ElfFile`FoMElfChnk__A|h_=ht?FM+3O7!5KiN?gG$/ 23**p~1= ^&^\s;JRoAcM Eventjxmlns5http://schemas.microsoft.com/win/2004/08/events/eventoTSystemA2{ProviderF=KNameService Control ManagerF)Guid&{555908d1-a6d7-4695-8e1e-26931d2012f4}`EventSourceNameService Control ManagerAMSaEventID't) Qualifiers " Version dLevelE{Task Opcode$?jKeywordsAPj; TimeCreated'j<{ SystemTime .F EventRecordID A Correlation\F ActivityIDFS5RelatedActivityIDAm ExecutionHF ProcessID9ThreadID .aChannelSystem6+j;nComputer Sigurd-PCABh.SecurityfLUserID ! :!z~1=x 484v*M^p_D EventDataA5oData=param1 A#=param2  !Binary .Application Information1Appinfop**~1= ^& !w~1=x U6! U6ڕ ,_A#=param1 A#=param2 A#=param3 A#=param4 A#=param5   N . Background Intelligent Transfer Service1600001Start tjenesten p nytt BITS**`~1= ^& !w~1=x U6! . .Certificate Propagation11200001Start tjenesten p nyttCertPropSvc`**P~1= ^& !w~1=x U6! & . Group Policy Client11200001Start tjenesten p nytt gpsvcP**@~1= ^& !w~1=x U6!  .IP Helper11200001Start tjenesten p nyttiphlpsvc@**@~1= ^& !w~1=x U6!   .Server1600001Start tjenesten p nyttLanmanServer@**X~1= ^& !w~1=x U6! ( .User Profile Service11200001Start tjenesten p nyttProfSvcX**H~1= ^& !w~1=x U6!  .Task Scheduler1600001Start tjenesten p nyttScheduleH**h ~1= ^& !w~1=x U6! B . System Event Notification Service11200001Start tjenesten p nytt SENSh**h ~1= ^& !w~1=x U6! 8 .Remote Desktop Configuration1600001Start tjenesten p nyttSessionEnvh**p ~1= ^& !w~1=x U6! 0 ."Shell Hardware Detection1600001Start tjenesten p nytt"ShellHWDetectionp**8 ~1= ^& !w~1=x U6!   .Themes1600001Start tjenesten p nyttThemes8** ~1= ^& Y!z~1=x 48User Manager1UserManager**p~1= ^& !w~1=x U6! D .Windows Management Instrumentation11200001Start tjenesten p nyttWinmgmtp**h~1= ^& !w~1=x U6! F.Microsoft Account Sign-in Assistant101Start tjenesten p nyttwlidsvch**HZy= ^& !w~1=x U6!  .Windows Update1600001Start tjenesten p nyttwuauservH**Zy= ^& Y!xZy=p c3c3 }F_A#=param1 A#=param2 A#=param3 A#=param4 .( 1Start tjenesten p nyttUser Profile Service%%1056**P(,? ^& !xZy=p c3.D 1Start tjenesten p nyttWindows Management Instrumentation%%1056P**q,? ŏN!ŏNsQ6EV(AMsj5http://schemas.microsoft.com/win/2004/08/events/eventVAF=AS t      ?Aj   AFF AF  + Sigurd-PCAh  !  L ! @@(,?<,Microsoft-Windows-UserModePowerService 9@wIŐSystem ^qc$^qc/^Dh8sԭ_A-= ProcessPath A+= ProcessPid A1#= OldSchemeGuid A1#= NewSchemeGuid <C:\Windows\System32\WinSAT.exex "B8A[`.^J:c\**E ŏN!  L ! @@q,?<Microsoft-Windows-UserModePowerService 9@wIŐSystem ^qc$<C:\Windows\System32\WinSAT.exex ^J:c\"B8A[`.**h5@L ^&  !@E c3N(Background Intelligent Transfer Serviceautostartbehovsbetinget startBITSh**@L ŏN!  @ ! 5@LMicrosoft-Windows-Kernel-GeneralOצ]System /w_*/wmUWF~r_A/!= MajorVersion A/!= MinorVersion A/!= BuildVersion A+= QfeVersion A3%=ServiceVersion A'=BootMode A)= StartTime  (O@\@L**@L ŏN!  : !@LMicrosoft-Windows-Kernel-BootDzMK ^SSystem җ)I-җ)藭C9Diz_A7)=LastShutdownGood A/!= LastBootGood    **x@L ŏN!  : s!@LMicrosoft-Windows-Kernel-BootDzMK ^SSystem T/&T;hX<͚8J@4_A'=BootType x**@L ŏN!  : !@LMicrosoft-Windows-Kernel-BootDzMK ^SSystem 0aⅤCtBsL@_A3%=BootMenuPolicy **x1@L ŏN!  : w!@LMicrosoft-Windows-Kernel-BootDzMK ^SSystem n 2neO@3D8_A+= EntryCount x**AL ŏN!  : ! 1@LMicrosoft-Windows-Kernel-BootDzMK ^SSystem v 3v ?M(\P_AC5=BitlockerUserInputTime  ** AL ŏN!  > !@ALMicrosoft-Windows-FilterManagercIİSystem Ԙ-5I-Ԙ-ڸ6 ^_A-= FinalStatus A;-=DeviceVersionMajor A;-=DeviceVersionMinor A7)=DeviceNameLength A+= DeviceName A+= DeviceTime A5'=ExtraInfoLength A5'=ExtraInfoString A'=FilterID   FileInfo^\Ϻ{ "flags" : "0x00000010" , "registration_version" : "0x00000203" , "tx" : false , "sections" : false , "frame" : 0 , "class_name" : "FSFilter Bottom" , "instances" : [["45000","0x00000000"]] }~AL **AL ŏN!  > !@ALMicrosoft-Windows-FilterManagercIİSystem Ԙ-5  WofG{ "flags" : "0x00000010" , "registration_version" : "0x00000203" , "tx" : true , "sections" : false , "frame" : 0 , "class_name" : "FSFilter Compression" , "instances" : [["40700","0x00000000"]] }~AL**IFL ŏN!  > !@ALMicrosoft-Windows-FilterManagercIİSystem Ԙ-5  WdFilter*Ϻ{ "flags" : "0x00000010" , "registration_version" : "0x00000203" , "tx" : true , "sections" : false , "frame" : 0 , "class_name" : "FSFilter Anti-Virus" , "instances" : [["328010","0x00000000"]] }~AL**HIFL B3N?B3WZ ]r:AMsj5http://schemas.microsoft.com/win/2004/08/events/eventA"=EventLogAS t   ?Aj   System+ Sigurd-PCAh  ! !xIFL w)CAw)C-Q /4(_  B@19.24.45 30. 08. 201563147@-c-c` <` H**  IFL B3N? s!yIFL w)CAP10.00.10240Multiprocessor Free16384 **!IFL B3N? ;!uIFL w)CA15V**H"BL B3N? !}IFL w)CAL*1160-60 Vest-Europa (normaltid)*1.10Windows 10 Pro10.0.10240 Build 10240 Multiprocessor Free10240.th1.150819-194655df62e7Not AvailableNot Available948175414Sigurd-PCH** #P%BL ŏN!  , )!bBLMicrosoft-Windows-Ntfsz?nMĂSystem (ػG(حh@9 2_A)= DriveName A+= DeviceName AA3=CorruptionActionState .C:\Device\HarddiskVolume2 **$#2BL ŏN!  > !@P%BLMicrosoft-Windows-FilterManagercIİSystem Ԙ-5  FileCrypt4MϺ{ "flags" : "0x00000000" , "registration_version" : "0x00000203" , "tx" : false , "sections" : false , "frame" : 0 , "class_name" : "FSFilter Encryption" , "instances" : [["141100","0x00000000"]] }g#BL**%5BL ŏN!  > !@#2BLMicrosoft-Windows-FilterManagercIİSystem Ԙ-5 n npsvctrig4MϺ{ "flags" : "0x00000008" , "registration_version" : "0x00000203" , "tx" : false , "sections" : false , "frame" : 0 , "class_name" : "(null)" , "instances" : [["46000","0x00000000"]] }1BL**&nhBL ŏN!  < !?) 5BLMicrosoft-Windows-Kernel-Power:;3 D^w" 7ִSystem mOm@$)M5 _A/!= BugcheckCode A;-=BugcheckParameter1 A;-=BugcheckParameter2 A;-=BugcheckParameter3 A;-=BugcheckParameter4 A5'=SleepInProgress A?1=PowerButtonTimestamp  A1#= BootAppStatus  **' iBL ŏN!  P !/7nhBLMicrosoft-Windows-Kernel-Processor-PowergQNo)H`'System ewwS8ewykǟT3B- XL_A!=Group A#=Number A3%=IdleStateCount A;-=IdleImplementation A7)=NominalFrequency AI;=MaximumPerformancePercent AI;=MinimumPerformancePercent AC5=MinimumThrottlePercent AI;=PerformanceImplementation  d&&**p(r3iBL ŏN!  P V!/7 iBLMicrosoft-Windows-Kernel-Processor-PowergQNo)H`'System ewwS d&&p**p)o^iBL ŏN!  P V!/7r3iBLMicrosoft-Windows-Kernel-Processor-PowergQNo)H`'System ewwS d&&p**p*:ˢBL ŏN!  P V!/7o^iBLMicrosoft-Windows-Kernel-Processor-PowergQNo)H`'System ewwS d&&p**H+.BL ŏN!  , U!b:ˢBLMicrosoft-Windows-Ntfsz?nMĂSystem (ػG.D:\Device\HarddiskVolume3H**,FL ŏN!  , !b.BLMicrosoft-Windows-Ntfsz?nMĂSystem (ػG`.\\?\Volume{45eaddbe-0000-0000-0000-100000000000}\Device\HarddiskVolume1**-%FL ŏN!  > !@FLMicrosoft-Windows-FilterManagercIİSystem Ԙ-5   luafvNϺ{ "flags" : "0x00000014" , "registration_version" : "0x00000203" , "tx" : false , "sections" : false , "frame" : 0 , "class_name" : "FSFilter Virtualization" , "instances" : [["135000","0x00000000"]] }FeFL**.rFL ŏN!  >  !@%FLMicrosoft-Windows-FilterManagercIİSystem Ԙ-5  storqosflt}Ϻ{ "flags" : "0x00000000" , "registration_version" : "0x00000203" , "tx" : false , "sections" : false , "frame" : 0 , "class_name" : "FSFilter Quota Management" , "instances" : [["244000","0x00000000"]] }FeFL**@/{FL ŏN!  : =!Dt rFL0Microsoft-Windows-Dhcp-ClientrNMfjSystem  Ld0 LNcT _@**0GGL ŏN!  > !>f {FLMicrosoft-Windows-DHCPv6-Client+jj8L\;gxSystem  Ld**H1GL ŏN!  B =!@GGLxMicrosoft-Windows-WLAN-AutoConfig׀yXFpվ}RSystem ygfdygػ$<[7J._H** 2UL ^& u!rGL N&g! N&@F&*N<0_A#=param1   dam **3p^L ŏN!  4 !MY ULMicrosoft-Windows-Winlogon|1C̣8System LChKiLChymֻ dX_A=TSId A%=UserSid pzfKy`a**h44 M ^&  !@p^LD c3N(Background Intelligent Transfer Servicebehovsbetinget startautostartBITSh**54 M ^& g!z4 M0 48.Application Information1Appinfo**p64 M ^& !w4 M0 U6! N . Background Intelligent Transfer Service1600001Start tjenesten p nytt BITSp**`74 M ^& !w4 M0 U6! . .Certificate Propagation11200001Start tjenesten p nyttCertPropSvc`**X84 M ^& !w4 M0 U6!  ."dmwappushsvc1100001Start tjenesten p nytt"dmwappushserviceX**P94 M ^& !w4 M0 U6! & . Group Policy Client11200001Start tjenesten p nytt gpsvcP**@:K? M ^& !w4 M0 U6!  .IP Helper11200001Start tjenesten p nyttiphlpsvc@**@;K? M ^& !wK? M0 U6!   .Server1600001Start tjenesten p nyttLanmanServer@**X<K? M ^& !wK? M0 U6! ( .User Profile Service11200001Start tjenesten p nyttProfSvcX**H=K? M ^& !wK? M0 U6!  .Task Scheduler1600001Start tjenesten p nyttScheduleH**h>K? M ^& !wK? M0 U6! B . System Event Notification Service11200001Start tjenesten p nytt SENSh**h?K? M ^& !wK? M0 U6! 8 .Remote Desktop Configuration1600001Start tjenesten p nyttSessionEnvh**p@K? M ^& !wK? M0 U6! 0 ."Shell Hardware Detection1600001Start tjenesten p nytt"ShellHWDetectionp**8AK? M ^& !wK? M0 U6!   .Themes1600001Start tjenesten p nyttThemes8**BK? M ^& Y!zK? M0 48User Manager1UserManager**pCK? M ^& !wK? M0 U6! D .Windows Management Instrumentation11200001Start tjenesten p nyttWinmgmtp**hDK? M ^& !wK? M0 U6! F.Microsoft Account Sign-in Assistant101Start tjenesten p nyttwlidsvch**HEeSM ^& !wK? M0 U6!  .Windows Update1600001Start tjenesten p nyttwuauservH**PFeSM ^& !xeSM$ c3.D 1Start tjenesten p nyttWindows Management Instrumentation%%1056P**0GcnSM ^& !xeSMD c3.( 1Start tjenesten p nyttUser Profile Service%%10560**HFSM ŏN!  8 !cnSMMicrosoft-Windows-Kernel-PnP9Z P}H1)9System [p7[p`L@_A7)=DriverNameLength A+= DriverName A#=Status A9+=FailureNameLength A-= FailureName A%=Version 6SWD\IP_TUNNEL_VBUS\ISATAP_0\Driver\tunnel**Iy\5UM ŏN!  8 !FSMMicrosoft-Windows-Kernel-PnP9Z P}H1)9System [p76SWD\IP_TUNNEL_VBUS\ISATAP_0\Driver\tunnel**J=\ ŏN!  8 !\pzfKy`a ŃhAŃh>8 Cz8,_A#=param1 A#=param2 A#=param3 A#=param4 A#=param5 A#=param6 A#=param7 b*  C:\Windows\System32\RuntimeBroker.exe (SIGURD-PC)SIGURD-PCAnnet (ikke planlagt)0x0Sl avSIGURD-PC\Sigurd**xN!u\ ^& !w} \\t  U6! 8 .(Synkroniseringsvert_Session11100001Start tjenesten p nytt(OneSyncSvc_Session1x**O8Ku\ ŏN!  8 !!u\8Microsoft-Windows-Kernel-PnP9Z P}H1)9System [p76SWD\IP_TUNNEL_VBUS\ISATAP_0\Driver\tunnel**PXsu\ ŏN!  8 !8Ku\8Microsoft-Windows-Kernel-PnP9Z P}H1)9System [p7N'SWD\IP_TUNNEL_VBUS\Teredo_Tunnel_Device\Driver\tunnel**Qu\ ŏN!  8 !Xsu\8Microsoft-Windows-Kernel-PnP9Z P}H1)9System [p76SWD\IP_TUNNEL_VBUS\ISATAP_0\Driver\tunnel**Ru\ ŏN!  8 !u\8Microsoft-Windows-Kernel-PnP9Z P}H1)9System [p7N'SWD\IP_TUNNEL_VBUS\Teredo_Tunnel_Device\Driver\tunnel**S v\ ŏN!  8 !u\8Microsoft-Windows-Kernel-PnP9Z P}H1)9System [p76SWD\IP_TUNNEL_VBUS\ISATAP_0\Driver\tunnel**Tg\ ŏN!  8 ! v\8Microsoft-Windows-Kernel-PnP9Z P}H1)9System [p7N'SWD\IP_TUNNEL_VBUS\Teredo_Tunnel_Device\Driver\tunnel**UX\ ez_*ez~U[Vo*AMsj5http://schemas.microsoft.com/win/2004/08/events/eventAF= Microsoft-Windows-DistributedCOMF&{1B562E86-B7AA-4131-BADC-B6F3A001407E}DCOMAS t      ?Aj   AFFAF System+ Sigurd-PCAh  ! {!'g\x pzfKy`a N&gdCortanaUI.AppXd4tad4d57t4wtdbnnmb8v2xtzym8c1n8.mca**8VQ\ ŏN!  4 ;!NZ X\Microsoft-Windows-Winlogon|1C̣8System LChKipzfKy`a8**W-\ ŏN! < !@*Q\Microsoft-Windows-Kernel-Power:;3 D^w" 7ִSystem ;;IT$_A-= TargetState A3%=EffectiveState A#=Reason A!=Flags **X٧\ ŏN! @ !-\Microsoft-Windows-Kernel-GeneralOצ]System w3wSwӓMuW_A%=NewTime A%=OldTime A#=Reason :-\7\**Y٧\ ŏN! : !٧\Microsoft-Windows-Kernel-BootDzMK ^SSystem n 2**Z٧\ ŏN! : ! ٧\Microsoft-Windows-Kernel-BootDzMK ^SSystem v 3 **["٧\ ŏN! : !٧\Microsoft-Windows-Kernel-BootDzMK ^SSystem 0**\8Tĩ\ ŏN! : !"٧\Microsoft-Windows-Kernel-BootDzMK ^SSystem T/**]6h\ ŏN!  L !8Tĩ\31/MT8 Microsoft-Windows-Power-Troubleshooter(^II҈vDSystem *f*t3#1eljx_A)= SleepTime A'=WakeTime A1#= SleepDuration A/!= WakeDuration A;-=DriverInitDuration A7)=BiosInitDuration A;-=HiberWriteDuration A9+=HiberReadDuration A9+=HiberPagesWritten A+= Attributes A-= TargetState A3%=EffectiveState A3%=WakeSourceType A?1=WakeSourceTextLength A3%=WakeSourceText A?1=WakeTimerOwnerLength AC5=WakeTimerContextLength AG9=NoMultiStageResumeReason A3%=WakeTimerOwner A7)=WakeTimerContext n&\oyݧ\_e A**^ܢ\ ŏN!  8 !6h\ Microsoft-Windows-Kernel-PnP9Z P}H1)9System [p7N'SWD\IP_TUNNEL_VBUS\Teredo_Tunnel_Device\Driver\tunnel**8_ ŏN!  4 ;!MY ܢ\HTMicrosoft-Windows-Winlogon|1C̣8System LChKipzfKy`a8