104 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll
2022-09-16 17:10 - 2016-03-31 02:24 - 000622784 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2022-09-16 17:10 - 2016-03-31 02:24 - 000430256 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2022-09-16 17:10 - 2016-03-31 02:24 - 000274968 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2022-09-16 17:10 - 2016-03-31 02:24 - 000267440 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo31-1.dll
2022-09-16 17:10 - 2016-03-31 02:24 - 000052904 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel_Aux.sys
2022-09-16 17:10 - 2016-03-31 02:24 - 000052400 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF_Aux.sys

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-10-16 20:00 - 2019-12-07 05:13 - 000000000 ____D C:\WINDOWS\INF
2022-10-16 19:58 - 2019-12-07 05:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-10-16 19:55 - 2019-12-07 05:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-10-16 19:38 - 2019-12-07 05:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-10-16 17:56 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-10-16 17:56 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-10-16 17:26 - 2019-12-07 05:03 - 000000000 ____D C:\WINDOWS\servicing
2022-10-16 17:10 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-10-16 17:08 - 2019-12-07 05:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-10-16 17:08 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-10-16 01:27 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-10-15 21:18 - 2019-12-07 05:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-10-15 21:02 - 2019-12-07 05:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-10-15 16:50 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-10-15 16:38 - 2019-12-07 05:14 - 000000000 ____D C:\Program Files\Windows Defender
2022-10-15 08:07 - 2019-12-07 05:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2022-10-15 08:07 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-10-15 08:01 - 2019-12-07 05:54 - 000000000 ___SD C:\WINDOWS\system32\AppV
2022-10-15 08:01 - 2019-12-07 05:54 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2022-10-15 08:01 - 2019-12-07 05:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-10-15 08:01 - 2019-12-07 05:54 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-10-15 08:01 - 2019-12-07 05:51 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\Com
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\IME
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-10-15 08:01 - 2019-12-07 05:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2022-10-15 07:59 - 2019-12-07 05:54 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2022-10-15 07:59 - 2019-12-07 05:54 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2022-10-15 07:59 - 2019-12-07 05:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2022-10-15 07:59 - 2019-12-07 05:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2022-10-15 07:35 - 2019-12-07 05:52 - 000000000 ____D C:\WINDOWS\OCR
2022-10-15 07:32 - 2019-12-07 05:50 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2022-10-15 07:32 - 2019-12-07 05:50 - 000000000 ____D C:\WINDOWS\system32\WCN
2022-10-15 04:28 - 2019-12-07 05:14 - 000000000 ____D C:\ProgramData\USOPrivate
2022-10-15 04:27 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\spool
2022-10-15 04:27 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-10-15 04:20 - 2019-12-07 05:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2022-10-15 04:11 - 2019-12-07 05:14 - 000000000 ____D C:\WINDOWS\appcompat

==================== Files in the root of some directories ========

2022-10-15 22:43 - 2022-10-15 22:49 - 000001293 _____ () C:\Users\Rockets\AppData\Local\Temp1.html
2022-10-15 22:56 - 2022-10-15 22:56 - 000007438 _____ () C:\Users\Rockets\AppData\Local\Temp22.html

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


  • 0

#37
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-10-2022
Ran by Rockets (16-10-2022 20:06:12)
Running from C:\Users\Rockets\Desktop
Microsoft Windows 10 Pro Version 21H2 19044.2130 (X64) (2022-10-15 08:27:49)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1890784580-1000596592-3856219040-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1890784580-1000596592-3856219040-503 - Limited - Disabled)
doher (S-1-5-21-1890784580-1000596592-3856219040-1001 - Limited - Enabled) => C:\Users\doher
Guest (S-1-5-21-1890784580-1000596592-3856219040-501 - Limited - Disabled)
Rockets (S-1-5-21-1890784580-1000596592-3856219040-1002 - Administrator - Enabled) => C:\Users\Rockets
WDAGUtilityAccount (S-1-5-21-1890784580-1000596592-3856219040-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

LatencyMon 7.20 (HKLM\...\LatencyMon_is1) (Version: 7.20 - Resplendence Software Projects Sp.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 106.0.1370.47 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 106.0.1370.47 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1890784580-1000596592-3856219040-1001\...\OneDriveSetup.exe) (Version: 22.196.0918.0001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1890784580-1000596592-3856219040-1002\...\OneDriveSetup.exe) (Version: 21.220.1024.0005 - Microsoft Corporation)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.60.615.2022 - Realtek)
SanityCheck 3.52 (HKLM\...\SanityCheck_is1) (Version: 3.52 - Resplendence Software Projects Sp.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.98 - Synaptics Incorporated)
WhySoSlow 1.61 (HKLM\...\WhySoSlowHome_is1) (Version:  - Resplendence Software Projects Sp.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 05:14 - 2019-12-07 05:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1890784580-1000596592-3856219040-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\doher\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
HKU\S-1-5-21-1890784580-1000596592-3856219040-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-1890784580-1000596592-3856219040-1002\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_BB504241F5FCEF66E4DB313E9A525FF8"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{225F579C-6AAD-403A-84D4-CFC42938F43F}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\106.0.1370.47\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

15-10-2022 16:42:45 Windows Modules Installer
15-10-2022 19:18:06 Newresetsettingsmodified

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================

System errors:
=============

==================== Memory info ===========================

BIOS: Hewlett-Packard F.15 05/17/2010
Motherboard: Hewlett-Packard 363F
Processor: AMD Athlon™ II Dual-Core M300
Percentage of memory in use: 40%
Total physical RAM: 7932.2 MB
Available physical RAM: 4688.15 MB
Total Virtual: 9852.2 MB
Available Virtual: 6840.68 MB

==================== Drives ================================

Drive c: (C ) (Fixed) (Total:444.36 GB) (Free:377.79 GB) (Model: WD Blue SA510 2.5 500GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: (ESD-USB (D:)) (Removable) (Total:28.65 GB) (Free:17.08 GB) NTFS
Drive f: (RECOVERY) (Fixed) (Total:21.1 GB) (Free:9.64 GB) (Model: WD Blue SA510 2.5 500GB) NTFS ==>[system with boot components (obtained from drive)]
Drive g: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.06 GB) (Model: WD Blue SA510 2.5 500GB) FAT32

\\?\Volume{7dda13fc-0000-0000-0000-100000000000}\ (SYSTEM) (Fixed) (Total:0.19 GB) (Free:0.16 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 7DDA13FC)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=444.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=21.1 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=108 MB) - (Type=0C)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 28.7 GB) (Disk ID: 9A17DA42)
Partition 1: (Not Active) - (Size=28.7 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================


  • 0

#38
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

ProcessExplorerData

 

Process CPU Private Bytes Working Set PID Description Company Name Verified Signer User Name Path VirusTotal
System Idle Process 77.27 60 K 8 K 0 NT AUTHORITY\SYSTEM
procexp64.exe 12.88 63,056 K 98,472 K 3284 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation HAL900\Rockets C:\Users\Rockets\AppData\Local\Temp\procexp64.exe
MsMpEng.exe 3.03 236,544 K 186,048 K 3600 Antimalware Service Executable Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe
System 1.52 260 K 28,384 K 4 NT AUTHORITY\SYSTEM
SynTPEnh.exe 1.52 4,928 K 20,676 K 1492 Synaptics TouchPad 64-bit Enhancements Synaptics Incorporated (Verified) Synaptics Incorporated HAL900\Rockets C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
Interrupts 1.52 0 K 0 K n/a Hardware Interrupts and DPCs
dwm.exe 1.52 56,304 K 67,828 K 428 Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows Window Manager\DWM-1 C:\Windows\System32\dwm.exe
explorer.exe 0.76 65,532 K 144,852 K 4808 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\explorer.exe
csrss.exe < 0.01 9,272 K 5,644 K 596 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\csrss.exe
ctfmon.exe < 0.01 3,976 K 20,524 K 4492 CTF Loader Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\ctfmon.exe
svchost.exe < 0.01 2,172 K 8,992 K 2020 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
lsass.exe < 0.01 6,612 K 19,400 K 664 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\lsass.exe
TextInputHost.exe < 0.01 13,712 K 47,624 K 2252 Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe
svchost.exe < 0.01 9,432 K 26,032 K 808 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe < 0.01 4,112 K 16,832 K 4532 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe < 0.01 2,968 K 17,456 K 5104 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher HAL900\Rockets C:\Windows\System32\svchost.exe
svchost.exe < 0.01 20,288 K 26,732 K 3380 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe < 0.01 1,680 K 7,564 K 2464 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe < 0.01 2,448 K 9,664 K 1388 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe < 0.01 1,492 K 6,212 K 1092 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe < 0.01 5,372 K 18,488 K 2940 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
csrss.exe < 0.01 1,828 K 5,424 K 480 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\csrss.exe
svchost.exe < 0.01 3,400 K 13,132 K 3752 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
WUDFHost.exe 1,904 K 8,628 K 1920 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\WUDFHost.exe
WmiPrvSE.exe 2,412 K 9,580 K 6632 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\SYSTEM C:\Windows\System32\wbem\WmiPrvSE.exe
winlogon.exe 2,616 K 12,440 K 800 Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\SYSTEM C:\Windows\System32\winlogon.exe
wininit.exe 1,348 K 7,160 K 588 Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\wininit.exe
taskhostw.exe 5,848 K 16,440 K 4248 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\taskhostw.exe
SynTPHelper.exe 1,072 K 5,104 K 4656 Synaptics Pointing Device Helper Synaptics Incorporated (Verified) Synaptics Incorporated HAL900\Rockets C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE
SynTPEnhService.exe 1,152 K 4,944 K 3504 64-bit Synaptics Pointing Enhance Service Synaptics Incorporated (Verified) Microsoft Windows Hardware Compatibility Publisher NT AUTHORITY\SYSTEM C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
svchost.exe 2,152 K 8,164 K 396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 5,820 K 12,760 K 984 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
svchost.exe 4,924 K 15,760 K 4664 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 4,144 K 11,888 K 1936 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,968 K 7,884 K 2040 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,776 K 8,208 K 4396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,868 K 6,216 K 4420 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 3,116 K 14,952 K 584 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 3,940 K 15,932 K 6036 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,804 K 8,644 K 4168 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 7,296 K 32,424 K 1348 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher HAL900\Rockets C:\Windows\System32\svchost.exe
svchost.exe 3,944 K 17,316 K 1244 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher HAL900\Rockets C:\Windows\System32\svchost.exe
svchost.exe 7,168 K 15,784 K 1696 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 3,216 K 13,896 K 2600 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 10,604 K 20,600 K 3412 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,628 K 11,608 K 6904 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,696 K 11,916 K 5856 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,344 K 5,540 K 1044 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,796 K 8,344 K 1100 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,332 K 10,476 K 1108 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 5,816 K 15,564 K 1216 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 3,172 K 14,040 K 1248 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 3,136 K 9,320 K 1276 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 14,656 K 18,316 K 1396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,432 K 7,312 K 1408 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 3,732 K 8,000 K 1588 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,092 K 7,648 K 1688 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,300 K 5,996 K 1040 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,752 K 9,556 K 2088 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,848 K 8,432 K 2096 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,716 K 7,428 K 2176 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,880 K 8,160 K 2232 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,356 K 11,888 K 2284 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,032 K 8,816 K 2404 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,804 K 8,412 K 2556 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,648 K 6,892 K 2740 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,444 K 10,240 K 2760 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,084 K 12,688 K 2996 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 10,100 K 19,328 K 2584 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,980 K 8,380 K 3080 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
svchost.exe 1,260 K 5,960 K 3320 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,784 K 10,684 K 3352 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\NETWORK SERVICE C:\Windows\System32\svchost.exe
svchost.exe 14,864 K 31,268 K 3372 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,644 K 8,264 K 3396 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,620 K 6,984 K 3492 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,356 K 9,464 K 3532 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,268 K 5,840 K 3540 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 4,260 K 19,900 K 3552 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,760 K 11,012 K 3660 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,300 K 5,656 K 3704 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,184 K 8,964 K 5132 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,556 K 11,860 K 6564 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 2,468 K 10,528 K 1968 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,756 K 12,636 K 6380 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher HAL900\Rockets C:\Windows\System32\svchost.exe
svchost.exe 1,896 K 7,944 K 4768 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 2,564 K 12,820 K 4696 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
svchost.exe 1,580 K 10,980 K 6136 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\svchost.exe
svchost.exe 3,532 K 11,636 K 5552 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\svchost.exe
StartMenuExperienceHost.exe 25,388 K 73,712 K 2616 (Verified) Microsoft Windows HAL900\Rockets C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
spoolsv.exe 5,024 K 15,476 K 3052 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\SYSTEM C:\Windows\System32\spoolsv.exe
smss.exe 1,064 K 1,212 K 368 Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\smss.exe
smartscreen.exe 7,868 K 23,436 K 6344 Windows Defender SmartScreen Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\smartscreen.exe
sihost.exe 5,316 K 26,080 K 1120 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\sihost.exe
ShellExperienceHost.exe Suspended 16,432 K 55,960 K 2416 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
SgrmBroker.exe 3,892 K 7,440 K 7136 System Guard Runtime Monitor Broker Service Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\SgrmBroker.exe
services.exe 4,764 K 10,108 K 656 Services and Controller app Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\services.exe
SecurityHealthSystray.exe 1,864 K 13,232 K 5892 Windows Security notification icon Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\SecurityHealthSystray.exe
SecurityHealthService.exe 4,852 K 17,224 K 5716 Windows Security Health Service Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\SecurityHealthService.exe
SearchIndexer.exe 22,332 K 27,552 K 6120 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\SYSTEM C:\Windows\System32\SearchIndexer.exe
SearchApp.exe Suspended 92,192 K 168,456 K 5280 Search application Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
RuntimeBroker.exe 7,192 K 28,072 K 5396 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker.exe 4,348 K 27,928 K 5052 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker.exe 3,164 K 16,368 K 6076 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\RuntimeBroker.exe
RuntimeBroker.exe 2,828 K 18,540 K 6804 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\RuntimeBroker.exe
Registry 2,112 K 75,588 K 92 NT AUTHORITY\SYSTEM [A device attached to the system is not functioning.]
procexp.exe 7,796 K 13,572 K 6548 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation HAL900\Rockets C:\Users\Rockets\Desktop\procexp.exe
OneDrive.exe 23,748 K 88,380 K 1324 Microsoft OneDrive Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Users\Rockets\AppData\Local\Microsoft\OneDrive\OneDrive.exe
NisSrv.exe 3,744 K 11,424 K 2904 Microsoft Network Realtime Inspection Service Microsoft Corporation (Verified) Microsoft Windows Publisher NT AUTHORITY\LOCAL SERVICE C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe
Microsoft.SharePoint.exe 7,412 K 27,788 K 6884 Microsoft SharePoint Microsoft Corporation (Verified) Microsoft Corporation HAL900\Rockets C:\Users\Rockets\AppData\Local\Microsoft\OneDrive\22.196.0918.0001\Microsoft.SharePoint.exe
fontdrvhost.exe 3,392 K 9,020 K 908 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows Font Driver Host\UMFD-1 C:\Windows\System32\fontdrvhost.exe
fontdrvhost.exe 1,280 K 3,976 K 844 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows Font Driver Host\UMFD-0 C:\Windows\System32\fontdrvhost.exe
audiodg.exe 6,416 K 11,992 K 1336 Windows Audio Device Graph Isolation Microsoft Corporation (Verified) Microsoft Windows NT AUTHORITY\LOCAL SERVICE C:\Windows\System32\audiodg.exe
atiesrxx.exe 1,120 K 4,984 K 1860 AMD External Events Service Module AMD (Verified) Microsoft Windows Hardware Compatibility Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\atiesrxx.exe
atieclxx.exe 2,276 K 9,528 K 1988 AMD External Events Client Module AMD (Verified) Microsoft Windows Hardware Compatibility Publisher NT AUTHORITY\SYSTEM C:\Windows\System32\atieclxx.exe
ApplicationFrameHost.exe 3,816 K 23,916 K 860 Application Frame Host Microsoft Corporation (Verified) Microsoft Windows HAL900\Rockets C:\Windows\System32\ApplicationFrameHost.exe


  • 0

#39
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

Userbenchmark does not open with the Software window after the installer closes, I get this page with Welcome & click to start the test & no results afterwards?

 

.

 

 

Don't know why this option page does not open to start the test?

 

 

FDDWelcome.png


  • 0

#40
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,650 posts
  • MVP

I went to https://www.userbenchmark.com/and hit the Free Download button then once the file was downloaded I went to the folder and right clicked and selected Run as Admin.  After the file was installed it brought up a screen that said Welcome to Userbenchmark then Click to Launch Benchmark.  The screen you posted looks like it's from an older version.  Try uninstalling UserBenchmark then try again.  Best to install with Run As Admin.

 

Process Explorer is now showing info from Microsoft files so Run As Admin helped.  I don't like:

Interrupts 1.52 0 K 0 K n/a Hardware Interrupts and DPCs

When interrupts > about 1.4 it usually indicates a bad driver.  The fact that YouTube eats so much CPU, points toward the graphics driver.  

 

Bring up a YouTube video and then while it is running run Latency Monitor and Process Explorer.  That should show us which driver is acting up but I'm going to assume it's the graphics driver.

 

There doesn't seem to be a Win 10 version for your ATI Mobility Radeon HD 4200 series but some people claim the Win 8 64 bit version will work since Win 10 is just an updated Win 8.:

https://www.amd.com/...-radeon-hd-4200

Just save the file and go to the folder then Right Click and  Run As Admin.

 

If you are able to get the driver to install then try bringing up YouTube and run Latency Monitor again.


  • 0

Advertisements


#41
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

HP G61 Notebook PC Performance Results - UserBenchmark


  • 0

#42
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

CONCLUSION
_________________________________________________________________________________________________________
Your system appears to be suitable for handling real-time audio and other tasks without dropouts.
LatencyMon has been analyzing your system for  0:00:47  (h:mm:ss) on all processors.


_________________________________________________________________________________________________________
SYSTEM INFORMATION
_________________________________________________________________________________________________________
Computer name:                                        HAL900
OS version:                                           Windows 10, 10.0, version 2009, build: 19044 (x64)
Hardware:                                             HP G61 Notebook PC, Hewlett-Packard
BIOS:                                                 Default System BIOS
CPU:                                                  AuthenticAMD AMD Athlon™ II Dual-Core M300
Logical processors:                                   2
Processor groups:                                     1
Processor group size:                                 2
RAM:                                                  7932 MB total


_________________________________________________________________________________________________________
CPU SPEED
_________________________________________________________________________________________________________
Reported CPU speed (WMI):                             20 MHz
Reported CPU speed (registry):                        1995 MHz

Note: reported execution times may be calculated based on a fixed reported CPU speed. Disable variable speed settings like Intel Speed Step and AMD Cool N Quiet in the BIOS setup for more accurate results.


_________________________________________________________________________________________________________
MEASURED INTERRUPT TO USER PROCESS LATENCIES
_________________________________________________________________________________________________________
The interrupt to process latency reflects the measured interval that a usermode process needed to respond to a hardware request from the moment the interrupt service routine started execution. This includes the scheduling and execution of a DPC routine, the signaling of an event and the waking up of a usermode thread from an idle wait state in response to that event.

Highest measured interrupt to process latency (µs):   217.60
Average measured interrupt to process latency (µs):   8.410650

Highest measured interrupt to DPC latency (µs):       213.40
Average measured interrupt to DPC latency (µs):       2.893539


_________________________________________________________________________________________________________
 REPORTED ISRs
_________________________________________________________________________________________________________
Interrupt service routines are routines installed by the OS and device drivers that execute in response to a hardware interrupt signal.

Highest ISR routine execution time (µs):              67.917293
Driver with highest ISR routine execution time:       storport.sys - Microsoft Storage Port Driver, Microsoft Corporation

Highest reported total ISR routine time (%):          0.100480
Driver with highest ISR total time:                   i8042prt.sys - i8042 Port Driver, Microsoft Corporation

Total time spent in ISRs (%)                          0.236911

ISR count (execution time <250 µs):                   25232
ISR count (execution time 250-500 µs):                0
ISR count (execution time 500-1000 µs):               0
ISR count (execution time 1000-2000 µs):              0
ISR count (execution time 2000-4000 µs):              0
ISR count (execution time >=4000 µs):                 0


_________________________________________________________________________________________________________
REPORTED DPCs
_________________________________________________________________________________________________________
DPC routines are part of the interrupt servicing dispatch mechanism and disable the possibility for a process to utilize the CPU while it is interrupted until the DPC has finished execution.

Highest DPC routine execution time (µs):              901.051629
Driver with highest DPC routine execution time:       ntoskrnl.exe - NT Kernel & System, Microsoft Corporation

Highest reported total DPC routine time (%):          0.181195
Driver with highest DPC total execution time:         dxgkrnl.sys - DirectX Graphics Kernel, Microsoft Corporation

Total time spent in DPCs (%)                          0.492455

DPC count (execution time <250 µs):                   49674
DPC count (execution time 250-500 µs):                0
DPC count (execution time 500-10000 µs):              6
DPC count (execution time 1000-2000 µs):              0
DPC count (execution time 2000-4000 µs):              0
DPC count (execution time >=4000 µs):                 0


_________________________________________________________________________________________________________
 REPORTED HARD PAGEFAULTS
_________________________________________________________________________________________________________
Hard pagefaults are events that get triggered by making use of virtual memory that is not resident in RAM but backed by a memory mapped file on disk. The process of resolving the hard pagefault requires reading in the memory from disk while the process is interrupted and blocked from execution.

NOTE: some processes were hit by hard pagefaults. If these were programs producing audio, they are likely to interrupt the audio stream resulting in dropouts, clicks and pops. Check the Processes tab to see which programs were hit.

Process with highest pagefault count:                 latmon.exe

Total number of hard pagefaults                       6
Hard pagefault count of hardest hit process:          2
Number of processes hit:                              5


_________________________________________________________________________________________________________
 PER CPU DATA
_________________________________________________________________________________________________________
CPU 0 Interrupt cycle time (s):                       2.008641
CPU 0 ISR highest execution time (µs):                67.917293
CPU 0 ISR total execution time (s):                   0.209623
CPU 0 ISR count:                                      21476
CPU 0 DPC highest execution time (µs):                901.051629
CPU 0 DPC total execution time (s):                   0.409323
CPU 0 DPC count:                                      45925
_________________________________________________________________________________________________________
CPU 1 Interrupt cycle time (s):                       0.454726
CPU 1 ISR highest execution time (µs):                13.860150
CPU 1 ISR total execution time (s):                   0.014627
CPU 1 ISR count:                                      3756
CPU 1 DPC highest execution time (µs):                111.213534
CPU 1 DPC total execution time (s):                   0.056815
CPU 1 DPC count:                                      3755
_________________________________________________________________________________________________________


  • 0

#43
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

Latencymonitorprocesswithedge&Utube.jpeg


  • 0

#44
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

Latencymonitordriverswithedge&Utube.jpeg


  • 0

#45
ForrestGump

ForrestGump

    Member

  • Topic Starter
  • Member
  • PipPip
  • 91 posts

Attached File  Processexplorer.txt   27.03KB   181 downloads


  • 0






Similar Topics


Also tagged with one or more of these keywords: Virus

4 user(s) are reading this topic

0 members, 4 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP