Self explanatory. But the stop operation may be normal, for example shutdown/reboot of the computer, or abnormal, but I never encountered such situation and this event. An abnormal stop will be accompanied by some error events.
Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.
Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.