﻿info.txt logfile of random's system information tool 1.10 2015-05-02 20:11:03

======MBR======

0x00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000008940F1AF000000000200EEFFFFFF01000000FFFFFFFF00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000055AA

======Uninstall list======

Adobe Acrobat 4.0-->C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files (x86)\Common Files\Adobe\Acrobat 4.0\NT\Uninst.isu" -c"C:\Program Files (x86)\Common Files\Adobe\Acrobat 4.0\NT\Uninst.dll"
Adobe Flash Player 17 NPAPI-->C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_Plugin.exe -maintain plugin
Adobe Flash Player 17 PPAPI-->C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_pepper.exe -maintain pepperplugin
Adobe Reader 6.0 CE-->MsiExec.exe /I{AC76BA86-7AD7-1029-7646-CE0000000001}
AMD Accelerated Video Transcoding-->MsiExec.exe /X{5F5497E9-7FA2-989E-C59E-461FA7066EC7}
AMD APP SDK Runtime-->MsiExec.exe /I{503F672D-6C84-448A-8F8F-4BC35AC83441}
AMD Catalyst Install Manager-->msiexec /q/x{DDC218E1-E342-62E5-EDE9-4838A6574085} REBOOT=ReallySuppress
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{3108C217-BE83-42E4-AE9E-A56A2A92E549}\setup.exe"  -runfromtemp -removeonly
Call of Duty(R) 2-->C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{D0A05794-48C2-4424-A15A-9F20FCFDD374} /l2057 
Catalyst Control Center - Branding-->MsiExec.exe /I{25A3B953-1423-3F15-640E-B620DD0F419A}
Catalyst Control Center - Branding-->MsiExec.exe /I{33FA327B-E7E2-4E38-BF1A-67DCE285BD5C}
Catalyst Control Center-->"C:\AMD\WU-CCC2\ccc2_install\WULaunchApp.exe" -uninstall
CCleaner-->"C:\Program Files (x86)\CCleaner\uninst.exe"
DAEMON Tools Lite-->C:\Program Files\DAEMON Tools Lite\uninst.exe
ETDWare PS/2-X64 11.6.4.001_WHQL-->%ProgramFiles%\Elantech\ETDUn_inst.exe
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Identity Card-->MsiExec.exe /X{3D9CB654-99AD-4301-89C6-0D12A790767C}
jetAudio Basic VX-->"C:\Program Files (x86)\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe" -runfromtemp -l0x0405  -removeonly
K-Lite Mega Codec Pack 9.7.0-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
Kodek 0.16 CZ-->"C:\Program Files (x86)\Kodek CZ\unins000.exe"
Launch Manager-->C:\Windows\UNINSTLMv7.EXE LMv7.UNI
Live Updater-->MsiExec.exe /X{EE26E302-876A-48D9-9058-3129E5B99999}
Malwarebytes Anti-Malware verze 2.0.4.1028-->"C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe"
Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64)-->MsiExec.exe /I{E9F0BCD8-6BD5-1ED7-EDA3-9FCF2A478AA1}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110405-6000-11D3-8CFE-0150048383C9}
Microsoft Office-->MsiExec.exe /X{95140000-0070-0000-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727-->"C:\ProgramData\Package Cache\{15134cb0-b767-4960-a911-f2d16ae54797}\vcredist_x64.exe"  /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727-->"C:\ProgramData\Package Cache\{22154f09-719a-4619-bb71-5b3356999fbf}\vcredist_x86.exe"  /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727-->MsiExec.exe /X{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727-->MsiExec.exe /X{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}
Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13}
Nero 12 Essentials OEM.a01-->MsiExec.exe /I{9BF0D9FE-9893-4647-81B9-17B7BEA4E6FD}
Nero BackItUp 12 Essentials OEM.a01-->MsiExec.exe /I{B2B0EC73-AD4A-4716-A3DE-CEA8440B309B}
Nero BackItUp Help (CHM)-->MsiExec.exe /X{EF0D1292-8FC1-41BE-9740-DBC134F66415}
Nero BackItUp-->MsiExec.exe /X{E70B2F2C-94D1-4287-B5B0-CBBE618E2652}
Nero ControlCenter Help (CHM)-->MsiExec.exe /X{C994C746-C6D0-4EBA-B09E-DF7B18381B69}
Nero ControlCenter-->MsiExec.exe /X{ABC88553-8770-4B97-B43E-5A90647A5B63}
Nero Core Components-->MsiExec.exe /X{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}
Nero Express Help (CHM)-->MsiExec.exe /X{0708FF30-78C0-47B0-81F0-C84604DC769C}
Nero Express-->MsiExec.exe /X{848A7C68-0ADC-4193-8A89-2CEA78E56A0C}
Nero Launcher-->MsiExec.exe /X{0E4630AF-0AB7-440E-A978-1A78FC4F43B9}
Nero RescueAgent Help (CHM)-->MsiExec.exe /X{0B311221-05A5-4766-8D03-7A6446794156}
Nero RescueAgent-->MsiExec.exe /X{A2D43081-CF7B-4637-A9F3-E2651AA5C4A8}
Nero Update-->MsiExec.exe /X{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}
Ogg Vorbis ACM Codec-->C:\Windows\system32\rundll32.exe setupapi,InstallHinfSection Remove_ACM 132 C:\Windows\INF\Vorbis.inf
Opera Stable 29.0.1795.47-->"C:\Program Files (x86)\Opera\Launcher.exe" /uninstall
Packard Bell Device Fast-lane-->MsiExec.exe /i {3F62D2FD-13C1-49A2-8B5D-47623D9460D7} PRODUCTNAME="Packard Bell Device Fast-lane" BRANDNAME="Packard Bell" ISDT=0
Packard Bell Power Management-->MsiExec.exe /i {91F52DE4-B789-42B0-9311-A349F10E5479} PRODUCTNAME="Packard Bell Power Management" BRANDNAME="Packard Bell" NEWUPGRADE=0 ISDT=0
Packard Bell Recovery Management-->Msiexec.exe /i {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} PACKARDBELL=1 PRODUCTNAME="Packard Bell Recovery Management" REMOVEUSEC=1 BOOTSTRATOR=1 ACERPRELOAD=1
PokerStars.eu-->"C:\Program Files (x86)\PokerStars.EU\PokerStarsUninstall.exe" /u:PokerStars.eu
Qualcomm Atheros WiFi Driver Installation-->"C:\Program Files (x86)\InstallShield Installation Information\{28006915-2739-4EBE-B5E8-49B25D32EB33}\setup.exe" -runfromtemp -l0x0409  -removeonly
Realtek High Definition Audio Driver-->C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe -r -m -nrg2709
SketchUp 2013-->MsiExec.exe /X{B75BC01B-4586-43F8-9349-D250DB98F26F}
Skype™ 6.18-->MsiExec.exe /X{1845470B-EB14-4ABC-835B-E36C693DC07D}
Unity Web Player (All users)-->C:\Program Files (x86)\Unity\WebPlayer\Uninstall.exe /AllUsers
VLC media player 2.1.2-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe
WinRAR 4.11 (32-bit)-->C:\Program Files (x86)\WinRAR\uninstall.exe

======System event log======

Computer Name: Ondra
Event Code: 6013
Message: Doba provozu systému je 100654 sekund.
Record Number: 12791
Source Name: EventLog
Time Written: 20131031110000.000000-000
Event Type: Informace
User: 

Computer Name: Ondra
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe (ID procesu: 1964) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 12790
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20131031064031.974576-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Ondra
Event Code: 7040
Message: Režim spuštění služby Služba inteligentního přenosu na pozadí byl změněn z spouštění na vyžádání na automatické spouštění.
Record Number: 12789
Source Name: Service Control Manager
Time Written: 20131031064031.951574-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Ondra
Event Code: 7040
Message: Režim spuštění služby Služba inteligentního přenosu na pozadí byl změněn z automatické spouštění na spouštění na vyžádání.
Record Number: 12788
Source Name: Service Control Manager
Time Written: 20131031050927.704370-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Ondra
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe (ID procesu: 1964) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 12787
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20131031042305.155561-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

=====Application event log=====

Computer Name: Ondra
Event Code: 1001
Message: Chybný blok 98863797779, typ 5
Název události: MoAppCrash
Reakce: Není k dispozici.
ID souboru CAB: 0

Podpis problému:
P1: CyberLinkCorp.ac.SocialNetworks_1.0.2228.0_neutral__ypz87dpxkv292
P2: praid:App
P3: 6.3.9600.17031
P4: 53085927
P5: KERNELBASE.dll
P6: 6.3.9600.17278
P7: 53eebf2e
P8: 00000004
P9: 000000000000606c
P10: 

Připojené soubory:
C:\Users\Blein\AppData\Local\Temp\WER835E.tmp.WERInternalMetadata.xml

Tyto soubory mohou být k dispozici zde:
C:\Users\Blein\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_CyberLinkCorp.ac_938596d7ca5ad5e1d03d7d9eb34ba3c35d4b3a1_2d7c3d44_42d19c93

Symbol analýzy: 
Opětovné hledání řešení: 0
ID hlášení: ac4e9b03-b1d2-11e4-bee8-b888e3bface5
Stav hlášení: 0
Zakódovaný interval: da14275ba6bb11487922404d066e976d
Record Number: 90516
Source Name: Windows Error Reporting
Time Written: 20150211094520.000000-000
Event Type: Informace
User: 

Computer Name: Ondra
Event Code: 902
Message: Služba Ochrana softwaru byla spuštěna.
6.3.9600.16497
Record Number: 90515
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20150211094518.000000-000
Event Type: Informace
User: 

Computer Name: Ondra
Event Code: 1003
Message: Služba Ochrana softwaru dokončila kontrolu stavu licencování.
ID aplikace=55c92734-d682-4d71-983e-d6ec3f16059f
Stav licencování=
1: 0cdc4d08-6df6-4eb4-b5b4-a373c3e351e7, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
2: 625cc89b-693d-45c4-9967-123877fc41e4, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
3: 9a8645c4-8908-49bb-8eec-6671a533b17a, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
4: 9e263fcf-ef40-428c-8aa1-40e09e2994db, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
5: 9e4b231b-3e45-41f4-967f-c914f178b6ac, 1, 1 [(0 [0x00000000, 1, 0], [(?)( 1 0x00000000)(?)( 2 0x00000000 0 0 msft:rm/algorithm/hwid/4.0 0x00000000 0)(?)(?)( 10 0x00000000 msft:rm/algorithm/flags/1.0)(?)])(1 )(2 )]
6: b080aea2-e6c5-4b22-838e-fa4a21c931e3, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
7: bbc56067-37f8-49dd-87b2-a418a9ba130a, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
8: bf4b3af6-c071-496d-bfcc-5f0dc12c7798, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
9: c752c2e0-7c17-4af4-bba6-6f8aa1e698bc, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
10: c7c00280-b24d-4e82-89ca-4f1288eb1d9e, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
11: fe1c3238-432a-43a1-8e25-97e7d1ef10f3, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]
12: 4a8149bb-7d61-49f4-8822-82c7bf88d64b, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)(?)(?)])(1 )(2 )]


Record Number: 90514
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20150211094518.000000-000
Event Type: Informace
User: 

Computer Name: Ondra
Event Code: 1066
Message: Inicializační stav pro objekty služby
C:\WINDOWS\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:rm/algorithm/inherited/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:rm/algorithm/pkey/detect, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/ActionScheduler/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/statecollector/pkey, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\WINDOWS\system32\sppobjs.dll, msft:spp/volume/services/kms/activationinfo/1.0, 0x00000000, 0x00000000

Record Number: 90513
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20150211094518.000000-000
Event Type: Informace
User: 

Computer Name: Ondra
Event Code: 900
Message: Služba Ochrana softwaru se spouští.
Parametry:caller=svchost.exe
Record Number: 90512
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20150211094518.000000-000
Event Type: Informace
User: 

=====Security event log=====

Computer Name: Ondra
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
	ID zabezpečení:		S-1-5-18
	Název účtu:		ONDRA$
	Doména účtu:		WORKGROUP
	ID přihlášení:		0x3E7

Objekt:
	Server objektu:	Security
	Typ objektu:	File
	Název objektu:	C:\Windows\SysWOW64\wintrust.dll
	ID popisovače:	0x40

Informace o procesu:
	ID procesu:	0x8db8
	Název procesu:	C:\Windows\System32\poqexec.exe

Nastavení auditu:
	Původní popisovač zabezpečení:	S:AI
	Nový popisovač zabezpečení:		S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 133929
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150308082830.906231-000
Event Type: Úspěšný audit
User: 

Computer Name: Ondra
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
	ID zabezpečení:		S-1-5-18
	Název účtu:		ONDRA$
	Doména účtu:		WORKGROUP
	ID přihlášení:		0x3E7

Objekt:
	Server objektu:	Security
	Typ objektu:	File
	Název objektu:	C:\Windows\SysWOW64\PlaySndSrv.dll
	ID popisovače:	0x28

Informace o procesu:
	ID procesu:	0x8db8
	Název procesu:	C:\Windows\System32\poqexec.exe

Nastavení auditu:
	Původní popisovač zabezpečení:	S:AI
	Nový popisovač zabezpečení:		S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 133928
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150308082830.890617-000
Event Type: Úspěšný audit
User: 

Computer Name: Ondra
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
	ID zabezpečení:		S-1-5-18
	Název účtu:		ONDRA$
	Doména účtu:		WORKGROUP
	ID přihlášení:		0x3E7

Objekt:
	Server objektu:	Security
	Typ objektu:	File
	Název objektu:	C:\Windows\SysWOW64\NapiNSP.dll
	ID popisovače:	0x40

Informace o procesu:
	ID procesu:	0x8db8
	Název procesu:	C:\Windows\System32\poqexec.exe

Nastavení auditu:
	Původní popisovač zabezpečení:	S:AI
	Nový popisovač zabezpečení:		S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 133927
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150308082830.859410-000
Event Type: Úspěšný audit
User: 

Computer Name: Ondra
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
	ID zabezpečení:		S-1-5-18
	Název účtu:		ONDRA$
	Doména účtu:		WORKGROUP
	ID přihlášení:		0x3E7

Objekt:
	Server objektu:	Security
	Typ objektu:	File
	Název objektu:	C:\Windows\SysWOW64\WMVENCOD.DLL
	ID popisovače:	0x3c

Informace o procesu:
	ID procesu:	0x8db8
	Název procesu:	C:\Windows\System32\poqexec.exe

Nastavení auditu:
	Původní popisovač zabezpečení:	S:AI
	Nový popisovač zabezpečení:		S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 133926
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150308082830.812494-000
Event Type: Úspěšný audit
User: 

Computer Name: Ondra
Event Code: 4907
Message: Nastavení auditu objektu se změnila.

Předmět:
	ID zabezpečení:		S-1-5-18
	Název účtu:		ONDRA$
	Doména účtu:		WORKGROUP
	ID přihlášení:		0x3E7

Objekt:
	Server objektu:	Security
	Typ objektu:	File
	Název objektu:	C:\Windows\SysWOW64\Windows.Media.Devices.dll
	ID popisovače:	0x40

Informace o procesu:
	ID procesu:	0x8db8
	Název procesu:	C:\Windows\System32\poqexec.exe

Nastavení auditu:
	Původní popisovač zabezpečení:	S:AI
	Nový popisovač zabezpečení:		S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
Record Number: 133925
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150308082830.781235-000
Event Type: Úspěšný audit
User: 

======Environment variables======

"FP_NO_HOST_CHECK"=NO
"USERNAME"=SYSTEM
"ComSpec"=%SystemRoot%\system32\cmd.exe
"TMP"=%SystemRoot%\TEMP
"OS"=Windows_NT
"windir"=%SystemRoot%
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=20
"PROCESSOR_IDENTIFIER"=AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD
"PROCESSOR_REVISION"=0200
"Path"=C:\Program Files (x86)\AMD APP\bin\x86_64;C:\Program Files (x86)\AMD APP\bin\x86;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static
"AMDAPPSDKROOT"=C:\Program Files (x86)\AMD APP\

-----------------EOF-----------------
