My PC is restarting
ombredore
-
elo -
elo -
Hello,
my PC is restarting and I don't know why
in the Event Viewer it says this
Log Name: Application
Source: Microsoft-Windows-Security-SPP
Date: 11/05/2017 09:11:05
Event ID: 16384
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Ombredore
Description:
The scheduled restart of the Software Protection service at 2117-04-17T07:11:05Z was successful. Reason: RulesEngine.
Event XML:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
<EventID Qualifiers="16384">16384</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2017-05-11T07:11:05.273321100Z" />
<EventRecordID>1069</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>Application</Channel>
<Computer>Ombredore</Computer>
<Security />
</System>
<EventData>
<Data>2117-04-17T07:11:05Z</Data>
<Data>RulesEngine</Data>
</EventData>
</Event>
I would like to know what this is and if it is possible to remove it please.
my PC is restarting and I don't know why
in the Event Viewer it says this
Log Name: Application
Source: Microsoft-Windows-Security-SPP
Date: 11/05/2017 09:11:05
Event ID: 16384
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Ombredore
Description:
The scheduled restart of the Software Protection service at 2117-04-17T07:11:05Z was successful. Reason: RulesEngine.
Event XML:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
<EventID Qualifiers="16384">16384</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2017-05-11T07:11:05.273321100Z" />
<EventRecordID>1069</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>Application</Channel>
<Computer>Ombredore</Computer>
<Security />
</System>
<EventData>
<Data>2117-04-17T07:11:05Z</Data>
<Data>RulesEngine</Data>
</EventData>
</Event>
I would like to know what this is and if it is possible to remove it please.
5 réponses
This event informs you that your computer has restarted, but that is not the cause.
You should check the warning or critical events in the 5 minutes before the restart.
--
Sometimes a truth escapes you because it is insignificant. It can also happen that you do not see it due to its obviousness and enormity!
You should check the warning or critical events in the 5 minutes before the restart.
--
Sometimes a truth escapes you because it is insignificant. It can also happen that you do not see it due to its obviousness and enormity!
Hello,
Are you sure it's this event that caused your PC to restart? Because this only pertains to the restarting of a service...
In any case, it's better not to disable it
--
It happens that a truth eludes you because it is minuscule. It also happens that you don't see it because of its obviousness and its enormity!
Are you sure it's this event that caused your PC to restart? Because this only pertains to the restarting of a service...
In any case, it's better not to disable it
--
It happens that a truth eludes you because it is minuscule. It also happens that you don't see it because of its obviousness and its enormity!
This is the last event before the restart
by searching a bit I saw a "critical" event I don't know if it's that
Journal name: System
Source: Microsoft-Windows-Kernel-Power
Date: 11/05/2017 09:02:03
Event ID: 41
Task category: (63)
Level: Critical
Keywords: (70368744177664),(2)
User: System
Computer: Ombredore
Description:
The system has restarted without shutting down properly beforehand. This error can occur if the system is unresponsive, has crashed, or has lost power unexpectedly.
Event XML:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
<EventID>41</EventID>
<Version>5</Version>
<Level>1</Level>
<Task>63</Task>
<Opcode>0</Opcode>
<Keywords>0x8000400000000002</Keywords>
<TimeCreated SystemTime="2017-05-11T07:02:03.222073500Z" />
<EventRecordID>1631</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>Ombredore</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="BugcheckCode">278</Data>
<Data Name="BugcheckParameter1">0xffff9b8391cbc2d0</Data>
<Data Name="BugcheckParameter2">0x0</Data>
<Data Name="BugcheckParameter3">0x0</Data>
<Data Name="BugcheckParameter4">0x0</Data>
<Data Name="SleepInProgress">0</Data>
<Data Name="PowerButtonTimestamp">0</Data>
<Data Name="BootAppStatus">0</Data>
<Data Name="Checkpoint">0</Data>
<Data Name="ConnectedStandbyInProgress">false</Data>
<Data Name="SystemSleepTransitionsToOn">0</Data>
<Data Name="CsEntryScenarioInstanceId">0</Data>
<Data Name="BugcheckInfoFromEFI">true</Data>
</EventData>
</Event>
my pc restarts after 10-20 minutes after being off overnight
by searching a bit I saw a "critical" event I don't know if it's that
Journal name: System
Source: Microsoft-Windows-Kernel-Power
Date: 11/05/2017 09:02:03
Event ID: 41
Task category: (63)
Level: Critical
Keywords: (70368744177664),(2)
User: System
Computer: Ombredore
Description:
The system has restarted without shutting down properly beforehand. This error can occur if the system is unresponsive, has crashed, or has lost power unexpectedly.
Event XML:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Kernel-Power" Guid="{331C3B3A-2005-44C2-AC5E-77220C37D6B4}" />
<EventID>41</EventID>
<Version>5</Version>
<Level>1</Level>
<Task>63</Task>
<Opcode>0</Opcode>
<Keywords>0x8000400000000002</Keywords>
<TimeCreated SystemTime="2017-05-11T07:02:03.222073500Z" />
<EventRecordID>1631</EventRecordID>
<Correlation />
<Execution ProcessID="4" ThreadID="8" />
<Channel>System</Channel>
<Computer>Ombredore</Computer>
<Security UserID="S-1-5-18" />
</System>
<EventData>
<Data Name="BugcheckCode">278</Data>
<Data Name="BugcheckParameter1">0xffff9b8391cbc2d0</Data>
<Data Name="BugcheckParameter2">0x0</Data>
<Data Name="BugcheckParameter3">0x0</Data>
<Data Name="BugcheckParameter4">0x0</Data>
<Data Name="SleepInProgress">0</Data>
<Data Name="PowerButtonTimestamp">0</Data>
<Data Name="BootAppStatus">0</Data>
<Data Name="Checkpoint">0</Data>
<Data Name="ConnectedStandbyInProgress">false</Data>
<Data Name="SystemSleepTransitionsToOn">0</Data>
<Data Name="CsEntryScenarioInstanceId">0</Data>
<Data Name="BugcheckInfoFromEFI">true</Data>
</EventData>
</Event>
my pc restarts after 10-20 minutes after being off overnight
Before, there was a warning marked as follows:
The system stop at 08:29:09 on 11/05/2017 was not planned.
The Downloaded Cards Manager service is waiting to start.
Windows Hello for Business provisioning will not be launched.
Device is AAD joined (AADJ or DJ++): Not Tested
User has logged on with AAD credentials: No
Windows Hello for Business policy is enabled: Not Tested
Local computer meets Windows Hello for Business hardware requirements: Not Tested
User is not connected to the machine via Remote Desktop: Yes
User certificate for on-premise auth policy is enabled: Not Tested
Machine is governed by none policy.
See https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/overview/whats-new-active-directory-federation-services-windows-server for more details.
Failed to load the application container profile with error 0x800700B7, as it is impossible to register the AppContainer SID.
The CldFlt service could not start due to the error:
This request is not supported.
Realtek PCIe GBE Family Controller is disconnected from network.
The system stop at 08:29:09 on 11/05/2017 was not planned.
The Downloaded Cards Manager service is waiting to start.
Windows Hello for Business provisioning will not be launched.
Device is AAD joined (AADJ or DJ++): Not Tested
User has logged on with AAD credentials: No
Windows Hello for Business policy is enabled: Not Tested
Local computer meets Windows Hello for Business hardware requirements: Not Tested
User is not connected to the machine via Remote Desktop: Yes
User certificate for on-premise auth policy is enabled: Not Tested
Machine is governed by none policy.
See https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/overview/whats-new-active-directory-federation-services-windows-server for more details.
Failed to load the application container profile with error 0x800700B7, as it is impossible to register the AppContainer SID.
The CldFlt service could not start due to the error:
This request is not supported.
Realtek PCIe GBE Family Controller is disconnected from network.