Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Very Slow System- Painfully Slow at start up


  • Please log in to reply

#31
Steviep

Steviep

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 420 posts

Hi Again,

 

I have now unchecked the box in device manager- sorry. I've changed the  StreamingFSD.inf file to .txt- see the screenshot and I cant see an Uninstall file

 

Attached Thumbnails

  • Streaming FSD 2024-05-14 220613.jpg

  • 0

Advertisements


#32
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,730 posts
  • MVP

Please attach the StreamingFSD.txt file  The inf file tells Windows how to install the driver.  If I have that info I can safely uninstall the program.


  • 0

#33
Steviep

Steviep

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 420 posts

Sorry again, StreamingFSD.txt attached

Attached Files


  • 0

#34
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,730 posts
  • MVP

OK.  Think I have enough info now.  Download the Attached fixlist.txt file

Attached File  fixlist.txt   3.44KB   35 downloads

to the same folder as FRST64.  Start up FRST64 by right clicking and Run As Admin.  Hit the Fix button.  Will take a few minutes and then it will reboot.  You should get one file.  Please post. 

 

Also run VEW as before and post the log.'

 

The fix should remove all traces of Jukebox and not hurt anything but I have set a Restore Point so you can back out if something goes wrong and it acts up afterward.


  • 0

#35
Steviep

Steviep

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 420 posts
Fix result of Farbar Recovery Scan Tool (x64) Version: 19.04.2024 01
Ran by steven (15-05-2024 16:10:38) Run:4
Running from C:\Users\steve\Desktop
Loaded Profiles: steven
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
CreateRestorePoint:
C:\Windows\System32\DRVSTORE\StreamingF_2BF2479F2B2088DAC9DFEEBA5F623A91F93E9426
C:\Windows\System32\drivers\StreamingFSD.sys
C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\StreamingFSD.cat
C:\Program Files\Numecent
DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\C7BF6F322E1CB194191A40145D91B17C|"StreamingFSD_x64
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DIFx\DriverStore\StreamingF_2BF2479F2B2088DAC9DFEEBA5F623A91F93E9426]
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DIFx\Services\StreamingFSD
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DIFxApp\Components\{660804F7-2E5A-4EB1-8B89-1FB1BC1D588F}
DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders|"C:\Program Files\Numecent\Application Jukebox Player\StreamingFSD\"
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7F408066A5E21BE4B898F11BCBD185F8
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C7BF6F322E1CB194191A40145D91B17C
DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|"C:\Program Files\Numecent\Application Jukebox Player\StreamingFSD\StreamingFSD.inf"
DeleteKey: HKEY_LOCAL_MACHINE\SYSTEM\Setup\FirstBoot\Services\StreamingFSD
DeleteKey: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\StreamingFSD
S4 StreamingCore; C:\Program Files\Numecent\Application Jukebox Player\StreamingCore.exe [6788416 2018-01-05] (Numecent, Inc. -> Numecent, Inc.)
CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i"
Reboot:
 
 
*****************
 
Restore point was successfully created.
 
"C:\Windows\System32\DRVSTORE\StreamingF_2BF2479F2B2088DAC9DFEEBA5F623A91F93E9426" Folder move:
 
C:\Windows\System32\DRVSTORE\StreamingF_2BF2479F2B2088DAC9DFEEBA5F623A91F93E9426 => moved successfully
C:\Windows\System32\drivers\StreamingFSD.sys => moved successfully
C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\StreamingFSD.cat => moved successfully
 
"C:\Program Files\Numecent" Folder move:
 
C:\Program Files\Numecent => moved successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\C7BF6F322E1CB194191A40145D91B17C\\"StreamingFSD_x64" => not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DIFx\DriverStore\StreamingF_2BF2479F2B2088DAC9DFEEBA5F623A91F93E9426 => removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DIFx\Services\StreamingFSD => removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DIFxApp\Components\{660804F7-2E5A-4EB1-8B89-1FB1BC1D588F} => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\"C:\Program Files\Numecent\Application Jukebox Player\StreamingFSD\"" => not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7F408066A5E21BE4B898F11BCBD185F8 => removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C7BF6F322E1CB194191A40145D91B17C => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\\"C:\Program Files\Numecent\Application Jukebox Player\StreamingFSD\StreamingFSD.inf"" => not found
HKEY_LOCAL_MACHINE\SYSTEM\Setup\FirstBoot\Services\StreamingFSD => removed successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\StreamingFSD => removed successfully
HKLM\System\CurrentControlSet\Services\StreamingCore => removed successfully
StreamingCore => service removed successfully
 
========= FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" =========
 
 
C:\Users\steve\Desktop>wevtutil cl "AMSI/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "AMSI/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "AirSpaceChannel" 
 
C:\Users\steve\Desktop>wevtutil cl "Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Application" 
 
C:\Users\steve\Desktop>wevtutil cl "DirectShowFilterGraph" 
 
C:\Users\steve\Desktop>wevtutil cl "DirectShowPluginControl" 
 
C:\Users\steve\Desktop>wevtutil cl "Els_Hyphenation/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "EndpointMapper" 
 
C:\Users\steve\Desktop>wevtutil cl "FirstUXPerf-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "ForwardedEvents" 
 
C:\Users\steve\Desktop>wevtutil cl "General Logging" 
 
C:\Users\steve\Desktop>wevtutil cl "HardwareEvents" 
 
C:\Users\steve\Desktop>wevtutil cl "IHM_DebugChannel" 
 
C:\Users\steve\Desktop>wevtutil cl "Intel-SST-CFD-HDA/IntelSST" 
 
C:\Users\steve\Desktop>wevtutil cl "Intel-iaLPSS-GPIO/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Intel-iaLPSS-I2C/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Intel-iaLPSS2-GPIO2/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Intel-iaLPSS2-GPIO2/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Intel-iaLPSS2-I2C/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Intel-iaLPSS2-I2C/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Internet Explorer" 
 
C:\Users\steve\Desktop>wevtutil cl "Key Management Service" 
 
C:\Users\steve\Desktop>wevtutil cl "MF_MediaFoundationDeviceMFT" 
 
C:\Users\steve\Desktop>wevtutil cl "MF_MediaFoundationDeviceProxy" 
 
C:\Users\steve\Desktop>wevtutil cl "MF_MediaFoundationFrameServer" 
 
C:\Users\steve\Desktop>wevtutil cl "MedaFoundationVideoProc" 
 
C:\Users\steve\Desktop>wevtutil cl "MedaFoundationVideoProcD3D" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationAsyncWrapper" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationContentProtection" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationDS" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationDeviceProxy" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationMP4" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationMediaEngine" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationPerformance" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationPerformanceCore" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationPipeline" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationPlatform" 
 
C:\Users\steve\Desktop>wevtutil cl "MediaFoundationSrcPrefetch" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Client-Licensing-Platform/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Client-Licensing-Platform/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Client-Licensing-Platform/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-IE/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-IEFRAME/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-JSDumpHeap/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-OneCore-Setup/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-PerfTrack-IEFRAME/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-PerfTrack-MSHTML/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-System-Diagnostics-DiagnosticInvoker/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AAD/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AAD/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ADSI/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ASN1/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ATAPort/General" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ATAPort/SATA-LPM" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ActionQueue/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-All-User-Install-Agent/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AllJoyn/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AllJoyn/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppHost/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppHost/ApplicationTracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppHost/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppHost/Internal" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppID/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppLocker/EXE and DLL" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppLocker/MSI and Script" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppLocker/Packaged app-Deployment" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppLocker/Packaged app-Execution" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppModel-Runtime/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppModel-Runtime/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppModel-Runtime/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppModel-Runtime/Diagnostics" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppModel-State/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppModel-State/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppReadiness/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppReadiness/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppReadiness/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppSruProv" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppXDeployment-Server/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppXDeployment/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppXDeployment/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppXDeploymentServer/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppXDeploymentServer/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppXDeploymentServer/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppXDeploymentServer/Restricted" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ApplicabilityEngine/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ApplicabilityEngine/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application Server-Applications/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application Server-Applications/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application Server-Applications/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application Server-Applications/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Compatibility-Infrastructure-Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Compatibility-Assistant" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Compatibility-Assistant/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Compatibility-Assistant/Trace" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Compatibility-Troubleshooter" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Inventory" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Program-Telemetry" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Application-Experience/Steps-Recorder" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ApplicationResourceManagementSystem/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ApplicationResourceManagementSystem/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppxPackaging/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppxPackaging/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AppxPackaging/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AsynchronousCausality/Causality" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Audio/CaptureMonitor" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Audio/GlitchDetection" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Audio/Informational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Audio/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Audio/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Audio/PlaybackManager" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Audit/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Authentication User Interface/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Authentication/AuthenticationPolicyFailures-DomainController" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Authentication/ProtectedUser-Client" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Authentication/ProtectedUserFailures-DomainController" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Authentication/ProtectedUserSuccesses-DomainController" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-AxInstallService/Log" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BTH-BTHPORT/HCI" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BTH-BTHPORT/L2CAP" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BTH-BTHUSB/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BTH-BTHUSB/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BackgroundTaskInfrastructure/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BackgroundTaskInfrastructure/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BackgroundTransfer-ContentPrefetcher/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Backup" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Base-Filtering-Engine-Connections/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Base-Filtering-Engine-Resource-Flows/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Battery/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Biometrics/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Biometrics/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BitLocker-Driver-Performance/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BitLocker/BitLocker Management" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BitLocker/BitLocker Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-BitLocker/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Bits-Client/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Bits-Client/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Bluetooth-BthLEEnum/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Bluetooth-BthLEPrepairing/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Bluetooth-Bthmini/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Bluetooth-MTPEnum/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Bluetooth-Policy/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CAPI2/Catalog Database Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CAPI2/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CDROM/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COM/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COM/ApartmentInitialize" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COM/ApartmentUninitialize" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COM/Call" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COM/CreateInstance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COM/ExtensionCatalog" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COM/FreeUnusedLibrary" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COM/RundownInstrumentation" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COMRuntime/Activations" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COMRuntime/MessageProcessing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-COMRuntime/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CertPoleEng/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CertificateServicesClient-CredentialRoaming/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CertificateServicesClient-Lifecycle-System/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CertificateServicesClient-Lifecycle-User/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Cleanmgr/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ClearTypeTextTuner/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CloudRestoreLauncher/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CloudStorageWizard/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CloudStorageWizard/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CloudStore/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CloudStore/Initialization" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CloudStore/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CmiSetup/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CodeIntegrity/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CodeIntegrity/Verbose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ComDlg32/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ComDlg32/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Compat-Appraiser/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Compat-Appraiser/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Containers-BindFlt/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Containers-BindFlt/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Containers-Wcifs/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Containers-Wcifs/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Containers-Wcnfs/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Containers-Wcnfs/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CoreApplication/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CoreApplication/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CoreApplication/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CoreSystem-SmsRouter-Events/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CoreSystem-SmsRouter-Events/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CoreWindow/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CoreWindow/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CorruptedFileRecovery-Client/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CorruptedFileRecovery-Server/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crashdump/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crashdump/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-CredUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-BCRYPT/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-CNG/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-DPAPI/BackUpKeySvc" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-DPAPI/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-DPAPI/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-DSSEnh/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-NCrypt/CertInUse" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-NCrypt/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-RNG/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Crypto-RSAEnh/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-D3D10Level9/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-D3D10Level9/PerfTiming" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DAL-Provider/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DAL-Provider/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DAMM/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DCLocator/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DDisplay/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DDisplay/Logging" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DLNA-Namespace/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DNS-Client/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DSC/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DSC/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DSC/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DSC/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DUSER/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DXGI/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DXGI/Logging" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DXP/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Data-Pdf/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DataIntegrityScan/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DataIntegrityScan/CrashRecovery" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DateTimeControlPanel/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DateTimeControlPanel/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DateTimeControlPanel/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Defrag-Core/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Deplorch/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DesktopActivityModerator/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DesktopWindowManager-Diag/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceAssociationService/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceConfidence/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceGuard/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceGuard/Verbose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider/Autopilot" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceSetupManager/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceSetupManager/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceSetupManager/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceSetupManager/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceSync/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceSync/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceUpdateAgent/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceUx/Informational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DeviceUx/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Devices-Background/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Devices-Query/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dhcp-Client/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dhcp-Client/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dhcpv6-Client/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dhcpv6-Client/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DiagCpl/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-AdvancedTaskManager/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-DPS/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-DPS/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-DPS/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-MSDE/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PCW/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PCW/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PCW/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PLA/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-PLA/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Perfhost/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scheduled/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scripted/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scripted/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scripted/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-Scripted/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-ScriptedDiagnosticsProvider/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-ScriptedDiagnosticsProvider/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-WDC/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnosis-WDI/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Networking/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Networking/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-PerfTrack-Counters/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-PerfTrack/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Performance/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Performance/Diagnostic/Loopback" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Diagnostics-Performance/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3D10/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3D10_1/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3D11/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3D11/Logging" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3D11/PerfTiming" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3D12/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3D12/Logging" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3D12/PerfTiming" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3D9/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Direct3DShaderCache/Default" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DirectComposition/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DirectManipulation/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DirectShow-KernelSupport/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DirectSound/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Disk/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DiskDiagnostic/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DiskDiagnosticDataCollector/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DiskDiagnosticResolver/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dism-Api/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dism-Api/ExternalAnalytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dism-Api/InternalAnalytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dism-Cli/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DisplayColorCalibration/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DisplayColorCalibration/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DisplaySwitch/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Documents/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dot3MM/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DriverFrameworks-UserMode/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dwm-API/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dwm-Compositor/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dwm-Core/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dwm-Dwm/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dwm-Redir/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Dwm-Udwm/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl-Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl-Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl-SysMm/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl-SysMm/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl/Contention" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DxgKrnl/Power" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-DxpTaskSyncProvider/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EDP-Application-Learning/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EDP-Audit-Regular/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EDP-Audit-TCB/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EFS/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EFS/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ESE/IODiagnose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ESE/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EapHost/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EapHost/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EapHost/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EapMethods-RasChap/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EapMethods-RasTls/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EapMethods-Sim/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EapMethods-Ttls/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EaseOfAccess/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Energy-Estimation-Engine/EventLog" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Energy-Estimation-Engine/Trace" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EnhancedStorage-EhStorClass/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EnhancedStorage-EhStorTcgDrv/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EventCollector/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EventCollector/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EventLog-WMIProvider/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EventLog/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-EventLog/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FMS/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FMS/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FMS/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FailoverClustering-Client/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Fault-Tolerant-Heap/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FeatureConfiguration/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FeatureConfiguration/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Feedback-Service-TriggerProvider" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Catalog/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Catalog/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-ConfigManager/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-ConfigManager/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Core/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Core/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Core/WHC" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Engine/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Engine/BackupLog" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Engine/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-EventListener/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-EventListener/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Service/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-Service/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-UI-Events/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileHistory-UI-Events/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FileInfoMinifilter/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Firewall-CPL/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Folder Redirection/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-FontGroups/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Forwarding/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Forwarding/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-GPIO-ClassExtension/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-GenericRoaming/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-GroupPolicy/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HAL/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HealthCenter/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HealthCenter/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HealthCenterCPL/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HelloForBusiness/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HelloForBusiness/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Help/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Control Panel Performance/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Control Panel/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Listener Service/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Provider Service Performance/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup Provider Service/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HomeGroup-ListenerService" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Host-Network-Service-Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Host-Network-Service-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Host-Network-Service-Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HotspotAuth/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HotspotAuth/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HttpService/Log" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-HttpService/Trace" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Compute-Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Compute-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Compute-Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Diagnose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Guest-Drivers/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Hypervisor-Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Hypervisor-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Hypervisor-Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-KMCL-Child/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-KMCL/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-NETVSC/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-StorageVSP-Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-StorageVSP-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-VID-Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-VID-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-VfpExt-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-VmSwitch-Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-VmSwitch-Diagnostic-Traffic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-VmSwitch-Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Worker-Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Worker-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Worker-Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Hyper-V-Worker-VDev-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IE-SmartScreen" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IKE/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IKEDBG/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-Broker/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-CandidateUI/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-CustomerFeedbackManager/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-CustomerFeedbackManagerUI/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-JPAPI/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-JPLMP/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-JPPRED/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-JPSetting/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-JPTIP/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-KRAPI/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-KRTIP/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-OEDCompiler/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-TCCORE/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-TCTIP/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IME-TIP/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IPNAT/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IPSEC-SRV/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IPxlatCfg/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IPxlatCfg/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IdCtrls/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IdCtrls/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-IndirectDisplays-ClassExtension-Events/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Input-HIDCLASS-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-InputSwitch/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-International-RegionalOptionsControlPanel/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-International/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Iphlpsvc/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Iphlpsvc/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Iphlpsvc/Trace" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-KdsSvc/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kerberos/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Acpi/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-AppCompat/General" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-AppCompat/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ApphelpCache/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ApphelpCache/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ApphelpCache/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Boot/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Boot/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-BootDiagnostics/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-CPU-Starvation/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Cache/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Disk/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Dump/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-EventTracing/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-EventTracing/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-File/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-IO/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Interrupt-Steering/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-IoTrace/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-LiveDump/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-LiveDump/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Memory/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Network/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PRM/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Pdc/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Pep/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Boot Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Configuration" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Configuration Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Device Enumeration Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Device Management" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Driver Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-PnP/Driver Watchdog" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Power/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Power/Thermal-Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Power/Thermal-Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Prefetch/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Process/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Processor-Power/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Registry/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-Registry/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ShimEngine/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ShimEngine/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-ShimEngine/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-StoreMgr/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-StoreMgr/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WDI/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WDI/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WDI/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WHEA/Errors" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-WHEA/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Kernel-XDV/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Known Folders API Service" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-L2NA/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LAPS/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LDAP-Client/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LSA/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LSA/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LSA/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LUA-ConsentUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LanguagePackSetup/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LanguagePackSetup/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LanguagePackSetup/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LanguageProfile/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LimitsManagement/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LinkLayerDiscoveryProtocol/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LinkLayerDiscoveryProtocol/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LiveId/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-LiveId/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MPEG2-Video-Encoder-MFT_Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MPS-CLNT/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MPS-DRV/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MPS-SRV/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MSFTEDIT/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MSPaint/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MSPaint/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MSPaint/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MUI/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MUI/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MUI/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MUI/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Media-Streaming/DMC" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Media-Streaming/DMR" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Media-Streaming/MDE" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-MFCaptureEngine/MFCaptureEngine" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-MFReadWrite/SinkWriter" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-MFReadWrite/SourceReader" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-MFReadWrite/Transform" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-Performance/SARStreamResource" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MediaFoundation-PlayAPI/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MemoryDiagnostics-Results/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Minstore/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Minstore/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-Api-Internal/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-Api/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-Parser-Task/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-Parser-Task/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-SmsApi/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-SmsRouter/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Mobile-Broadband-Experience-SmsRouter/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MobilityCenter/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/Autopilot" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/Diagnostics" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ModernDeployment-Diagnostics-Provider/ManagementService" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MosHost/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-MosHost/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Mprddm/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NCSI/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NCSI/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NDF-HelperClassDiscovery/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NDIS-PacketCapture/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NDIS/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NDIS/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NFC-Class-Extension/Analytical" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NTLM/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NWiFi/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Narrator/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Ncasvc/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NcdAutoSetup/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NcdAutoSetup/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NdisImPlatform/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Ndu/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetShell/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Network-Connection-Broker" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Network-DataUsage/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Network-ExecutionContext/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Network-Setup/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Network-and-Sharing-Center/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetworkBridge/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetworkLocationWizard/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetworkProfile/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetworkProfile/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetworkProvider/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetworkProvisioning/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetworkProvisioning/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetworkSecurity/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NetworkStatus/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Networking-Correlation/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Networking-RealTimeCommunication/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NlaSvc/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-NlaSvc/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Ntfs/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Ntfs/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Ntfs/WHC" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OLE/Clipboard-Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OLEACC/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OLEACC/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OOBE-FirstLogonAnim/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OOBE-Machine-Core/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OOBE-Machine-DUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OOBE-Machine-DUI/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OOBE-Machine-Plugins-Wireless/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OneBackup/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OneX/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OneX/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OobeLdr/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-OtpCredentialProvider/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PCI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PackageStateRoaming/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PackageStateRoaming/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PackageStateRoaming/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ParentalControls/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Partition/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Partition/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PeerToPeerDrtEventProvider/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PerceptionRuntime/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PerceptionSensorDataService/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Perflib/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-INvdimm/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-INvdimm/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-INvdimm/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-Nvdimm/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-Nvdimm/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-Nvdimm/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-NvdimmN/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-NvdimmN/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-NvdimmN/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-PmemDisk/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-PmemDisk/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-PmemDisk/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-ScmBus/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-ScmBus/Certification" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-ScmBus/Diagnose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-ScmBus/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-VirtualNvdimm/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-VirtualNvdimm/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PersistentMemory-VirtualNvdimm/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PhotoAcq/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PlayToManager/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Policy/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Policy/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PortableDeviceStatusProvider/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PortableDeviceSyncProvider/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Power-Meter-Polling/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerCfg/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerCpl/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerEfficiencyDiagnostics/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerShell-DesiredStateConfiguration-FileDownloadManager/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerShell-DesiredStateConfiguration-FileDownloadManager/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerShell-DesiredStateConfiguration-FileDownloadManager/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerShell/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerShell/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerShell/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PowerShell/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PriResources-Deployment/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PriResources-Deployment/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PrimaryNetworkIcon/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PrintDialogs/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PrintService-USBMon/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PrintService/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PrintService/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PrintService/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Privacy-Auditing-PermissiveLearningMode/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Privacy-Auditing/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ProcessStateManager/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Program-Compatibility-Assistant/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Program-Compatibility-Assistant/CompatAfterUpgrade" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Provisioning-Diagnostics-Provider/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Provisioning-Diagnostics-Provider/AutoPilot" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Provisioning-Diagnostics-Provider/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Provisioning-Diagnostics-Provider/ManagementService" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Proximity-Common/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Proximity-Common/Informational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Proximity-Common/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-Developer/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-InProc/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-Platform/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-Platform/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-PushNotification-Platform/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-QoS-Pacer/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-QoS-qWAVE/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RPC-Proxy/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RPC/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RPC/EEInfo" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RRAS/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RRAS/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RadioManager/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Ras-NdisWanPacketCapture/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RasAgileVpn/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RasAgileVpn/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ReFS/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ReadyBoost/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ReadyBoost/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ReadyBoostDriver/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ReadyBoostDriver/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Regsvr32/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteApp and Desktop Connections/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteApp and Desktop Connections/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteAssistance/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteAssistance/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteAssistance/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RdpCoreTS/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RdpCoreTS/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RdpCoreTS/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RemoteFX-Synth3dvsc/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-RemoteFX-VM-Kernel-Mode-Transport/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RemoteDesktopServices-SessionServices/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Remotefs-Rdbss/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Remotefs-Rdbss/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ResetEng-Trace/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Resource-Exhaustion-Detector/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Resource-Exhaustion-Resolver/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ResourcePublication/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RestartManager/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RetailDemo/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-RetailDemo/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Graphics/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Networking-BackgroundTransfer/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Networking/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Web-Http/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime-WebAPI/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Windows-Media/WinRTAdaptiveMediaSource" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Windows-Media/WinRTCaptureEngine" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Windows-Media/WinRTMediaStreamSource" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime-Windows-Media/WinRTTranscode" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime/CreateInstance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Runtime/Error" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBClient/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBClient/HelperClassDiagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBClient/ObjectStateDiagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBClient/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Audit" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Connectivity" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBServer/Security" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBWitnessClient/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SMBWitnessClient/Informational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SPB-ClassExtension/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SPB-HIDI2C/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Schannel-Events/Perf" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Sdbus/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Sdbus/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Sdstor/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Search-Core/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Search-ProtocolHandlers/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SearchUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SearchUI/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-Adminless/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-Audit-Configuration-Client/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-Audit-Configuration-Client/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-EnterpriseData-FileRevocationManager/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-ExchangeActiveSyncProvisioning/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-ExchangeActiveSyncProvisioning/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-IdentityListener/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-IdentityStore/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-Isolation-BrokeringFileSystem/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-LessPrivilegedAppContainer/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-Mitigations/KernelMode" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-Mitigations/UserMode" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-Netlogon/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP-UX-GC/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP-UX-GenuineCenter-Logging/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP-UX-Notifications/ActionCenter" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP-UX/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-SPP/Perf" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-UserConsentVerifier/Audit" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Security-Vault/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SecurityMitigationsBroker/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SecurityMitigationsBroker/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SecurityMitigationsBroker/Perf" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SendTo/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Sens/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Sensors/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Sensors/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Serial-ClassExtension-V2/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Serial-ClassExtension/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ServiceReportingApi/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Services-Svchost/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Services/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Servicing/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-Azure/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-Azure/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-OneDrive/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-OneDrive/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SettingSync-OneDrive/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SettingSync/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SettingSync/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SettingSync/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SettingSync/VerboseDebug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Setup/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SetupCl/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SetupPlatform/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SetupQueue/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SetupUGC/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ShareMedia-ControlPanel/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-AppWizCpl/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-BootAnim/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-Common/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-CredUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-CredentialProviderUser/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-Logon/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-LogonUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-AuthUI-Shutdown/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-ConnectedAccountState/ActionCenter" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/ActionCenter" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/AppDefaults" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/LogonTasksChannel" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-Core/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-DefaultPrograms/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-LockScreenContent/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-OpenWith/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-Search-UriHandler" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-Shwebsvc" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shell-ZipFolder/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ShellCommon-StartLayoutPopulation/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ShellCommon-StartLayoutPopulation/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Shsvcs/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SleepStudy/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SmartCard-Audit/Authentication" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SmartCard-DeviceEnum/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SmartCard-TPM-VCard-Module/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SmartCard-TPM-VCard-Module/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SmartScreen/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SmbClient/Audit" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SmbClient/Connectivity" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SmbClient/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SmbClient/Security" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Speech-UserExperience/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Spell-Checking/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SpellChecker/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Spellchecking-Host/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SruMon/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SrumTelemetry" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StateRepository/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StateRepository/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StateRepository/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StateRepository/Restricted" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorDiag/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorPort/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Diagnose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ATAPort/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Diagnose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-ClassPnP/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Diagnose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Disk/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-NvmeDisk/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-NvmeDisk/Diagnose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-NvmeDisk/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Diagnose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Health" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Storport/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Tiering-IoHeat/Heat" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storage-Tiering/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageManagement-PartUtil/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageManagement/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageManagement/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSettings/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-Api/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-Driver/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-Driver/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-Driver/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-ManagementAgent/WHC" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-Parser/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-Parser/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-SpaceManager/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-StorageSpaces-SpaceManager/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Store/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Storsvc/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Subsys-Csr/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Subsys-SMSS/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Superfetch/Main" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Superfetch/PfApLog" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Superfetch/StoreLog" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Sysprep/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-System-Profile-HardwareId/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SystemSettingsHandlers/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SystemSettingsThreshold/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SystemSettingsThreshold/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-SystemSettingsThreshold/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TCPIP/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TCPIP/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TSF-msctf/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TSF-msctf/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TSF-msutb/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TSF-msutb/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TTS/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TWinAPI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TWinUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TWinUI/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TZSync/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TZSync/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TZUtil/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TaskScheduler/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TaskScheduler/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TaskScheduler/Maintenance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TaskScheduler/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TaskbarCPL/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ClientUSBDevices/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ClientUSBDevices/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ClientUSBDevices/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-ClientUSBDevices/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-LocalSessionManager/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-LocalSessionManager/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-LocalSessionManager/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-LocalSessionManager/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-MediaRedirection/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-PnPDevices/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-PnPDevices/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-PnPDevices/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-PnPDevices/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-Printers/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-Printers/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-Printers/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-Printers/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RDPClient/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RDPClient/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RDPClient/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RdpSoundDriver/Capture" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RdpSoundDriver/Playback" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RemoteConnectionManager/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RemoteConnectionManager/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RemoteConnectionManager/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TerminalServices-RemoteConnectionManager/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Tethering-Manager/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Tethering-Station/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ThemeCPL/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ThemeUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Threat-Intelligence/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Time-Service-PTP-Provider/PTP-Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Time-Service/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Troubleshooting-Recommended/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Troubleshooting-Recommended/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-TunnelDriver" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UAC-FileVirtualization/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UAC/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UI-Shell/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UIAnimation/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UIAutomationCore/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UIAutomationCore/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UIAutomationCore/Perf" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UIRibbon/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-USB-MAUSBHOST-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-USB-UCX-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-USB-USBHUB/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-USB-USBHUB3-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-USB-USBPORT/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-USB-USBXHCI-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-USB-USBXHCI-Trustlet-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-USBVideo/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UniversalTelemetryClient/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User Control Panel Performance/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User Control Panel Usage/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User Control Panel/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User Control Panel/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User Device Registration/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User Device Registration/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User Profile Service/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User Profile Service/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User-Loader/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-User-Loader/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserAccountControl/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserModePowerService/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/ActionCenter" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/DeviceInstall" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/DeviceMetadata/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserPnp/SchedulerOperations" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserSettingsBackup-BackupUnitProcessor/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserSettingsBackup-EarlyDownloader/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UserSettingsBackup-Orchestrator/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UxInit/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-UxTheme/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VAN/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VDRVROOT/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VHDMP-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VHDMP-Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VIRTDISK-Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VPN-Client/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VPN/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VWiFi/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VerifyHardwareSecurity/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VerifyHardwareSecurity/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Volume/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VolumeControl/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VolumeSnapshot-Driver/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-VolumeSnapshot-Driver/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WABSyncProvider/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WCN-Config-Registrar/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WCNWiz/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WEPHOSTSVC/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WER-Diag/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WER-PayloadHealth/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WFP/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WFP/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WLAN-AutoConfig/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WLAN-Autoconfig/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WLAN-Driver/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WLAN-MediaManager/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WLANConnectionFlow/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WMI-Activity/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WMI-Activity/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WMI-Activity/Trace" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WMPDMCUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WMPNSS-PublicAPI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WMPNSS-Service/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WMPNSS-Service/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WMPNSSUI/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-API/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-ClassInstaller/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-ClassInstaller/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-CompositeClassDriver/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-CompositeClassDriver/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPBT/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPClassDriver/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPClassDriver/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPIP/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WPD-MTPUS/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WSC-SRV/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WUSA/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WWAN-CFE/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WWAN-MM-Events/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WWAN-MediaManager/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WWAN-NDISUIO-EVENTS/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WWAN-SVC-Events/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WWAN-SVC-Events/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Watchdog-Events/WdLog" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Wcmsvc/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Wcmsvc/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WebAuth/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WebAuthN/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WebIO-NDF/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WebIO/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WebIO/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WebPlatStorage-Server" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WebServices/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WebcamProvider/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Websocket-Protocol-Component/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WerKernel/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WiFiDisplay/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Concurrency" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Contention" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Messages" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Power" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Render" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Win32k/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Win32k/UIPI" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinHTTP-NDF/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinHttp-Pca" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinHttp/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinHttp/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinINet-Capture/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinINet-Config/ProxyConfigChanged" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinINet/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinINet/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinINet/Pca" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinINet/UsageLog" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinINet/WebSocket" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinMDE/MDE" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinML/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinNat/Oper" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinNat/Trace" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinRM/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinRM/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinRM/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WinURLMon/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Windeploy/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Windows Defender/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Windows Defender/WHC" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/ConnectionSecurity" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/ConnectionSecurityVerbose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/Firewall" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/FirewallDiagnostics" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Windows Firewall With Advanced Security/FirewallVerbose" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WindowsBackup/ActionCenter" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WindowsColorSystem/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WindowsColorSystem/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WindowsSystemAssessmentTool/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WindowsSystemAssessmentTool/Tracing" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WindowsUIImmersive/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WindowsUIImmersive/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WindowsUpdateClient/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WindowsUpdateClient/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Wininit/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Winlogon/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Winlogon/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Winsock-AFD/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Winsock-NameResolution/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Winsock-WS2HELP/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Winsrv/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Wired-AutoConfig/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Wired-AutoConfig/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WlanDlg/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Wordpad/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Wordpad/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Wordpad/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WorkFolders/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WorkFolders/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WorkFolders/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-WorkFolders/WHC" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-Workplace Join/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-XAML-Diagnostics/Default" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-XAML/Default" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-XAudio2/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-XAudio2/Performance" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ZTraceMaps/Function" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ZTraceMaps/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-glcnd/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-glcnd/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-glcnd/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-hidcfu/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-mobsync/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ntshrui" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-ntshrui-perf" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-osk/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-stobject/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-wmbclass/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-Windows-wmbclass/Trace" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-WindowsPhone-Connectivity-WiFiConnSvc-Channel" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-WindowsPhone-LocationServiceProvider/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-WindowsPhone-Net-Cellcore-CellManager/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "Microsoft-WindowsPhone-Net-Cellcore-CellularAPI/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "NIS-Driver-WFP/Diagnostic" 
 
C:\Users\steve\Desktop>wevtutil cl "Navigator" 
 
C:\Users\steve\Desktop>wevtutil cl "Network Isolation Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "OAlerts" 
 
C:\Users\steve\Desktop>wevtutil cl "OSK_SoftKeyboard_Channel" 
 
C:\Users\steve\Desktop>wevtutil cl "OfficeChannel" 
 
C:\Users\steve\Desktop>wevtutil cl "OfficeDebugChannel" 
 
C:\Users\steve\Desktop>wevtutil cl "OpenSSH/Admin" 
 
C:\Users\steve\Desktop>wevtutil cl "OpenSSH/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "OpenSSH/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Physical_Keyboard_Manager_Channel" 
 
C:\Users\steve\Desktop>wevtutil cl "PlayReadyPerformanceChannel" 
 
C:\Users\steve\Desktop>wevtutil cl "RTWorkQueueExtended" 
 
C:\Users\steve\Desktop>wevtutil cl "RTWorkQueueTheading" 
 
C:\Users\steve\Desktop>wevtutil cl "SMSApi" 
 
C:\Users\steve\Desktop>wevtutil cl "Security" 
 
C:\Users\steve\Desktop>wevtutil cl "Setup" 
 
C:\Users\steve\Desktop>wevtutil cl "SmbWmiAnalytic" 
 
C:\Users\steve\Desktop>wevtutil cl "StreamingCore" 
 
C:\Users\steve\Desktop>wevtutil cl "System" 
 
C:\Users\steve\Desktop>wevtutil cl "SystemEventsBroker" 
 
C:\Users\steve\Desktop>wevtutil cl "TabletPC_InputPanel_Channel" 
 
C:\Users\steve\Desktop>wevtutil cl "TabletPC_InputPanel_Channel/IHM" 
 
C:\Users\steve\Desktop>wevtutil cl "TimeBroker" 
 
C:\Users\steve\Desktop>wevtutil cl "UIManager_Channel" 
 
C:\Users\steve\Desktop>wevtutil cl "Uac/Debug" 
 
C:\Users\steve\Desktop>wevtutil cl "WINDOWS_KS_CHANNEL" 
 
C:\Users\steve\Desktop>wevtutil cl "WINDOWS_MFH264Enc_CHANNEL" 
 
C:\Users\steve\Desktop>wevtutil cl "WINDOWS_MP4SDECD_CHANNEL" 
 
C:\Users\steve\Desktop>wevtutil cl "WINDOWS_MSMPEG2ADEC_CHANNEL" 
 
C:\Users\steve\Desktop>wevtutil cl "WINDOWS_MSMPEG2VDEC_CHANNEL" 
 
C:\Users\steve\Desktop>wevtutil cl "WINDOWS_VC1ENC_CHANNEL" 
 
C:\Users\steve\Desktop>wevtutil cl "WINDOWS_WMPHOTO_CHANNEL" 
 
C:\Users\steve\Desktop>wevtutil cl "WINDOWS_wmvdecod_CHANNEL" 
 
C:\Users\steve\Desktop>wevtutil cl "WMPSetup" 
 
C:\Users\steve\Desktop>wevtutil cl "WMPSyncEngine" 
 
C:\Users\steve\Desktop>wevtutil cl "Windows Networking Vpn Plugin Platform/Operational" 
 
C:\Users\steve\Desktop>wevtutil cl "Windows Networking Vpn Plugin Platform/OperationalVerbose" 
 
C:\Users\steve\Desktop>wevtutil cl "Windows PowerShell" 
 
C:\Users\steve\Desktop>wevtutil cl "Windows.Globalization/Analytic" 
 
C:\Users\steve\Desktop>wevtutil cl "WordChannel" 
 
C:\Users\steve\Desktop>wevtutil cl "muxencode" 
 
 
========= End of CMD: =========
 
 
 
The system needed a reboot.
 
==== End of Fixlog 16:13:13 ====

  • 0

#36
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,730 posts
  • MVP

VEW?


  • 0

#37
Steviep

Steviep

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 420 posts

Just about topost Vew.txt


Edited by Steviep, 15 May 2024 - 09:29 AM.

  • 0

#38
Steviep

Steviep

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 420 posts
Vino's Event Viewer v01c run on Windows 7 in English
Report run at 15/05/2024 16:27:17
 
Note: All dates below are in the format dd/mm/yyyy
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 15/05/2024 15:12:14
Type: Error Category: 0
Event: 8193 Source: VSS
Volume Shadow Copy Service error: Unexpected error calling routine QueryFullProcessImageNameW.  hr = 0x80070006, The handle is invalid. . 
 
Operation:
   Executing Asynchronous Operation
 
Context:
   Current State: DoSnapshotSet
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 15/05/2024 15:15:44
Type: Warning Category: 0
Event: 63 Source: Microsoft-Windows-WMI
A provider, IntelMEProv, has been registered in the Windows Management Instrumentation namespace root\Intel_ME to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.
 
Log: 'Application' Date/Time: 15/05/2024 15:15:44
Type: Warning Category: 0
Event: 63 Source: Microsoft-Windows-WMI
A provider, IntelMEProv, has been registered in the Windows Management Instrumentation namespace root\Intel_ME to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.
 
Log: 'Application' Date/Time: 15/05/2024 15:15:44
Type: Warning Category: 0
Event: 63 Source: Microsoft-Windows-WMI
A provider, IntelMEProv, has been registered in the Windows Management Instrumentation namespace root\Intel_ME to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 15/05/2024 15:21:52
Type: Warning Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID  Windows.SecurityCenter.WscBrokerManager  and APPID  Unavailable  to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 15/05/2024 15:21:52
Type: Warning Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID  Windows.SecurityCenter.SecurityAppBroker  and APPID  Unavailable  to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 15/05/2024 15:16:14
Type: Warning Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 15/05/2024 15:16:14
Type: Warning Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 15/05/2024 15:15:44
Type: Warning Category: 0
Event: 6062 Source: Netwtw08
6062 - Lso was triggered
 
Log: 'System' Date/Time: 15/05/2024 15:15:39
Type: Warning Category: 0
Event: 10002 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN Extensibility Module has stopped.  Module Path: C:\WINDOWS\system32\IntelIHVRouter08.dll 
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: msv1_0
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: sfapm
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: schannel
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: wdigest
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: cloudap
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: pku2u
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: tspkg
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: msv1_0
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: kerberos
 
Log: 'System' Date/Time: 15/05/2024 15:15:33
Type: Warning Category: 0
Event: 6155 Source: LsaSrv
LSA package is not signed as expected. This can cause unexpected behaviour with Credential Guard.  PackageName: negoexts

  • 0

#39
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,730 posts
  • MVP

The only event that is not common on Win 11 system is:

 

Log: 'System' Date/Time: 15/05/2024 15:15:44
Type: Warning Category: 0
Event: 6062 Source: Netwtw08
6062 - Lso was triggered

 

 

Apparently this is caused by the Intel Wireless network card.  Can you check what version of the Intel ProSet software you are using?  (Look in the Addition.txt file from your last FRST scan.)

 

There is also some talk on the web about this being caused when you try and project to a TV.  Are you doing anything like that?

 

I found this definition of lso on a Microsoft site

 

LSO is a technology in which the work of segmenting data into network frames is performed by the network adapter instead of by the TCP/IP stack. With LSO, TCP/IP sends very large data packets down to the network adapter driver and the network adapter hardware. The network adapter breaks up the data into smaller network-sized frames. This increases the speed of large packet send operations and decreases the processor usage of the computer, because the work is performed on the network adapter.

 

 

 

I am starting to wonder if this isn't an event that is mislabeled as a Warning when it should just be Information.  "Triggered" just means that LSO is being used.  Doesn't sound like anything bad.  There is a method to turn off lso but I'm not sure that we want to do that since it means more work for the CPU.

 

I don't suppose that the last fix made all of your problems go away did it?

 

I was able to find an Acer desktop in the lab yesterday but it's still out in the car.  Apparently there aren't a lot of Acer desktops being sold in the US.  It is pretty old so I'm not sure it will be of any help but I've been too busy to set it up and try it out.  We do have piles of laptops though.  


  • 0

#40
Steviep

Steviep

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 420 posts

Morning,

 

This is what I have for the Proset software - Intel® PROSet/Wireless Software (HKLM-x32\...\{18ec79fd-8f83-4e12-bfa5-80c9872cc56b}) (Version: 20.40.0 - Intel Corporation). Intel® PROSet/Wireless WiFi Software (HKLM\...\{F70E0149-0BD0-4933-ADD0-1DC74D8F513B}) (Version: 20.40.0.1365 - Intel Corporation) 

 

Re projecting to a TV I do recall some time ago when I bought a new TV that it was able to connect to my PC when on the same network by wifi and I tried it at that time but its not something that I use.

 

The fix that we've run has made a slight difference  and now my PC takes around 5 mins 25 from switch on until it gives me results from a search on google

 

 

 


  • 0

Advertisements


#41
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,730 posts
  • MVP

The latest version of Proset is 23.40.0 but they say it doesn't apply to some older chips.  Don't know if yours qualifies but give it a try:

 

https://www.intel.co...8/wireless.html

 

We can try turning off LSO and see if that helps but it seems unlikely.

 

Right click on the start window that used to be in the far left on Win 10 but has now moved to near the center and choose Windows Powershell (Admin)

  First let's verify that LSO is on:

 

Type or copy and paste:

Get-NetAdapterLso

hit Enter.  Should say something like:

 

PS C:\Windows\system32> Get-NetAdapterLso
 
Name                           Version         V1IPv4Enabled  IPv4Enabled  IPv6Enabled
----                           -------         -------------  -----------  -----------
Local Area Connection          LSO Version 2   False          True         True
 

 

 

The two trues in bold show it's on.

 

Now type or copy and paste:

Disable-NetAdapterLso *

(Space before the *) Hit Enter.

Verify that it worked by hitting the up arrow twice and the Get command should appear.  Hit Enter.  Should say:

PS C:\Windows\system32> Get-NetAdapterLso
 
Name                           Version         V1IPv4Enabled  IPv4Enabled  IPv6Enabled
----                           -------         -------------  -----------  -----------
Local Area Connection          LSO Version 2   False          False        False
 

 

 

 

If it doesn't make any difference you can reenable it with:

 Enable-NetAdapterLso *

  • 0

#42
Steviep

Steviep

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 420 posts

Hi ,

 

I have downloaded and installed the latest Proset, checked on the LSO and it was on- the only thing that is different from the example of what it would say is that your example says Local Area Connection   where mine says Ethernet ( my PC is conected by wifi)

 

I did a restart and it was no different so I have put it back on


  • 0

#43
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,730 posts
  • MVP

OK.  Reboot and run Latency Monitor again as before but this time right after you start it monitoring, bring up a browser for the first time.  Perhaps it will catch something.


  • 0

#44
Steviep

Steviep

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 420 posts

Did a restart got the Acrer screen 8 seconds in, got a Blank screen at 44 secs until 1:12 when I got please wait, at 1min 25 I got log in screen and desktop came up at 1 min 44 but no taskbar unti 1 min 57, I then clicked on Latency and started it and pressed Google and was at 5 mins 37 before google returned the search. Here is the Latency report:

 

_________________________________________________________________________________________________________
CONCLUSION
_________________________________________________________________________________________________________
Your system appears to be suitable for handling real-time audio and other tasks without dropouts. 
LatencyMon has been analyzing your system for  0:02:37  (h:mm:ss) on all processors.
 
 
_________________________________________________________________________________________________________
SYSTEM INFORMATION
_________________________________________________________________________________________________________
Computer name:                                        DESKTOP-T3QOQ8M
OS version:                                           Windows 11, 10.0, version 2009, build: 22631 (x64)
Hardware:                                             Carlos, Acer
BIOS:                                                 R01-C3
CPU:                                                  GenuineIntel Intel® Core™ i5-8400 CPU @ 2.80GHz
Logical processors:                                   6
Processor groups:                                     1
Processor group size:                                 6
RAM:                                                  8069 MB total
 
 
_________________________________________________________________________________________________________
CPU SPEED
_________________________________________________________________________________________________________
Reported CPU speed (WMI):                             2808 MHz
Reported CPU speed (registry):                        2808 MHz
 
Note: reported execution times may be calculated based on a fixed reported CPU speed. Disable variable speed settings like Intel Speed Step and AMD Cool N Quiet in the BIOS setup for more accurate results.
 
 
_________________________________________________________________________________________________________
MEASURED INTERRUPT TO USER PROCESS LATENCIES
_________________________________________________________________________________________________________
The interrupt to process latency reflects the measured interval that a usermode process needed to respond to a hardware request from the moment the interrupt service routine started execution. This includes the scheduling and execution of a DPC routine, the signaling of an event and the waking up of a usermode thread from an idle wait state in response to that event.
 
Highest measured interrupt to process latency (µs):   161.70
Average measured interrupt to process latency (µs):   8.295286
 
Highest measured interrupt to DPC latency (µs):       124.10
Average measured interrupt to DPC latency (µs):       2.790780
 
 
_________________________________________________________________________________________________________
 REPORTED ISRs
_________________________________________________________________________________________________________
Interrupt service routines are routines installed by the OS and device drivers that execute in response to a hardware interrupt signal.
 
Highest ISR routine execution time (µs):              77.283832
Driver with highest ISR routine execution time:       HDAudBus.sys - High Definition Audio Bus Driver, Microsoft Corporation
 
Highest reported total ISR routine time (%):          0.002169
Driver with highest ISR total time:                   HDAudBus.sys - High Definition Audio Bus Driver, Microsoft Corporation
 
Total time spent in ISRs (%)                          0.002581
 
ISR count (execution time <250 µs):                   2623
ISR count (execution time 250-500 µs):                0
ISR count (execution time 500-1000 µs):               0
ISR count (execution time 1000-2000 µs):              0
ISR count (execution time 2000-4000 µs):              0
ISR count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
REPORTED DPCs
_________________________________________________________________________________________________________
DPC routines are part of the interrupt servicing dispatch mechanism and disable the possibility for a process to utilize the CPU while it is interrupted until the DPC has finished execution.
 
Highest DPC routine execution time (µs):              268.724715
Driver with highest DPC routine execution time:       dxgkrnl.sys - DirectX Graphics Kernel, Microsoft Corporation
 
Highest reported total DPC routine time (%):          0.025787
Driver with highest DPC total execution time:         storport.sys - Microsoft Storage Port Driver, Microsoft Corporation
 
Total time spent in DPCs (%)                          0.103390
 
DPC count (execution time <250 µs):                   124510
DPC count (execution time 250-500 µs):                0
DPC count (execution time 500-10000 µs):              3
DPC count (execution time 1000-2000 µs):              0
DPC count (execution time 2000-4000 µs):              0
DPC count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
 REPORTED HARD PAGEFAULTS
_________________________________________________________________________________________________________
Hard pagefaults are events that get triggered by making use of virtual memory that is not resident in RAM but backed by a memory mapped file on disk. The process of resolving the hard pagefault requires reading in the memory from disk while the process is interrupted and blocked from execution.
 
NOTE: some processes were hit by hard pagefaults. If these were programs producing audio, they are likely to interrupt the audio stream resulting in dropouts, clicks and pops. Check the Processes tab to see which programs were hit.
 
Process with highest pagefault count:                 system
 
Total number of hard pagefaults                       7132
Hard pagefault count of hardest hit process:          1901
Number of processes hit:                              55
 
 
_________________________________________________________________________________________________________
 PER CPU DATA
_________________________________________________________________________________________________________
CPU 0 Interrupt cycle time (s):                       1.868360
CPU 0 ISR highest execution time (µs):                77.283832
CPU 0 ISR total execution time (s):                   0.024444
CPU 0 ISR count:                                      2623
CPU 0 DPC highest execution time (µs):                268.724715
CPU 0 DPC total execution time (s):                   0.636321
CPU 0 DPC count:                                      87921
_________________________________________________________________________________________________________
CPU 1 Interrupt cycle time (s):                       0.955356
CPU 1 ISR highest execution time (µs):                0.0
CPU 1 ISR total execution time (s):                   0.0
CPU 1 ISR count:                                      0
CPU 1 DPC highest execution time (µs):                157.548077
CPU 1 DPC total execution time (s):                   0.092366
CPU 1 DPC count:                                      11387
_________________________________________________________________________________________________________
CPU 2 Interrupt cycle time (s):                       0.606657
CPU 2 ISR highest execution time (µs):                0.0
CPU 2 ISR total execution time (s):                   0.0
CPU 2 ISR count:                                      0
CPU 2 DPC highest execution time (µs):                214.054843
CPU 2 DPC total execution time (s):                   0.074811
CPU 2 DPC count:                                      7527
_________________________________________________________________________________________________________
CPU 3 Interrupt cycle time (s):                       0.498406
CPU 3 ISR highest execution time (µs):                0.0
CPU 3 ISR total execution time (s):                   0.0
CPU 3 ISR count:                                      0
CPU 3 DPC highest execution time (µs):                127.798077
CPU 3 DPC total execution time (s):                   0.046151
CPU 3 DPC count:                                      4682
_________________________________________________________________________________________________________
CPU 4 Interrupt cycle time (s):                       0.511772
CPU 4 ISR highest execution time (µs):                0.0
CPU 4 ISR total execution time (s):                   0.0
CPU 4 ISR count:                                      0
CPU 4 DPC highest execution time (µs):                139.178063
CPU 4 DPC total execution time (s):                   0.055994
CPU 4 DPC count:                                      5939
_________________________________________________________________________________________________________
CPU 5 Interrupt cycle time (s):                       0.572287
CPU 5 ISR highest execution time (µs):                0.0
CPU 5 ISR total execution time (s):                   0.0
CPU 5 ISR count:                                      0
CPU 5 DPC highest execution time (µs):                161.863604
CPU 5 DPC total execution time (s):                   0.073721
CPU 5 DPC count:                                      7057
_________________________________________________________________________________________________________

  • 0

#45
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,730 posts
  • MVP

I was hoping for screenshots of the Processes and Drivers tabs.  Seems like an over abundance of page faults to me but I've also never seen System as the cause.

 

That got me looking at your FRST Addition.txt in your old thread.  This looks a bit odd to me:

 

Total physical RAM: 8069.98 MB
Available physical RAM: 2881.54 MB
Total Virtual: 8581.98 MB
Available Virtual: 2841.32 MB
 

 

On my system:

Total physical RAM: 16342.92 MB
Available physical RAM: 11763.45 MB
Total Virtual: 32726.92 MB
Available Virtual: 28081.77 MB

 

 

My system is still Win 10 and it's possible that Win 11 likes to allocate less memory but I wonder if increasing your Virtual Memory would help.  Try setting it to 16000 manually.  See:
 

 

It probably wouldn't hurt to run the memory diagnostics just to make sure there is no problem with the memory.

https://www.elevenfo...ndows-11.10560/


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP