Level Date and Time Source Event ID Task Category Information 10/11/2011 7:16:52 PM Microsoft-Windows-TaskScheduler 102 Task completed "Task Scheduler successfully finished ""{D9673662-99A4-4C1F-B6B1-D8969A4A3BC3}"" instance of the ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" task for user ""MFUAE\Administrator""." Information 10/11/2011 7:16:52 PM Microsoft-Windows-TaskScheduler 201 Action completed "Task Scheduler successfully completed task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" , instance ""{D9673662-99A4-4C1F-B6B1-D8969A4A3BC3}"" , action ""C:\Windows\system32\msfeedssync.exe"" with return code 0." Information 10/11/2011 7:16:52 PM Microsoft-Windows-TaskScheduler 140 Task registration updated "User ""MFUAE\Administrator"" updated Task Scheduler task ""User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}""" Information 10/11/2011 7:16:46 PM Microsoft-Windows-TaskScheduler 129 Created Task Process "Task Scheduler launch task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" , instance ""C:\Windows\system32\msfeedssync.exe"" with process ID 9592." Information 10/11/2011 7:16:46 PM Microsoft-Windows-TaskScheduler 100 Task Started "Task Scheduler started ""{D9673662-99A4-4C1F-B6B1-D8969A4A3BC3}"" instance of the ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" task for user ""MFUAE\Administrator""." Information 10/11/2011 7:16:46 PM Microsoft-Windows-TaskScheduler 319 Task Engine received message to start task "Task Engine ""S-1-5-21-2359375962-3853846103-3125085405-500:MFUAE\administrator:Interactive:[2]"" received a message from Task Scheduler service requesting to launch task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" ." Information 10/11/2011 7:16:46 PM Microsoft-Windows-TaskScheduler 200 Action started "Task Scheduler launched action ""C:\Windows\system32\msfeedssync.exe"" in instance ""{D9673662-99A4-4C1F-B6B1-D8969A4A3BC3}"" of task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}""." Information 10/11/2011 7:16:46 PM Microsoft-Windows-TaskScheduler 107 Task triggered on scheduler "Task Scheduler launched ""{D9673662-99A4-4C1F-B6B1-D8969A4A3BC3}"" instance of task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" due to a time trigger condition." Information 10/11/2011 7:09:48 PM Microsoft-Windows-Security-Auditing 4634 Logoff "An account was logged off. Subject: Security ID: MFUAE\nbuadmin Account Name: nbuadmin Account Domain: MFUAE Logon ID: 0xc1997610 Logon Type: 3 This event is generated when a logon session is destroyed. It may be positively correlated with a logon event using the Logon ID value. Logon IDs are only unique between reboots on the same computer." Information 10/11/2011 7:09:37 PM Microsoft-Windows-Security-Auditing 4624 Logon "An account was successfully logged on. Subject: Security ID: NULL SID Account Name: - Account Domain: - Logon ID: 0x0 Logon Type: 3 New Logon: Security ID: MFUAE\nbuadmin Account Name: nbuadmin Account Domain: MFUAE Logon ID: 0xc1997610 Logon GUID: {A8BCF74B-8C95-B193-A3D0-C8BA4AFA6F67} Process Information: Process ID: 0x0 Process Name: - Network Information: Workstation Name: Source Network Address: 192.168.1.81 Source Port: 59456 Detailed Authentication Information: Logon Process: Kerberos Authentication Package: Kerberos Transited Services: - Package Name (NTLM only): - Key Length: 0 This event is generated when a logon session is created. It is generated on the computer that was accessed. The subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe. The logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network). The New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on. The network fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases. The authentication information fields provide detailed information about this specific logon request. - Logon GUID is a unique identifier that can be used to correlate this event with a KDC event. - Transited services indicate which intermediate services have participated in this logon request. - Package name indicates which sub-protocol was used among the NTLM protocols. - Key length indicates the length of the generated session key. This will be 0 if no session key was requested." Information 10/11/2011 7:09:37 PM Microsoft-Windows-Security-Auditing 4672 Special Logon "Special privileges assigned to new logon. Subject: Security ID: MFUAE\nbuadmin Account Name: nbuadmin Account Domain: MFUAE Logon ID: 0xc1997610 Privileges: SeSecurityPrivilege SeBackupPrivilege SeRestorePrivilege SeTakeOwnershipPrivilege SeDebugPrivilege SeSystemEnvironmentPrivilege SeLoadDriverPrivilege SeImpersonatePrivilege" Information 10/11/2011 7:07:18 PM Microsoft-Windows-GroupPolicy 5315 None Next policy processing for MFUAE\MANAGMENT-SRV$ will be attempted in 91 minutes. Information 10/11/2011 7:07:18 PM Microsoft-Windows-GroupPolicy 8006 None Completed periodic policy processing for computer MFUAE\MANAGMENT-SRV$ in 4 seconds. Information 10/11/2011 7:07:18 PM Microsoft-Windows-GroupPolicy 5320 None Finished checking for non-system extensions. Information 10/11/2011 7:07:18 PM Microsoft-Windows-GroupPolicy 5320 None Service configuration update to standalone is not required and will be skipped. Information 10/11/2011 7:07:18 PM Microsoft-Windows-GroupPolicy 5320 None Checking for Group Policy client extensions that are not part of the system. Information 10/11/2011 7:07:18 PM Microsoft-Windows-GroupPolicy 5314 None A fast link was detected. The Estimated bandwidth is 293396 kbps. The slow link threshold is 500 kbps. Information 10/11/2011 7:07:18 PM Microsoft-Windows-GroupPolicy 5327 None Estimated network bandwidth on one of the connections: 293396 kbps. Information 10/11/2011 7:07:18 PM Microsoft-Windows-GroupPolicy 5327 None Estimated network bandwidth on one of the connections: 0 kbps. Information 10/11/2011 7:07:16 PM Microsoft-Windows-Security-Auditing 4634 Logoff "An account was logged off. Subject: Security ID: SYSTEM Account Name: MANAGMENT-SRV$ Account Domain: MFUAE Logon ID: 0xc19850c8 Logon Type: 3 This event is generated when a logon session is destroyed. It may be positively correlated with a logon event using the Logon ID value. Logon IDs are only unique between reboots on the same computer." Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 5313 None "The following Group Policy objects were not applicable because they were filtered out : Local Group Policy Not Applied (Empty) " Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 5312 None "List of applicable Group Policy objects: Default Domain Policy " Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 5017 None "The system calls to access specified file completed. \\mfuae.local\sysvol\mfuae.local\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini The call completed in 62 milliseconds." Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 4017 None "Making system calls to access specified file. \\mfuae.local\sysvol\mfuae.local\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini" Information 10/11/2011 7:07:16 PM Microsoft-Windows-Security-Auditing 4624 Logon "An account was successfully logged on. Subject: Security ID: NULL SID Account Name: - Account Domain: - Logon ID: 0x0 Logon Type: 3 New Logon: Security ID: SYSTEM Account Name: MANAGMENT-SRV$ Account Domain: MFUAE Logon ID: 0xc19850c8 Logon GUID: {9CB72FD9-4A80-3373-5CD0-81CAE4252BE8} Process Information: Process ID: 0x0 Process Name: - Network Information: Workstation Name: Source Network Address: ::1 Source Port: 0 Detailed Authentication Information: Logon Process: Kerberos Authentication Package: Kerberos Transited Services: - Package Name (NTLM only): - Key Length: 0 This event is generated when a logon session is created. It is generated on the computer that was accessed. The subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe. The logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network). The New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on. The network fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases. The authentication information fields provide detailed information about this specific logon request. - Logon GUID is a unique identifier that can be used to correlate this event with a KDC event. - Transited services indicate which intermediate services have participated in this logon request. - Package name indicates which sub-protocol was used among the NTLM protocols. - Key length indicates the length of the generated session key. This will be 0 if no session key was requested." Information 10/11/2011 7:07:16 PM Microsoft-Windows-Security-Auditing 4672 Special Logon "Special privileges assigned to new logon. Subject: Security ID: SYSTEM Account Name: MANAGMENT-SRV$ Account Domain: MFUAE Logon ID: 0xc19850c8 Privileges: SeSecurityPrivilege SeBackupPrivilege SeRestorePrivilege SeTakeOwnershipPrivilege SeDebugPrivilege SeSystemEnvironmentPrivilege SeLoadDriverPrivilege SeImpersonatePrivilege" Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 5311 None "The loopback policy processing mode is ""No loopback mode""." Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 5310 None "Account details: Account Name : CN=managment-srv,CN=Computers,DC=mfuae,DC=local Account Domain Name : mfuae.local DC Name : \\W2K8-DC1.mfuae.local DC Domain Name : mfuae.local" Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 5309 None "Computer details: Computer role : 2 Network name : " Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 5326 None Group Policy successfully discovered the Domain Controller in 2012 milliseconds. Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 5308 None "Domain Controller details: Domain Controller Name : \\W2K8-DC1.mfuae.local Domain Controller IP Address : \\192.168.1.4" Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 5017 None "The LDAP call to connect and bind to Active Directory completed. W2K8-DC1.mfuae.local The call completed in 15 milliseconds." Information 10/11/2011 7:07:16 PM Microsoft-Windows-GroupPolicy 4017 None "Making LDAP calls to connect and bind to Active Directory. W2K8-DC1.mfuae.local" Information 10/11/2011 7:07:14 PM Microsoft-Windows-GroupPolicy 5320 None Retrieving Domain Controller details. Information 10/11/2011 7:07:14 PM Microsoft-Windows-GroupPolicy 4326 None Group Policy is trying to discover the Domain Controller information. Information 10/11/2011 7:07:14 PM Microsoft-Windows-GroupPolicy 4017 None "Making system call to get account information. " Information 10/11/2011 7:07:14 PM Microsoft-Windows-GroupPolicy 5320 None Retrieved account information. Information 10/11/2011 7:07:14 PM Microsoft-Windows-GroupPolicy 5320 None Attempting to retrieve the account information. Information 10/11/2011 7:07:14 PM Microsoft-Windows-GroupPolicy 5017 None "The system call to get account information completed. CN=managment-srv,CN=Computers,DC=mfuae,DC=local The call completed in 0 milliseconds." Information 10/11/2011 7:07:14 PM Microsoft-Windows-GroupPolicy 4006 None "Starting periodic policy processing for computer MFUAE\MANAGMENT-SRV$. Activity id: {2F130130-F98A-46E8-BC69-D91C4E932936}" Information 10/11/2011 7:01:48 PM Microsoft-Windows-TaskScheduler 102 Task completed "Task Scheduler successfully finished ""{A4C27254-557C-47C3-BD76-42A9CB712B9F}"" instance of the ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" task for user ""MFUAE\Administrator""." Information 10/11/2011 7:01:48 PM Microsoft-Windows-TaskScheduler 201 Action completed "Task Scheduler successfully completed task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" , instance ""{A4C27254-557C-47C3-BD76-42A9CB712B9F}"" , action ""C:\Windows\system32\msfeedssync.exe"" with return code 0." Information 10/11/2011 7:01:47 PM Microsoft-Windows-TaskScheduler 140 Task registration updated "User ""MFUAE\Administrator"" updated Task Scheduler task ""User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}""" Information 10/11/2011 7:01:44 PM Microsoft-Windows-TaskScheduler 129 Created Task Process "Task Scheduler launch task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" , instance ""C:\Windows\system32\msfeedssync.exe"" with process ID 8872." Information 10/11/2011 7:01:44 PM Microsoft-Windows-TaskScheduler 100 Task Started "Task Scheduler started ""{A4C27254-557C-47C3-BD76-42A9CB712B9F}"" instance of the ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" task for user ""MFUAE\Administrator""." Information 10/11/2011 7:01:44 PM Microsoft-Windows-TaskScheduler 200 Action started "Task Scheduler launched action ""C:\Windows\system32\msfeedssync.exe"" in instance ""{A4C27254-557C-47C3-BD76-42A9CB712B9F}"" of task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}""." Information 10/11/2011 7:01:44 PM Microsoft-Windows-TaskScheduler 319 Task Engine received message to start task "Task Engine ""S-1-5-21-2359375962-3853846103-3125085405-500:MFUAE\administrator:Interactive:[2]"" received a message from Task Scheduler service requesting to launch task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" ." Information 10/11/2011 7:01:44 PM Microsoft-Windows-TaskScheduler 107 Task triggered on scheduler "Task Scheduler launched ""{A4C27254-557C-47C3-BD76-42A9CB712B9F}"" instance of task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" due to a time trigger condition." Information 10/11/2011 6:59:46 PM Microsoft-Windows-GroupPolicy 5315 None Next policy processing for MFUAE\Administrator will be attempted in 97 minutes. Information 10/11/2011 6:59:46 PM Microsoft-Windows-GroupPolicy 8007 None Completed periodic policy processing for user MFUAE\Administrator in 4 seconds. Information 10/11/2011 6:59:46 PM Microsoft-Windows-GroupPolicy 5320 None Finished checking for non-system extensions. Information 10/11/2011 6:59:46 PM Microsoft-Windows-GroupPolicy 5320 None Service configuration update to standalone is not required and will be skipped. Information 10/11/2011 6:59:46 PM Microsoft-Windows-GroupPolicy 5320 None Checking for Group Policy client extensions that are not part of the system. Information 10/11/2011 6:59:46 PM Microsoft-Windows-GroupPolicy 5314 None A fast link was detected. The Estimated bandwidth is 68681 kbps. The slow link threshold is 500 kbps. Information 10/11/2011 6:59:46 PM Microsoft-Windows-GroupPolicy 5327 None Estimated network bandwidth on one of the connections: 68681 kbps. Information 10/11/2011 6:59:46 PM Microsoft-Windows-GroupPolicy 5327 None Estimated network bandwidth on one of the connections: 0 kbps. Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 5313 None "The following Group Policy objects were not applicable because they were filtered out : Local Group Policy Not Applied (Empty) " Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 5312 None "List of applicable Group Policy objects: Default Domain Policy " Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 5017 None "The system calls to access specified file completed. \\mfuae.local\sysvol\mfuae.local\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini The call completed in 172 milliseconds." Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 4017 None "Making system calls to access specified file. \\mfuae.local\sysvol\mfuae.local\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini" Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 5310 None "Account details: Account Name : CN=Administrator,CN=Users,DC=mfuae,DC=local Account Domain Name : MFUAE.LOCAL DC Name : \\W2K8-DC1.mfuae.local DC Domain Name : MFUAE.LOCAL" Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 5309 None "Computer details: Computer role : 2 Network name : " Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 5326 None Group Policy successfully discovered the Domain Controller in 2012 milliseconds. Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 5308 None "Domain Controller details: Domain Controller Name : \\W2K8-DC1.mfuae.local Domain Controller IP Address : \\192.168.1.4" Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 5017 None "The LDAP call to connect and bind to Active Directory completed. W2K8-DC1.mfuae.local The call completed in 0 milliseconds." Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 4017 None "Making LDAP calls to connect and bind to Active Directory. W2K8-DC1.mfuae.local" Information 10/11/2011 6:59:44 PM Microsoft-Windows-GroupPolicy 5311 None "The loopback policy processing mode is ""No loopback mode""." Information 10/11/2011 6:59:42 PM Microsoft-Windows-GroupPolicy 5320 None Retrieved account information. Information 10/11/2011 6:59:42 PM Microsoft-Windows-GroupPolicy 5017 None "The system call to get account information completed. CN=Administrator,CN=Users,DC=mfuae,DC=local The call completed in 0 milliseconds." Information 10/11/2011 6:59:42 PM Microsoft-Windows-GroupPolicy 5320 None Retrieving Domain Controller details. Information 10/11/2011 6:59:42 PM Microsoft-Windows-GroupPolicy 4017 None "Making system call to get account information. " Information 10/11/2011 6:59:42 PM Microsoft-Windows-GroupPolicy 4326 None Group Policy is trying to discover the Domain Controller information. Information 10/11/2011 6:59:42 PM Microsoft-Windows-GroupPolicy 5320 None Attempting to retrieve the account information. Information 10/11/2011 6:59:42 PM Microsoft-Windows-GroupPolicy 4007 None "Starting periodic policy processing for user MFUAE\Administrator. Activity id: {0D762B59-EB8F-4EB1-ADF5-9C66BC6BEB33}" Information 10/11/2011 6:55:07 PM Microsoft-Windows-TaskScheduler 318 Task engine properly shut down "Task Scheduler shutdown Task Engine ""S-1-5-19:NT AUTHORITY\LocalService:Service:"" process." Information 10/11/2011 6:55:07 PM Microsoft-Windows-TaskScheduler 318 Task engine properly shut down "Task Scheduler shutdown Task Engine ""S-1-5-19:NT AUTHORITY\LocalService:Service:"" process." Information 10/11/2011 6:55:07 PM Microsoft-Windows-TaskScheduler 301 Task engine properly shut down "Task Scheduler is shutting down Task Engine ""S-1-5-19:NT AUTHORITY\LocalService:Service:""" Information 10/11/2011 6:50:07 PM Microsoft-Windows-TaskScheduler 314 Task Engine idle "Task Scheduler has no tasks running for Task Engine ""S-1-5-19:NT AUTHORITY\LocalService:Service:"" , and the idle timer has started." Information 10/11/2011 6:50:07 PM Microsoft-Windows-TaskScheduler 201 Action completed "Task Scheduler successfully completed task ""\Microsoft\Windows\RAC\RACAgent"" , instance ""{3E1EF5C5-F561-41C4-BE6C-D522D1EB9CF8}"" , action ""C:\Windows\system32\RacAgent.exe"" with return code 0." Information 10/11/2011 6:50:07 PM Microsoft-Windows-TaskScheduler 102 Task completed "Task Scheduler successfully finished ""{3E1EF5C5-F561-41C4-BE6C-D522D1EB9CF8}"" instance of the ""\Microsoft\Windows\RAC\RACAgent"" task for user ""NT AUTHORITY\LOCAL SERVICE""." Information 10/11/2011 6:50:07 PM Microsoft-Windows-Reliability-Analysis-Agent 1001 None Reliability Analysis execution time was 33 milliseconds. Information 10/11/2011 6:50:07 PM Microsoft-Windows-TaskScheduler 129 Created Task Process "Task Scheduler launch task ""\Microsoft\Windows\RAC\RACAgent"" , instance ""C:\Windows\system32\RacAgent.exe"" with process ID 10004." Information 10/11/2011 6:50:07 PM Microsoft-Windows-TaskScheduler 100 Task Started "Task Scheduler started ""{3E1EF5C5-F561-41C4-BE6C-D522D1EB9CF8}"" instance of the ""\Microsoft\Windows\RAC\RACAgent"" task for user ""NT AUTHORITY\LOCAL SERVICE""." Information 10/11/2011 6:50:07 PM Microsoft-Windows-TaskScheduler 200 Action started "Task Scheduler launched action ""%windir%\system32\RacAgent.exe"" in instance ""{3E1EF5C5-F561-41C4-BE6C-D522D1EB9CF8}"" of task ""\Microsoft\Windows\RAC\RACAgent""." Information 10/11/2011 6:50:07 PM Microsoft-Windows-TaskScheduler 317 Task Engine started "Task Scheduler started Task Engine ""S-1-5-19:NT AUTHORITY\LocalService:Service:"" process." Information 10/11/2011 6:50:07 PM Microsoft-Windows-TaskScheduler 319 Task Engine received message to start task "Task Engine ""S-1-5-19:NT AUTHORITY\LocalService:Service:"" received a message from Task Scheduler service requesting to launch task ""\Microsoft\Windows\RAC\RACAgent"" ." Information 10/11/2011 6:50:07 PM Microsoft-Windows-TaskScheduler 310 Task Engine started "Task Scheduler started Task Engine ""S-1-5-19:NT AUTHORITY\LocalService:Service:"" process. Command=""taskeng.exe"" , ProcessID=7908, ThreadID=8908" Information 10/11/2011 6:46:45 PM Microsoft-Windows-TaskScheduler 140 Task registration updated "User ""MFUAE\Administrator"" updated Task Scheduler task ""User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}""" Information 10/11/2011 6:46:45 PM Microsoft-Windows-TaskScheduler 102 Task completed "Task Scheduler successfully finished ""{097395BD-BDD5-411D-A0A1-4E393F8E7D1B}"" instance of the ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" task for user ""MFUAE\Administrator""." Information 10/11/2011 6:46:45 PM Microsoft-Windows-TaskScheduler 201 Action completed "Task Scheduler successfully completed task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" , instance ""{097395BD-BDD5-411D-A0A1-4E393F8E7D1B}"" , action ""C:\Windows\system32\msfeedssync.exe"" with return code 0." Information 10/11/2011 6:46:13 PM Microsoft-Windows-TaskScheduler 129 Created Task Process "Task Scheduler launch task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" , instance ""C:\Windows\system32\msfeedssync.exe"" with process ID 9464." Information 10/11/2011 6:46:13 PM Microsoft-Windows-TaskScheduler 100 Task Started "Task Scheduler started ""{097395BD-BDD5-411D-A0A1-4E393F8E7D1B}"" instance of the ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" task for user ""MFUAE\Administrator""." Information 10/11/2011 6:46:13 PM Microsoft-Windows-TaskScheduler 200 Action started "Task Scheduler launched action ""C:\Windows\system32\msfeedssync.exe"" in instance ""{097395BD-BDD5-411D-A0A1-4E393F8E7D1B}"" of task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}""." Information 10/11/2011 6:46:13 PM Microsoft-Windows-TaskScheduler 107 Task triggered on scheduler "Task Scheduler launched ""{097395BD-BDD5-411D-A0A1-4E393F8E7D1B}"" instance of task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" due to a time trigger condition." Information 10/11/2011 6:46:13 PM Microsoft-Windows-TaskScheduler 319 Task Engine received message to start task "Task Engine ""S-1-5-21-2359375962-3853846103-3125085405-500:MFUAE\administrator:Interactive:[2]"" received a message from Task Scheduler service requesting to launch task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" ." Information 10/11/2011 6:31:13 PM Microsoft-Windows-TaskScheduler 102 Task completed "Task Scheduler successfully finished ""{43B7DC8C-374B-4B5D-919F-3EE4C040DE3D}"" instance of the ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" task for user ""MFUAE\Administrator""." Information 10/11/2011 6:31:13 PM Microsoft-Windows-TaskScheduler 140 Task registration updated "User ""MFUAE\Administrator"" updated Task Scheduler task ""User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}""" Information 10/11/2011 6:31:13 PM Microsoft-Windows-TaskScheduler 201 Action completed "Task Scheduler successfully completed task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" , instance ""{43B7DC8C-374B-4B5D-919F-3EE4C040DE3D}"" , action ""C:\Windows\system32\msfeedssync.exe"" with return code 0." Information 10/11/2011 6:30:43 PM Microsoft-Windows-TaskScheduler 129 Created Task Process "Task Scheduler launch task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" , instance ""C:\Windows\system32\msfeedssync.exe"" with process ID 9704." Information 10/11/2011 6:30:43 PM Microsoft-Windows-TaskScheduler 100 Task Started "Task Scheduler started ""{43B7DC8C-374B-4B5D-919F-3EE4C040DE3D}"" instance of the ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" task for user ""MFUAE\Administrator""." Information 10/11/2011 6:30:43 PM Microsoft-Windows-TaskScheduler 200 Action started "Task Scheduler launched action ""C:\Windows\system32\msfeedssync.exe"" in instance ""{43B7DC8C-374B-4B5D-919F-3EE4C040DE3D}"" of task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}""." Information 10/11/2011 6:30:43 PM Microsoft-Windows-TaskScheduler 107 Task triggered on scheduler "Task Scheduler launched ""{43B7DC8C-374B-4B5D-919F-3EE4C040DE3D}"" instance of task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" due to a time trigger condition." Information 10/11/2011 6:30:43 PM Microsoft-Windows-TaskScheduler 319 Task Engine received message to start task "Task Engine ""S-1-5-21-2359375962-3853846103-3125085405-500:MFUAE\administrator:Interactive:[2]"" received a message from Task Scheduler service requesting to launch task ""\User_Feed_Synchronization-{BE4770A8-10E3-4F12-A429-D68BF47A656E}"" ."