Preventivka po podezřelém programu
Napsal: 24 úno 2012 14:29
Zdravím,
Dneska jsem se pokoušel rozběhat emulátor XBoxu360 a zdá se, že je to asi fake, protože po spuštění nic nedělá a po vypnutí dál běží v procesech, tak jestli mohu požádat o kontrolu? Děkuji
info.txt logfile of random's system information tool 1.09 2012-02-24 14:20:06
======Uninstall list======
-->MsiExec /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
7-Zip 4.65-->"C:\Program Files (x86)\7-Zip\Uninstall.exe"
AaaaaAAaaaAAAaaAAAAaAAAAA!!! for the Awesome-->"Z:\Steam\steam.exe" steam://uninstall/15560
AC3Filter 1.63b-->"C:\Program Files (x86)\AC3Filter\unins000.exe"
Adobe Acrobat X Pro - Eastern European (Group 1)-->MsiExec.exe /I{AC76BA86-1029-4770-7760-000000000005}
Adobe AIR-->c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{ACEB2BAF-96DF-48FD-ADD5-43842D4C443D}
Adobe Community Help-->msiexec /qb /x {3521BDBD-D453-5D9F-AA55-44B75D214629}
Adobe Community Help-->MsiExec.exe /I{3521BDBD-D453-5D9F-AA55-44B75D214629}
Adobe Content Viewer-->msiexec /qb /x {4E33D05D-76CF-5D3C-4D5D-7727530FA161}
Adobe Content Viewer-->MsiExec.exe /I{4E33D05D-76CF-5D3C-4D5D-7727530FA161}
Adobe Creative Suite 5.5 Master Collection-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="1.0" --mode="Uninstall" --mediaSignature="{D57FC112-312E-4D70-860F-2DB8FB6858F0}"
Adobe Flash Player 10 ActiveX-->MsiExec.exe /X{B001064C-D061-4BAE-9031-416A838D5536}
Adobe Flash Player 11 Plugin 64-bit-->C:\Windows\system32\Macromed\Flash\FlashUtil64_11_1_102_Plugin.exe -maintain plugin
Adobe Story-->msiexec /qb /x {C28DD992-5B7B-D195-6841-4EC57DF512BD}
Adobe Story-->MsiExec.exe /I{C28DD992-5B7B-D195-6841-4EC57DF512BD}
Adobe Widget Browser-->msiexec /qb /x {BDE646E8-86E0-50E1-37BC-0AEBB2185D76}
Adobe Widget Browser-->MsiExec.exe /I{BDE646E8-86E0-50E1-37BC-0AEBB2185D76}
Advertising Center-->MsiExec.exe /X{9F3523F8-DAD7-AE52-6DA7-45CDDDF33726}
Aktualizace NVIDIA 1.4.28-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.Update
Anomaly Warzone Earth-->"Z:\Steam\steam.exe" steam://uninstall/91200
Anti-Vibrate Oscar Editor-->"C:\Program Files (x86)\InstallShield Installation Information\{55FB908F-A025-4118-9354-ABD4979203F9}\setup.exe" -runfromtemp -l0x0409 -removeonly
Apple Application Support-->MsiExec.exe /I{343666E2-A059-48AC-AD67-230BF74E2DB2}
Apple Mobile Device Support-->MsiExec.exe /I{75104836-CAC7-444E-A39E-3F54151942F5}
Apple Software Update-->MsiExec.exe /I{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
Aquaria-->"Z:\Steam\steam.exe" steam://uninstall/24420
Asmedia ASM104x USB 3.0 Host Controller Driver-->MsiExec.exe /X{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}
Aston 2.0.3-->C:\Program Files\Aston2\uninst.exe
ATI Catalyst Install Manager-->msiexec /q/x{AB7F4312-8037-4EBF-9D0F-5513CDFD534C} REBOOT=ReallySuppress
AVer MediaCenter 3D-->C:\Program Files (x86)\InstallShield Installation Information\{D2912CB2-F95A-406C-AA88-2BB5DCB6D275}\setup.exe -runfromtemp -l0x0405
AVerMedia Applications-->C:\Program Files (x86)\InstallShield Installation Information\{92C41B26-EBC5-41C5-8B6F-E3EF7E57FF16}\setup.exe -runfromtemp -l0x0405
AVerMedia H727 PCIe TV Tuner 1.12.64.49-->C:\Program Files (x86)\AVerMedia\AVerMedia H727 PCIe TV Tuner\uninst.exe
Bass Audio Decoder (remove only)-->"C:\Program Files (x86)\Bass Audio Decoder\uninstall.exe"
BIT.TRIP RUNNER-->"Z:\Steam\steam.exe" steam://uninstall/63710
Blender-->"C:\Program Files\Blender Foundation\Blender\uninstall.exe"
Blocks That Matter-->"Z:\Steam\steam.exe" steam://uninstall/111800
Blood Bowl: Dark Elves Edition-->"Z:\Steam\steam.exe" steam://uninstall/11170
Bonjour-->MsiExec.exe /X{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
Brink-->"Z:\Steam\steam.exe" steam://uninstall/22350
Call of Cthulhu: Dark Corners of the Earth-->"Z:\Steam\steam.exe" steam://uninstall/22340
Cave Story+-->"Z:\Steam\steam.exe" steam://uninstall/200900
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CD Audio Reader Filter (remove only)-->"C:\Program Files (x86)\CD Audio Reader Filter\uninstall.exe"
CivCity: Rome-->"Z:\Steam\steam.exe" steam://uninstall/3980
C-Media Card Reader Driver USB2.0-->C:\Windows\system32\CmUCRRm_x64.exe
Command & Conquer The First Decade-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{66D6F3BD-CA23-41A4-9FA3-96B26B32528C}\setup.exe" -l0x9 -removeonly
Counter-Strike: Source Beta-->"Z:\Steam\steam.exe" steam://uninstall/260
Counter-Strike: Source-->"Z:\Steam\steam.exe" steam://uninstall/240
Crayon Physics Deluxe-->"Z:\Steam\steam.exe" steam://uninstall/26900
Creeper World 2 Editor-->msiexec /qb /x {B8BB90ED-B759-37E5-4071-12C25F719310}
Creeper World 2 Editor-->MsiExec.exe /I{B8BB90ED-B759-37E5-4071-12C25F719310}
Creeper World 2-->msiexec /qb /x {234F5FD0-7C56-D5AF-E46A-E00231D6D99F}
Creeper World 2-->MsiExec.exe /I{234F5FD0-7C56-D5AF-E46A-E00231D6D99F}
Creeper World-->msiexec /qb /x {D0F36487-AD00-6B57-A525-00FD184B02EB}
Creeper World-->MsiExec.exe /I{D0F36487-AD00-6B57-A525-00FD184B02EB}
CrimeCraft GangWars-->"Z:\Steam\steam.exe" steam://uninstall/38830
DAEMON Tools Pro-->C:\Program Files (x86)\DAEMON Tools Pro\uninst.exe
Darwinia-->"Z:\Steam\steam.exe" steam://uninstall/1500
DCoder Image Source (remove only)-->"C:\Program Files (x86)\DCoder Image Source\uninstall.exe"
DEFCON-->"Z:\Steam\steam.exe" steam://uninstall/1520
DirectVobSub (remove only)-->"C:\Program Files (x86)\DirectVobSub\uninstall.exe"
DScaler 5 Mpeg Decoders-->"C:\Program Files (x86)\DScaler5\unins000.exe"
Duke Nukem Forever-->"Z:\Steam\steam.exe" steam://uninstall/57900
Dungeons of Dredmor-->"Z:\Steam\steam.exe" steam://uninstall/98800
DVR-Studio Pro-->"C:\Program Files (x86)\DVR-Studio Pro\Uninstall.exe" "C:\Program Files (x86)\DVR-Studio Pro\install.log"
E.Y.E - Dedicated Server-->"Z:\Steam\steam.exe" steam://uninstall/91720
E.Y.E: Divine Cybermancy-->"Z:\Steam\steam.exe" steam://uninstall/91700
EDGE-->"Z:\Steam\steam.exe" steam://uninstall/38740
Fallen Earth-->"Z:\Steam\steam.exe" steam://uninstall/113420
Fallout 3 - Game of the Year Edition-->"Z:\Steam\steam.exe" steam://uninstall/22370
Fallout: New Vegas-->"Z:\Steam\steam.exe" steam://uninstall/22490
ffdshow [rev 3124] [2009-11-03]-->"C:\Program Files (x86)\ffdshow\unins000.exe"
FFMPEG Core Files (remove only)-->"C:\Program Files (x86)\FFMPEG Core Files\uninstall.exe"
Flight Control HD-->"Z:\Steam\steam.exe" steam://uninstall/62000
Freedom Force vs. the 3rd Reich-->"Z:\Steam\steam.exe" steam://uninstall/8890
Freedom Force-->"Z:\Steam\steam.exe" steam://uninstall/8880
Frontlines: Fuel of War-->"Z:\Steam\steam.exe" steam://uninstall/9460
Full Spectrum Warrior: Ten Hammers-->"Z:\Steam\steam.exe" steam://uninstall/4530
Full Spectrum Warrior-->"Z:\Steam\steam.exe" steam://uninstall/4520
Gabest MPEG Splitter (remove only)-->"C:\Program Files (x86)\Gabest MPEG Splitter\uninstall.exe"
Garry's Mod-->"Z:\Steam\steam.exe" steam://uninstall/4000
Gish-->"Z:\Steam\steam.exe" steam://uninstall/9500
Google Earth Plug-in-->MsiExec.exe /X{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\17.0.963.56\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Gratuitous Space Battles-->"Z:\Steam\steam.exe" steam://uninstall/41800
GTR Evolution-->"Z:\Steam\steam.exe" steam://uninstall/8660
Guild Wars-->"D:\Program Files\Guild Wars\Gw.exe" -uninstall
Haali Media Splitter-->"C:\Program Files (x86)\Haali\MatroskaSplitter\uninstall.exe"
Half-Life 2: Episode One-->"Z:\Steam\steam.exe" steam://uninstall/380
Half-Life 2: Episode Two-->"Z:\Steam\steam.exe" steam://uninstall/420
Half-Life 2: Lost Coast-->"Z:\Steam\steam.exe" steam://uninstall/340
Half-Life 2-->"Z:\Steam\steam.exe" steam://uninstall/220
Hamachi 1.0.2.5-->C:\Program Files (x86)\Hamachi\uninstall.exe
HijackThis 2.0.2-->"C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hunted: The Demon's Forge-->"Z:\Steam\steam.exe" steam://uninstall/22450
Champions Online: Free For All-->"Z:\Steam\steam.exe" steam://uninstall/9880
Chantelise-->"Z:\Steam\steam.exe" steam://uninstall/70420
Cheat Engine 6.1-->"C:\Program Files (x86)\Cheat Engine 6.1\unins000.exe"
iTap 3.2-->MsiExec.exe /X{F5738877-7778-4FC3-B1CB-097D8A7B41CB}
iTunes-->MsiExec.exe /I{5E11C972-1E76-45FE-8F92-14E0D1140B1B}
Jamestown-->"Z:\Steam\steam.exe" steam://uninstall/94200
Java(TM) 6 Update 29-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216029FF}
Java(TM) 6 Update 30 (64-bit)-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F86416030FF}
JMicron JMB36X Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x9 -removeonly
Killing Floor Beta Dedicated Server-->"Z:\Steam\steam.exe" steam://uninstall/1273
Killing Floor SDK-->"Z:\Steam\steam.exe" steam://uninstall/1260
Last.fm 1.5.4.27091-->"C:\Program Files (x86)\Last.fm\unins000.exe"
Left 4 Dead 2 Add-on Support-->"Z:\Steam\steam.exe" steam://uninstall/564
Left 4 Dead 2 Authoring Tools-->"Z:\Steam\steam.exe" steam://uninstall/563
Left 4 Dead 2 Dedicated Server-->"Z:\Steam\steam.exe" steam://uninstall/560
Mafia-->"Z:\Steam\steam.exe" steam://uninstall/40990
Magic: The Gathering – Tactics-->"Z:\Steam\steam.exe" steam://uninstall/201190
Magicka-->"Z:\Steam\steam.exe" steam://uninstall/42910
Menu Templates - Starter Kit-->MsiExec.exe /X{B78120A0-CF84-4366-A393-4D0A59BC546C}
Metro 2033-->"Z:\Steam\steam.exe" steam://uninstall/43110
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /x64 /lcid 1029 /parameterfolder ClientLP
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->MsiExec.exe /X{790E02A1-145A-3843-8C13-A4F41C9B48B7}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /x64 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
Microsoft .NET Framework 4 Extended-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\Setup.exe /repair /x86 /x64 /parameterfolder Extended
Microsoft .NET Framework 4 Extended-->MsiExec.exe /X{8E34682C-8118-31F1-BC4C-98CD9675E1C2}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}
Microsoft Games for Windows Marketplace-->MsiExec.exe /X{4CB0307C-565E-4441-86BE-0DF2E4FB828C}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022-->MsiExec.exe /X{350AA351-21FA-3270-8B7A-835434E766AD}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319-->MsiExec.exe /X{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Xbox 360 Accessories 1.2-->MsiExec.exe /X{D9C50188-12D5-4D3E-8F00-682346C2AA5F}
Microsoft XNA Framework Redistributable 3.1-->MsiExec.exe /I{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}
Microsoft_VC80_ATL_x86_x64-->MsiExec.exe /I{925D058B-564A-443A-B4B2-7E90C6432E55}
Microsoft_VC80_ATL_x86-->MsiExec.exe /I{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}
Microsoft_VC80_CRT_x86_x64-->MsiExec.exe /I{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC80_MFC_x86_x64-->MsiExec.exe /I{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
Microsoft_VC80_MFC_x86-->MsiExec.exe /I{D1A19B02-817E-4296-A45B-07853FD74D57}
Microsoft_VC80_MFCLOC_x86_x64-->MsiExec.exe /I{1E9FC118-651D-4934-97BE-E53CAE5C7D45}
Microsoft_VC80_MFCLOC_x86-->MsiExec.exe /I{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
Microsoft_VC90_ATL_x86_x64-->MsiExec.exe /I{8557397C-A42D-486F-97B3-A2CBC2372593}
Microsoft_VC90_ATL_x86-->MsiExec.exe /I{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
Microsoft_VC90_CRT_x86_x64-->MsiExec.exe /I{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86_x64-->MsiExec.exe /I{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
Microsoft_VC90_MFC_x86-->MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
Microsoft_VC90_MFCLOC_x86_x64-->MsiExec.exe /I{90BF0360-A1DB-4599-A643-95AB90A52C1E}
Microsoft_VC90_MFCLOC_x86-->MsiExec.exe /I{B6D38690-755E-4F40-A35A-23F8BC2B86AC}
Mirror's Edge-->"Z:\Steam\steam.exe" steam://uninstall/17410
MLB 2K10-->"Z:\Steam\steam.exe" steam://uninstall/50120
MLB® Front Office Manager-->"Z:\Steam\steam.exe" steam://uninstall/7780
MONOGRAM AMR Splitter/Decoder (remove only)-->"C:\Program Files (x86)\MONOGRAM AMR SplitterDecoder\uninstall.exe"
Movie Templates - Starter Kit-->MsiExec.exe /X{E498385E-1C51-459A-B45F-1721E37AA1A0}
Mozilla Firefox 10.0.2 (x86 cs)-->C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Multiwinia-->"Z:\Steam\steam.exe" steam://uninstall/1530
NBA 2K10-->"Z:\Steam\steam.exe" steam://uninstall/40920
NBA 2K11-->"Z:\Steam\steam.exe" steam://uninstall/65950
NCsoft Launcher-->C:\Program Files (x86)\InstallShield Installation Information\{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}\setup.exe -runfromtemp -l0x0009 -removeonly
Nero 9 Essentials-->C:\Program Files (x86)\Common Files\Nero\Nero ProductInstaller 4\SetupX.exe REMOVESERIALNUMBER="2M0K-K085-4W59-U5LW-585P-W083-MM85-1Z8L-257X-66XA-TC3T-K1M8-3204-2A2C-5T2C-2408-4W3C-6482"
Nero BurnRights Help-->MsiExec.exe /X{F6BDD7C5-89ED-4569-9318-469AA9732572}
Nero BurnRights-->MsiExec.exe /X{7829DB6F-A066-4E40-8912-CB07887C20BB}
Nero CoverDesigner Help-->MsiExec.exe /X{CE96F5A5-584D-4F8F-AA3E-9BAED413DB72}
Nero CoverDesigner-->MsiExec.exe /X{62AC81F6-BDD3-4110-9D36-3E9EAAB40999}
Nero DiscSpeed Help-->MsiExec.exe /X{CC019E3F-59D2-4486-8D4B-878105B62A71}
Nero DiscSpeed-->MsiExec.exe /X{869200DB-287A-4DC0-B02B-2B6787FBCD4C}
Nero DriveSpeed Help-->MsiExec.exe /X{E5C7D048-F9B4-4219-B323-8BDB01A2563D}
Nero DriveSpeed-->MsiExec.exe /X{33CF58F5-48D8-4575-83D6-96F574E4D83A}
Nero Express Help-->MsiExec.exe /X{83202942-84B3-4C50-8622-B8C0AA2D2885}
Nero InfoTool Help-->MsiExec.exe /X{20400DBD-E6DB-45B8-9B6B-1DD7033818EC}
Nero InfoTool-->MsiExec.exe /X{FBCDFD61-7DCF-4E71-9226-873BA0053139}
Nero Online Upgrade-->MsiExec.exe /X{C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}
Nero ShowTime-->MsiExec.exe /X{D9DCF92E-72EB-412D-AC71-3B01276E5F8B}
Nero StartSmart Help-->MsiExec.exe /X{2348B586-C9AE-46CE-936C-A68E9426E214}
Nero StartSmart-->MsiExec.exe /X{7748AC8C-18E3-43BB-959B-088FAEA16FB2}
Nero Vision Help-->MsiExec.exe /X{5D9BE3C1-8BA4-4E7E-82FD-9F74FA6815D1}
Nero Vision-->MsiExec.exe /X{43E39830-1826-415D-8BAE-86845787B54B}
NeroExpress-->MsiExec.exe /X{595A3116-40BB-4E0F-A2E8-D7951DA56270}
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NightSky-->"Z:\Steam\steam.exe" steam://uninstall/99700
Nuclear Dawn-->"Z:\Steam\steam.exe" steam://uninstall/17710
NVIDIA 3D Vision Controller Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{714B9C6C-70FC-4750-98E2-61520B906C45}\setup.exe" -runfromtemp -l0x0009 -removeonly
NVIDIA Ovladač 3D Vision 280.26-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.3DVision
NVIDIA Ovladač HD audia 1.2.23.3-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage HDAudio.Driver
NVIDIA Ovladač řídící jednotky 3D Vision 280.19-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.NVIRUSB
NVIDIA Ovladače grafiky 280.26-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA PhysX-->MsiExec.exe /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
NVIDIA Stereoscopic 3D Driver-->"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
NVIDIA Systémový software PhysX 9.10.0514-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.PhysX
OnLive-->"C:\Program Files (x86)\OnLive\Uninstall.exe"
OpenAL-->"C:\Program Files (x86)\OpenAL\oalinst.exe" /U
OpenOffice.org 3.3-->MsiExec.exe /I{D5B94160-4A07-4956-9C73-8C5EEFEF180F}
OpenSource AVI Splitter (remove only)-->"C:\Program Files (x86)\OpenSource AVI Splitter\uninstall.exe"
OpenSource DTS/AC3/DD+ Source Filter (remove only)-->"C:\Program Files (x86)\OpenSource DTSAC3DD+ Source Filter\uninstall.exe"
OpenSource Flash Video Splitter (remove only)-->"C:\Program Files (x86)\OpenSource Flash Video Splitter\uninstall.exe"
OSCAR Editor-->MsiExec.exe /I{55FB908F-A025-4118-9354-ABD4979203F9}
Osmos-->"Z:\Steam\steam.exe" steam://uninstall/29180
Pando Media Booster-->C:\Program Files (x86)\Pando Networks\Media Booster\uninst.exe
PDF Settings CS5-->MsiExec.exe /I{A78FE97A-C0C8-49CE-89D0-EDD524A17392}
PJP's JoyIDs-->"C:\Program Files (x86)\PJP\JoyIDs\uninstall.exe"
Plain Sight-->"Z:\Steam\steam.exe" steam://uninstall/49900
PlayReady PC Runtime amd64-->MsiExec.exe /X{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}
Portal-->"Z:\Steam\steam.exe" steam://uninstall/400
Post Apocalyptic Mayhem-->"Z:\Steam\steam.exe" steam://uninstall/91900
Postal III-->"z:\Program Files (x86)\Akella Games\Postal 3\unins000.exe"
PSPad editor-->"C:\Program Files (x86)\PSPad editor\Uninst\unins000.exe"
Psychonauts-->"Z:\Steam\steam.exe" steam://uninstall/3830
PxMergeModule-->MsiExec.exe /I{024521CF-C07E-4F8E-8481-0D75695E03AF}
RACE 07 Dedicated Server-->"Z:\Steam\steam.exe" steam://uninstall/8610
RACE 07-->"Z:\Steam\steam.exe" steam://uninstall/8600
Railroad Tycoon 2: Platinum-->"Z:\Steam\steam.exe" steam://uninstall/7620
Railroad Tycoon 3-->"Z:\Steam\steam.exe" steam://uninstall/7610
RealMedia (remove only)-->"C:\Program Files (x86)\RealMedia\uninstall.exe"
Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\Setup.exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Red Faction II-->"Z:\Steam\steam.exe" steam://uninstall/20550
Red Faction: Guerrilla -->"Z:\Steam\steam.exe" steam://uninstall/20500
Red Faction-->"Z:\Steam\steam.exe" steam://uninstall/20530
Rise of Immortals-->"Z:\Steam\steam.exe" steam://uninstall/90530
Risen-->"Z:\Steam\steam.exe" steam://uninstall/40300
Rogue Warrior-->"Z:\Steam\steam.exe" steam://uninstall/22310
Rusty Hearts-->"Z:\Steam\steam.exe" steam://uninstall/36630
S.T.A.L.K.E.R.: Shadow of Chernobyl-->"Z:\Steam\steam.exe" steam://uninstall/4500
Safari-->MsiExec.exe /I{F2AF3E5D-9697-485C-A5AC-E2B9468C446A}
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {B5BD3CA1-11AB-35A6-B22A-6A219DC0668E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E720AD01-93D5-3E8E-BB8D-E4EF5AF4E5DD} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {BCD37DCB-F479-3D4D-A90E-A0F7575549C4} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {FF811680-AECE-3F35-A98C-1B84B6E09168} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5D45782A-1099-317E-ABCC-FF63D5B21386} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E59B2174-E924-311F-8549-AD714C14664D} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2478663)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {B5BD3CA1-11AB-35A6-B22A-6A219DC0668E} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2518870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {E720AD01-93D5-3E8E-BB8D-E4EF5AF4E5DD} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {9D621E6E-E010-3C80-A055-135891134750} /parameterfolder Extended
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {E59B2174-E924-311F-8549-AD714C14664D} /parameterfolder Extended
Shank-->"Z:\Steam\steam.exe" steam://uninstall/6120
Shattered Union-->"Z:\Steam\steam.exe" steam://uninstall/3960
SHOUTcast Source (remove only)-->"C:\Program Files (x86)\SHOUTcast Source\uninstall.exe"
Sid Meier's Civilization III: Complete-->"Z:\Steam\steam.exe" steam://uninstall/3910
Sid Meier's Civilization IV: Beyond the Sword-->"Z:\Steam\steam.exe" steam://uninstall/8800
Sid Meier's Civilization IV: Colonization-->"Z:\Steam\steam.exe" steam://uninstall/16810
Sid Meier's Civilization IV: Warlords-->"Z:\Steam\steam.exe" steam://uninstall/3990
Sid Meier's Civilization IV-->"Z:\Steam\steam.exe" steam://uninstall/3900
Sid Meier's Pirates!-->"Z:\Steam\steam.exe" steam://uninstall/3920
Sid Meier's Railroads!-->"Z:\Steam\steam.exe" steam://uninstall/7600
Singularity-->"Z:\Steam\steam.exe" steam://uninstall/42670
SnugTV Station-->MsiExec.exe /I{33CFCB69-2FA5-43E8-B8A8-FAA155F870B5}
Speedy MIDI version 1.0-->"C:\Program Files (x86)\SpeedyMidi\unins000.exe"
Stanza-->"C:\Program Files (x86)\Stanza\uninstall.exe"
Stronghold 2-->"Z:\Steam\steam.exe" steam://uninstall/40960
Stronghold Crusader + Extreme-->"Z:\Steam\steam.exe" steam://uninstall/40970
Stronghold Legends-->"Z:\Steam\steam.exe" steam://uninstall/40980
Stronghold-->"Z:\Steam\steam.exe" steam://uninstall/40950
Super Meat Boy-->"Z:\Steam\steam.exe" steam://uninstall/40800
Supreme Commander 2-->"Z:\Steam\steam.exe" steam://uninstall/40100
Supreme Commander: Forged Alliance-->"Z:\Steam\steam.exe" steam://uninstall/9420
Supreme Commander-->"Z:\Steam\steam.exe" steam://uninstall/9350
Team Fortress 2 Beta-->"Z:\Steam\steam.exe" steam://uninstall/520
Team Fortress 2-->"Z:\Steam\steam.exe" steam://uninstall/440
Test Drive Unlimited 2-->"Z:\Steam\steam.exe" steam://uninstall/9930
The Binding Of Isaac-->"Z:\Steam\steam.exe" steam://uninstall/113200
The Cat and the Coup-->"Z:\Steam\steam.exe" steam://uninstall/95700
The Elder Scrolls III: Morrowind-->"Z:\Steam\steam.exe" steam://uninstall/22320
The Elder Scrolls IV: Oblivion -->"Z:\Steam\steam.exe" steam://uninstall/22330
The Misadventures of P.B. Winterbottom-->"Z:\Steam\steam.exe" steam://uninstall/40930
The Polynomial-->"Z:\Steam\steam.exe" steam://uninstall/67000
the Ultimate Apocalypse (UA) Complete Collection-->Z:\Steam\steamapps\common\dawn of war soulstorm\UA uninstalll.exe
Titan Quest: Immortal Throne-->"Z:\Steam\steam.exe" steam://uninstall/4550
Titan Quest-->"Z:\Steam\steam.exe" steam://uninstall/4540
Ulož.to File Manager verze 1.4-->"C:\Program Files (x86)\Uložto File Manager\unins000.exe"
Unreal Tournament 3: Black Edition-->"Z:\Steam\steam.exe" steam://uninstall/13210
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {29C7BE97-DE59-37A2-A687-2ADD5321948A} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7D799A81-5661-3159-BF92-754161CED6E6} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4DFA8287-EA36-3469-99FE-F568FEC81653} /parameterfolder Client
Update for Microsoft .NET Framework 4 Extended (KB2468871)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {29C7BE97-DE59-37A2-A687-2ADD5321948A} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2533523)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {7D799A81-5661-3159-BF92-754161CED6E6} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2600217)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {4DFA8287-EA36-3469-99FE-F568FEC81653} /parameterfolder Extended
Uplink-->"Z:\Steam\steam.exe" steam://uninstall/1510
VLC media player 1.1.11-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe
Voxatron 0.1.3-->C:\Program Files (x86)\Voxatron\uninst.exe
Winamp-->"C:\Program Files (x86)\Winamp\UninstWA.exe"
Windows Live ID Sign-in Assistant-->MsiExec.exe /X{9B48B0AC-C813-4174-9042-476A887592C7}
WinRAR 4.01 beta 1 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
World of Goo-->"Z:\Steam\steam.exe" steam://uninstall/22000
World of Zoo-->"Z:\Steam\steam.exe" steam://uninstall/43100
Worms Reloaded-->"Z:\Steam\steam.exe" steam://uninstall/22600
X-COM: Apocalypse-->"Z:\Steam\steam.exe" steam://uninstall/7660
X-COM: Enforcer-->"Z:\Steam\steam.exe" steam://uninstall/7770
X-COM: Interceptor-->"Z:\Steam\steam.exe" steam://uninstall/7730
X-COM: Terror from the Deep-->"Z:\Steam\steam.exe" steam://uninstall/7650
X-COM: UFO Defense-->"Z:\Steam\steam.exe" steam://uninstall/7760
Xfire (remove only)-->"C:\Program Files (x86)\Xfire\uninst.exe"
Xotic-->"Z:\Steam\steam.exe" steam://uninstall/92600
Zoom Player (remove only)-->"C:\Program Files (x86)\Zoom Player\uninstall.exe"
======Hosts File======
0.0.0.0 localhost
127.0.0.1 activate.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 ereg.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 wip3.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 adobe-dns.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
======System event log======
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Cryptographic Services byl změněn na: stopped
Record Number: 5
Source Name: Service Control Manager
Time Written: 20090714051424.262212-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Windows Modules Installer byl změněn na: stopped
Record Number: 4
Source Name: Service Control Manager
Time Written: 20090714051424.168612-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Software Protection byl změněn na: stopped
Record Number: 3
Source Name: Service Control Manager
Time Written: 20090714051424.059412-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Windows Event Log byl změněn na: stopped
Record Number: 2
Source Name: Service Control Manager
Time Written: 20090714051424.012612-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Volume Shadow Copy byl změněn na: stopped
Record Number: 1
Source Name: Service Control Manager
Time Written: 20090714051423.934612-000
Event Type: Informace
User:
=====Application event log=====
Computer Name: 37L4247E29-32
Event Code: 1001
Message: Chybný blok , typ 0
Název události: PnPDriverNotFound
Reakce: Není k dispozici
ID souboru CAB: 0
Podpis problému:
P1: x64
P2: PCI\VEN_10EC&DEV_8168&SUBSYS_84321043&REV_06
P3:
P4:
P5:
P6:
P7:
P8:
P9:
P10:
Připojené soubory:
C:\Windows\Temp\DMIBBB0.tmp.log.xml
Tyto soubory mohou být k dispozici zde:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_49cacc919319752dd21fef87966b3f1807afc42_cab_06b6bc1d
Symbol analýzy:
Opětovné hledání řešení: 0
ID hlášení: 8f38947e-fb5d-11e0-adb3-94176c40bd1c
Stav hlášení: 6
Record Number: 5
Source Name: Windows Error Reporting
Time Written: 20111020205328.000000-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 5617
Message: Windows Management Instrumentation Service subsystems initialized successfully
Record Number: 4
Source Name: Microsoft-Windows-WMI
Time Written: 20111020205150.000000-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 5615
Message: Windows Management Instrumentation Service started sucessfully
Record Number: 3
Source Name: Microsoft-Windows-WMI
Time Written: 20111020205144.000000-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.
Record Number: 2
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20111020205139.311719-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: 37L4247E29-32
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1
Source Name: Microsoft-Windows-EventSystem
Time Written: 20111020205139.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: 37L4247E29-32
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 5
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205124.444894-000
Event Type: Úspěšný audit
User:
Computer Name: 37L4247E29-32
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: 37L4247E29-32$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7
Typ přihlášení: 5
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x1fc
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 4
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205124.444894-000
Event Type: Úspěšný audit
User:
Computer Name: 37L4247E29-32
Event Code: 4902
Message: Tabulka zásad auditu pro jednotlivé uživatele byla vytvořena.
Počet prvků: 0
ID zásady: 0x32e1b
Record Number: 3
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205116.925680-000
Event Type: Úspěšný audit
User:
Computer Name: 37L4247E29-32
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-0-0
Název účtu: -
Doména účtu: -
ID přihlášení: 0x0
Typ přihlášení: 0
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x4
Název procesu:
Informace o síti:
Název pracovní stanice: -
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: -
Balíček ověření: -
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 2
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205113.072474-000
Event Type: Úspěšný audit
User:
Computer Name: 37L4247E29-32
Event Code: 4608
Message: Spouští se systém Windows.
Tato událost je zaznamenána při spuštění procesu LSASS.EXE a inicializaci kontrolního podsystému.
Record Number: 1
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205112.947674-000
Event Type: Úspěšný audit
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%CommonProgramFiles%\Microsoft Shared\Windows Live;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=16
"PROCESSOR_IDENTIFIER"=AMD64 Family 16 Model 4 Stepping 3, AuthenticAMD
"PROCESSOR_REVISION"=0403
"asl.log"=Destination=file
-----------------EOF-----------------
Dneska jsem se pokoušel rozběhat emulátor XBoxu360 a zdá se, že je to asi fake, protože po spuštění nic nedělá a po vypnutí dál běží v procesech, tak jestli mohu požádat o kontrolu? Děkuji
info.txt logfile of random's system information tool 1.09 2012-02-24 14:20:06
======Uninstall list======
-->MsiExec /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
7-Zip 4.65-->"C:\Program Files (x86)\7-Zip\Uninstall.exe"
AaaaaAAaaaAAAaaAAAAaAAAAA!!! for the Awesome-->"Z:\Steam\steam.exe" steam://uninstall/15560
AC3Filter 1.63b-->"C:\Program Files (x86)\AC3Filter\unins000.exe"
Adobe Acrobat X Pro - Eastern European (Group 1)-->MsiExec.exe /I{AC76BA86-1029-4770-7760-000000000005}
Adobe AIR-->c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{ACEB2BAF-96DF-48FD-ADD5-43842D4C443D}
Adobe Community Help-->msiexec /qb /x {3521BDBD-D453-5D9F-AA55-44B75D214629}
Adobe Community Help-->MsiExec.exe /I{3521BDBD-D453-5D9F-AA55-44B75D214629}
Adobe Content Viewer-->msiexec /qb /x {4E33D05D-76CF-5D3C-4D5D-7727530FA161}
Adobe Content Viewer-->MsiExec.exe /I{4E33D05D-76CF-5D3C-4D5D-7727530FA161}
Adobe Creative Suite 5.5 Master Collection-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="1.0" --mode="Uninstall" --mediaSignature="{D57FC112-312E-4D70-860F-2DB8FB6858F0}"
Adobe Flash Player 10 ActiveX-->MsiExec.exe /X{B001064C-D061-4BAE-9031-416A838D5536}
Adobe Flash Player 11 Plugin 64-bit-->C:\Windows\system32\Macromed\Flash\FlashUtil64_11_1_102_Plugin.exe -maintain plugin
Adobe Story-->msiexec /qb /x {C28DD992-5B7B-D195-6841-4EC57DF512BD}
Adobe Story-->MsiExec.exe /I{C28DD992-5B7B-D195-6841-4EC57DF512BD}
Adobe Widget Browser-->msiexec /qb /x {BDE646E8-86E0-50E1-37BC-0AEBB2185D76}
Adobe Widget Browser-->MsiExec.exe /I{BDE646E8-86E0-50E1-37BC-0AEBB2185D76}
Advertising Center-->MsiExec.exe /X{9F3523F8-DAD7-AE52-6DA7-45CDDDF33726}
Aktualizace NVIDIA 1.4.28-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.Update
Anomaly Warzone Earth-->"Z:\Steam\steam.exe" steam://uninstall/91200
Anti-Vibrate Oscar Editor-->"C:\Program Files (x86)\InstallShield Installation Information\{55FB908F-A025-4118-9354-ABD4979203F9}\setup.exe" -runfromtemp -l0x0409 -removeonly
Apple Application Support-->MsiExec.exe /I{343666E2-A059-48AC-AD67-230BF74E2DB2}
Apple Mobile Device Support-->MsiExec.exe /I{75104836-CAC7-444E-A39E-3F54151942F5}
Apple Software Update-->MsiExec.exe /I{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
Aquaria-->"Z:\Steam\steam.exe" steam://uninstall/24420
Asmedia ASM104x USB 3.0 Host Controller Driver-->MsiExec.exe /X{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}
Aston 2.0.3-->C:\Program Files\Aston2\uninst.exe
ATI Catalyst Install Manager-->msiexec /q/x{AB7F4312-8037-4EBF-9D0F-5513CDFD534C} REBOOT=ReallySuppress
AVer MediaCenter 3D-->C:\Program Files (x86)\InstallShield Installation Information\{D2912CB2-F95A-406C-AA88-2BB5DCB6D275}\setup.exe -runfromtemp -l0x0405
AVerMedia Applications-->C:\Program Files (x86)\InstallShield Installation Information\{92C41B26-EBC5-41C5-8B6F-E3EF7E57FF16}\setup.exe -runfromtemp -l0x0405
AVerMedia H727 PCIe TV Tuner 1.12.64.49-->C:\Program Files (x86)\AVerMedia\AVerMedia H727 PCIe TV Tuner\uninst.exe
Bass Audio Decoder (remove only)-->"C:\Program Files (x86)\Bass Audio Decoder\uninstall.exe"
BIT.TRIP RUNNER-->"Z:\Steam\steam.exe" steam://uninstall/63710
Blender-->"C:\Program Files\Blender Foundation\Blender\uninstall.exe"
Blocks That Matter-->"Z:\Steam\steam.exe" steam://uninstall/111800
Blood Bowl: Dark Elves Edition-->"Z:\Steam\steam.exe" steam://uninstall/11170
Bonjour-->MsiExec.exe /X{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
Brink-->"Z:\Steam\steam.exe" steam://uninstall/22350
Call of Cthulhu: Dark Corners of the Earth-->"Z:\Steam\steam.exe" steam://uninstall/22340
Cave Story+-->"Z:\Steam\steam.exe" steam://uninstall/200900
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CD Audio Reader Filter (remove only)-->"C:\Program Files (x86)\CD Audio Reader Filter\uninstall.exe"
CivCity: Rome-->"Z:\Steam\steam.exe" steam://uninstall/3980
C-Media Card Reader Driver USB2.0-->C:\Windows\system32\CmUCRRm_x64.exe
Command & Conquer The First Decade-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{66D6F3BD-CA23-41A4-9FA3-96B26B32528C}\setup.exe" -l0x9 -removeonly
Counter-Strike: Source Beta-->"Z:\Steam\steam.exe" steam://uninstall/260
Counter-Strike: Source-->"Z:\Steam\steam.exe" steam://uninstall/240
Crayon Physics Deluxe-->"Z:\Steam\steam.exe" steam://uninstall/26900
Creeper World 2 Editor-->msiexec /qb /x {B8BB90ED-B759-37E5-4071-12C25F719310}
Creeper World 2 Editor-->MsiExec.exe /I{B8BB90ED-B759-37E5-4071-12C25F719310}
Creeper World 2-->msiexec /qb /x {234F5FD0-7C56-D5AF-E46A-E00231D6D99F}
Creeper World 2-->MsiExec.exe /I{234F5FD0-7C56-D5AF-E46A-E00231D6D99F}
Creeper World-->msiexec /qb /x {D0F36487-AD00-6B57-A525-00FD184B02EB}
Creeper World-->MsiExec.exe /I{D0F36487-AD00-6B57-A525-00FD184B02EB}
CrimeCraft GangWars-->"Z:\Steam\steam.exe" steam://uninstall/38830
DAEMON Tools Pro-->C:\Program Files (x86)\DAEMON Tools Pro\uninst.exe
Darwinia-->"Z:\Steam\steam.exe" steam://uninstall/1500
DCoder Image Source (remove only)-->"C:\Program Files (x86)\DCoder Image Source\uninstall.exe"
DEFCON-->"Z:\Steam\steam.exe" steam://uninstall/1520
DirectVobSub (remove only)-->"C:\Program Files (x86)\DirectVobSub\uninstall.exe"
DScaler 5 Mpeg Decoders-->"C:\Program Files (x86)\DScaler5\unins000.exe"
Duke Nukem Forever-->"Z:\Steam\steam.exe" steam://uninstall/57900
Dungeons of Dredmor-->"Z:\Steam\steam.exe" steam://uninstall/98800
DVR-Studio Pro-->"C:\Program Files (x86)\DVR-Studio Pro\Uninstall.exe" "C:\Program Files (x86)\DVR-Studio Pro\install.log"
E.Y.E - Dedicated Server-->"Z:\Steam\steam.exe" steam://uninstall/91720
E.Y.E: Divine Cybermancy-->"Z:\Steam\steam.exe" steam://uninstall/91700
EDGE-->"Z:\Steam\steam.exe" steam://uninstall/38740
Fallen Earth-->"Z:\Steam\steam.exe" steam://uninstall/113420
Fallout 3 - Game of the Year Edition-->"Z:\Steam\steam.exe" steam://uninstall/22370
Fallout: New Vegas-->"Z:\Steam\steam.exe" steam://uninstall/22490
ffdshow [rev 3124] [2009-11-03]-->"C:\Program Files (x86)\ffdshow\unins000.exe"
FFMPEG Core Files (remove only)-->"C:\Program Files (x86)\FFMPEG Core Files\uninstall.exe"
Flight Control HD-->"Z:\Steam\steam.exe" steam://uninstall/62000
Freedom Force vs. the 3rd Reich-->"Z:\Steam\steam.exe" steam://uninstall/8890
Freedom Force-->"Z:\Steam\steam.exe" steam://uninstall/8880
Frontlines: Fuel of War-->"Z:\Steam\steam.exe" steam://uninstall/9460
Full Spectrum Warrior: Ten Hammers-->"Z:\Steam\steam.exe" steam://uninstall/4530
Full Spectrum Warrior-->"Z:\Steam\steam.exe" steam://uninstall/4520
Gabest MPEG Splitter (remove only)-->"C:\Program Files (x86)\Gabest MPEG Splitter\uninstall.exe"
Garry's Mod-->"Z:\Steam\steam.exe" steam://uninstall/4000
Gish-->"Z:\Steam\steam.exe" steam://uninstall/9500
Google Earth Plug-in-->MsiExec.exe /X{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\17.0.963.56\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Gratuitous Space Battles-->"Z:\Steam\steam.exe" steam://uninstall/41800
GTR Evolution-->"Z:\Steam\steam.exe" steam://uninstall/8660
Guild Wars-->"D:\Program Files\Guild Wars\Gw.exe" -uninstall
Haali Media Splitter-->"C:\Program Files (x86)\Haali\MatroskaSplitter\uninstall.exe"
Half-Life 2: Episode One-->"Z:\Steam\steam.exe" steam://uninstall/380
Half-Life 2: Episode Two-->"Z:\Steam\steam.exe" steam://uninstall/420
Half-Life 2: Lost Coast-->"Z:\Steam\steam.exe" steam://uninstall/340
Half-Life 2-->"Z:\Steam\steam.exe" steam://uninstall/220
Hamachi 1.0.2.5-->C:\Program Files (x86)\Hamachi\uninstall.exe
HijackThis 2.0.2-->"C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hunted: The Demon's Forge-->"Z:\Steam\steam.exe" steam://uninstall/22450
Champions Online: Free For All-->"Z:\Steam\steam.exe" steam://uninstall/9880
Chantelise-->"Z:\Steam\steam.exe" steam://uninstall/70420
Cheat Engine 6.1-->"C:\Program Files (x86)\Cheat Engine 6.1\unins000.exe"
iTap 3.2-->MsiExec.exe /X{F5738877-7778-4FC3-B1CB-097D8A7B41CB}
iTunes-->MsiExec.exe /I{5E11C972-1E76-45FE-8F92-14E0D1140B1B}
Jamestown-->"Z:\Steam\steam.exe" steam://uninstall/94200
Java(TM) 6 Update 29-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216029FF}
Java(TM) 6 Update 30 (64-bit)-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F86416030FF}
JMicron JMB36X Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x9 -removeonly
Killing Floor Beta Dedicated Server-->"Z:\Steam\steam.exe" steam://uninstall/1273
Killing Floor SDK-->"Z:\Steam\steam.exe" steam://uninstall/1260
Last.fm 1.5.4.27091-->"C:\Program Files (x86)\Last.fm\unins000.exe"
Left 4 Dead 2 Add-on Support-->"Z:\Steam\steam.exe" steam://uninstall/564
Left 4 Dead 2 Authoring Tools-->"Z:\Steam\steam.exe" steam://uninstall/563
Left 4 Dead 2 Dedicated Server-->"Z:\Steam\steam.exe" steam://uninstall/560
Mafia-->"Z:\Steam\steam.exe" steam://uninstall/40990
Magic: The Gathering – Tactics-->"Z:\Steam\steam.exe" steam://uninstall/201190
Magicka-->"Z:\Steam\steam.exe" steam://uninstall/42910
Menu Templates - Starter Kit-->MsiExec.exe /X{B78120A0-CF84-4366-A393-4D0A59BC546C}
Metro 2033-->"Z:\Steam\steam.exe" steam://uninstall/43110
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /x64 /lcid 1029 /parameterfolder ClientLP
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->MsiExec.exe /X{790E02A1-145A-3843-8C13-A4F41C9B48B7}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /x64 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
Microsoft .NET Framework 4 Extended-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\Setup.exe /repair /x86 /x64 /parameterfolder Extended
Microsoft .NET Framework 4 Extended-->MsiExec.exe /X{8E34682C-8118-31F1-BC4C-98CD9675E1C2}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}
Microsoft Games for Windows Marketplace-->MsiExec.exe /X{4CB0307C-565E-4441-86BE-0DF2E4FB828C}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022-->MsiExec.exe /X{350AA351-21FA-3270-8B7A-835434E766AD}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319-->MsiExec.exe /X{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Xbox 360 Accessories 1.2-->MsiExec.exe /X{D9C50188-12D5-4D3E-8F00-682346C2AA5F}
Microsoft XNA Framework Redistributable 3.1-->MsiExec.exe /I{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}
Microsoft_VC80_ATL_x86_x64-->MsiExec.exe /I{925D058B-564A-443A-B4B2-7E90C6432E55}
Microsoft_VC80_ATL_x86-->MsiExec.exe /I{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}
Microsoft_VC80_CRT_x86_x64-->MsiExec.exe /I{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC80_MFC_x86_x64-->MsiExec.exe /I{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
Microsoft_VC80_MFC_x86-->MsiExec.exe /I{D1A19B02-817E-4296-A45B-07853FD74D57}
Microsoft_VC80_MFCLOC_x86_x64-->MsiExec.exe /I{1E9FC118-651D-4934-97BE-E53CAE5C7D45}
Microsoft_VC80_MFCLOC_x86-->MsiExec.exe /I{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
Microsoft_VC90_ATL_x86_x64-->MsiExec.exe /I{8557397C-A42D-486F-97B3-A2CBC2372593}
Microsoft_VC90_ATL_x86-->MsiExec.exe /I{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
Microsoft_VC90_CRT_x86_x64-->MsiExec.exe /I{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86_x64-->MsiExec.exe /I{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
Microsoft_VC90_MFC_x86-->MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
Microsoft_VC90_MFCLOC_x86_x64-->MsiExec.exe /I{90BF0360-A1DB-4599-A643-95AB90A52C1E}
Microsoft_VC90_MFCLOC_x86-->MsiExec.exe /I{B6D38690-755E-4F40-A35A-23F8BC2B86AC}
Mirror's Edge-->"Z:\Steam\steam.exe" steam://uninstall/17410
MLB 2K10-->"Z:\Steam\steam.exe" steam://uninstall/50120
MLB® Front Office Manager-->"Z:\Steam\steam.exe" steam://uninstall/7780
MONOGRAM AMR Splitter/Decoder (remove only)-->"C:\Program Files (x86)\MONOGRAM AMR SplitterDecoder\uninstall.exe"
Movie Templates - Starter Kit-->MsiExec.exe /X{E498385E-1C51-459A-B45F-1721E37AA1A0}
Mozilla Firefox 10.0.2 (x86 cs)-->C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Multiwinia-->"Z:\Steam\steam.exe" steam://uninstall/1530
NBA 2K10-->"Z:\Steam\steam.exe" steam://uninstall/40920
NBA 2K11-->"Z:\Steam\steam.exe" steam://uninstall/65950
NCsoft Launcher-->C:\Program Files (x86)\InstallShield Installation Information\{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}\setup.exe -runfromtemp -l0x0009 -removeonly
Nero 9 Essentials-->C:\Program Files (x86)\Common Files\Nero\Nero ProductInstaller 4\SetupX.exe REMOVESERIALNUMBER="2M0K-K085-4W59-U5LW-585P-W083-MM85-1Z8L-257X-66XA-TC3T-K1M8-3204-2A2C-5T2C-2408-4W3C-6482"
Nero BurnRights Help-->MsiExec.exe /X{F6BDD7C5-89ED-4569-9318-469AA9732572}
Nero BurnRights-->MsiExec.exe /X{7829DB6F-A066-4E40-8912-CB07887C20BB}
Nero CoverDesigner Help-->MsiExec.exe /X{CE96F5A5-584D-4F8F-AA3E-9BAED413DB72}
Nero CoverDesigner-->MsiExec.exe /X{62AC81F6-BDD3-4110-9D36-3E9EAAB40999}
Nero DiscSpeed Help-->MsiExec.exe /X{CC019E3F-59D2-4486-8D4B-878105B62A71}
Nero DiscSpeed-->MsiExec.exe /X{869200DB-287A-4DC0-B02B-2B6787FBCD4C}
Nero DriveSpeed Help-->MsiExec.exe /X{E5C7D048-F9B4-4219-B323-8BDB01A2563D}
Nero DriveSpeed-->MsiExec.exe /X{33CF58F5-48D8-4575-83D6-96F574E4D83A}
Nero Express Help-->MsiExec.exe /X{83202942-84B3-4C50-8622-B8C0AA2D2885}
Nero InfoTool Help-->MsiExec.exe /X{20400DBD-E6DB-45B8-9B6B-1DD7033818EC}
Nero InfoTool-->MsiExec.exe /X{FBCDFD61-7DCF-4E71-9226-873BA0053139}
Nero Online Upgrade-->MsiExec.exe /X{C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}
Nero ShowTime-->MsiExec.exe /X{D9DCF92E-72EB-412D-AC71-3B01276E5F8B}
Nero StartSmart Help-->MsiExec.exe /X{2348B586-C9AE-46CE-936C-A68E9426E214}
Nero StartSmart-->MsiExec.exe /X{7748AC8C-18E3-43BB-959B-088FAEA16FB2}
Nero Vision Help-->MsiExec.exe /X{5D9BE3C1-8BA4-4E7E-82FD-9F74FA6815D1}
Nero Vision-->MsiExec.exe /X{43E39830-1826-415D-8BAE-86845787B54B}
NeroExpress-->MsiExec.exe /X{595A3116-40BB-4E0F-A2E8-D7951DA56270}
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NightSky-->"Z:\Steam\steam.exe" steam://uninstall/99700
Nuclear Dawn-->"Z:\Steam\steam.exe" steam://uninstall/17710
NVIDIA 3D Vision Controller Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{714B9C6C-70FC-4750-98E2-61520B906C45}\setup.exe" -runfromtemp -l0x0009 -removeonly
NVIDIA Ovladač 3D Vision 280.26-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.3DVision
NVIDIA Ovladač HD audia 1.2.23.3-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage HDAudio.Driver
NVIDIA Ovladač řídící jednotky 3D Vision 280.19-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.NVIRUSB
NVIDIA Ovladače grafiky 280.26-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA PhysX-->MsiExec.exe /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
NVIDIA Stereoscopic 3D Driver-->"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
NVIDIA Systémový software PhysX 9.10.0514-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.PhysX
OnLive-->"C:\Program Files (x86)\OnLive\Uninstall.exe"
OpenAL-->"C:\Program Files (x86)\OpenAL\oalinst.exe" /U
OpenOffice.org 3.3-->MsiExec.exe /I{D5B94160-4A07-4956-9C73-8C5EEFEF180F}
OpenSource AVI Splitter (remove only)-->"C:\Program Files (x86)\OpenSource AVI Splitter\uninstall.exe"
OpenSource DTS/AC3/DD+ Source Filter (remove only)-->"C:\Program Files (x86)\OpenSource DTSAC3DD+ Source Filter\uninstall.exe"
OpenSource Flash Video Splitter (remove only)-->"C:\Program Files (x86)\OpenSource Flash Video Splitter\uninstall.exe"
OSCAR Editor-->MsiExec.exe /I{55FB908F-A025-4118-9354-ABD4979203F9}
Osmos-->"Z:\Steam\steam.exe" steam://uninstall/29180
Pando Media Booster-->C:\Program Files (x86)\Pando Networks\Media Booster\uninst.exe
PDF Settings CS5-->MsiExec.exe /I{A78FE97A-C0C8-49CE-89D0-EDD524A17392}
PJP's JoyIDs-->"C:\Program Files (x86)\PJP\JoyIDs\uninstall.exe"
Plain Sight-->"Z:\Steam\steam.exe" steam://uninstall/49900
PlayReady PC Runtime amd64-->MsiExec.exe /X{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}
Portal-->"Z:\Steam\steam.exe" steam://uninstall/400
Post Apocalyptic Mayhem-->"Z:\Steam\steam.exe" steam://uninstall/91900
Postal III-->"z:\Program Files (x86)\Akella Games\Postal 3\unins000.exe"
PSPad editor-->"C:\Program Files (x86)\PSPad editor\Uninst\unins000.exe"
Psychonauts-->"Z:\Steam\steam.exe" steam://uninstall/3830
PxMergeModule-->MsiExec.exe /I{024521CF-C07E-4F8E-8481-0D75695E03AF}
RACE 07 Dedicated Server-->"Z:\Steam\steam.exe" steam://uninstall/8610
RACE 07-->"Z:\Steam\steam.exe" steam://uninstall/8600
Railroad Tycoon 2: Platinum-->"Z:\Steam\steam.exe" steam://uninstall/7620
Railroad Tycoon 3-->"Z:\Steam\steam.exe" steam://uninstall/7610
RealMedia (remove only)-->"C:\Program Files (x86)\RealMedia\uninstall.exe"
Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\Setup.exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Red Faction II-->"Z:\Steam\steam.exe" steam://uninstall/20550
Red Faction: Guerrilla -->"Z:\Steam\steam.exe" steam://uninstall/20500
Red Faction-->"Z:\Steam\steam.exe" steam://uninstall/20530
Rise of Immortals-->"Z:\Steam\steam.exe" steam://uninstall/90530
Risen-->"Z:\Steam\steam.exe" steam://uninstall/40300
Rogue Warrior-->"Z:\Steam\steam.exe" steam://uninstall/22310
Rusty Hearts-->"Z:\Steam\steam.exe" steam://uninstall/36630
S.T.A.L.K.E.R.: Shadow of Chernobyl-->"Z:\Steam\steam.exe" steam://uninstall/4500
Safari-->MsiExec.exe /I{F2AF3E5D-9697-485C-A5AC-E2B9468C446A}
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {B5BD3CA1-11AB-35A6-B22A-6A219DC0668E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E720AD01-93D5-3E8E-BB8D-E4EF5AF4E5DD} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {BCD37DCB-F479-3D4D-A90E-A0F7575549C4} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {FF811680-AECE-3F35-A98C-1B84B6E09168} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5D45782A-1099-317E-ABCC-FF63D5B21386} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E59B2174-E924-311F-8549-AD714C14664D} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2478663)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {B5BD3CA1-11AB-35A6-B22A-6A219DC0668E} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2518870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {E720AD01-93D5-3E8E-BB8D-E4EF5AF4E5DD} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {9D621E6E-E010-3C80-A055-135891134750} /parameterfolder Extended
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {E59B2174-E924-311F-8549-AD714C14664D} /parameterfolder Extended
Shank-->"Z:\Steam\steam.exe" steam://uninstall/6120
Shattered Union-->"Z:\Steam\steam.exe" steam://uninstall/3960
SHOUTcast Source (remove only)-->"C:\Program Files (x86)\SHOUTcast Source\uninstall.exe"
Sid Meier's Civilization III: Complete-->"Z:\Steam\steam.exe" steam://uninstall/3910
Sid Meier's Civilization IV: Beyond the Sword-->"Z:\Steam\steam.exe" steam://uninstall/8800
Sid Meier's Civilization IV: Colonization-->"Z:\Steam\steam.exe" steam://uninstall/16810
Sid Meier's Civilization IV: Warlords-->"Z:\Steam\steam.exe" steam://uninstall/3990
Sid Meier's Civilization IV-->"Z:\Steam\steam.exe" steam://uninstall/3900
Sid Meier's Pirates!-->"Z:\Steam\steam.exe" steam://uninstall/3920
Sid Meier's Railroads!-->"Z:\Steam\steam.exe" steam://uninstall/7600
Singularity-->"Z:\Steam\steam.exe" steam://uninstall/42670
SnugTV Station-->MsiExec.exe /I{33CFCB69-2FA5-43E8-B8A8-FAA155F870B5}
Speedy MIDI version 1.0-->"C:\Program Files (x86)\SpeedyMidi\unins000.exe"
Stanza-->"C:\Program Files (x86)\Stanza\uninstall.exe"
Stronghold 2-->"Z:\Steam\steam.exe" steam://uninstall/40960
Stronghold Crusader + Extreme-->"Z:\Steam\steam.exe" steam://uninstall/40970
Stronghold Legends-->"Z:\Steam\steam.exe" steam://uninstall/40980
Stronghold-->"Z:\Steam\steam.exe" steam://uninstall/40950
Super Meat Boy-->"Z:\Steam\steam.exe" steam://uninstall/40800
Supreme Commander 2-->"Z:\Steam\steam.exe" steam://uninstall/40100
Supreme Commander: Forged Alliance-->"Z:\Steam\steam.exe" steam://uninstall/9420
Supreme Commander-->"Z:\Steam\steam.exe" steam://uninstall/9350
Team Fortress 2 Beta-->"Z:\Steam\steam.exe" steam://uninstall/520
Team Fortress 2-->"Z:\Steam\steam.exe" steam://uninstall/440
Test Drive Unlimited 2-->"Z:\Steam\steam.exe" steam://uninstall/9930
The Binding Of Isaac-->"Z:\Steam\steam.exe" steam://uninstall/113200
The Cat and the Coup-->"Z:\Steam\steam.exe" steam://uninstall/95700
The Elder Scrolls III: Morrowind-->"Z:\Steam\steam.exe" steam://uninstall/22320
The Elder Scrolls IV: Oblivion -->"Z:\Steam\steam.exe" steam://uninstall/22330
The Misadventures of P.B. Winterbottom-->"Z:\Steam\steam.exe" steam://uninstall/40930
The Polynomial-->"Z:\Steam\steam.exe" steam://uninstall/67000
the Ultimate Apocalypse (UA) Complete Collection-->Z:\Steam\steamapps\common\dawn of war soulstorm\UA uninstalll.exe
Titan Quest: Immortal Throne-->"Z:\Steam\steam.exe" steam://uninstall/4550
Titan Quest-->"Z:\Steam\steam.exe" steam://uninstall/4540
Ulož.to File Manager verze 1.4-->"C:\Program Files (x86)\Uložto File Manager\unins000.exe"
Unreal Tournament 3: Black Edition-->"Z:\Steam\steam.exe" steam://uninstall/13210
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {29C7BE97-DE59-37A2-A687-2ADD5321948A} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7D799A81-5661-3159-BF92-754161CED6E6} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4DFA8287-EA36-3469-99FE-F568FEC81653} /parameterfolder Client
Update for Microsoft .NET Framework 4 Extended (KB2468871)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {29C7BE97-DE59-37A2-A687-2ADD5321948A} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2533523)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {7D799A81-5661-3159-BF92-754161CED6E6} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2600217)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {4DFA8287-EA36-3469-99FE-F568FEC81653} /parameterfolder Extended
Uplink-->"Z:\Steam\steam.exe" steam://uninstall/1510
VLC media player 1.1.11-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe
Voxatron 0.1.3-->C:\Program Files (x86)\Voxatron\uninst.exe
Winamp-->"C:\Program Files (x86)\Winamp\UninstWA.exe"
Windows Live ID Sign-in Assistant-->MsiExec.exe /X{9B48B0AC-C813-4174-9042-476A887592C7}
WinRAR 4.01 beta 1 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
World of Goo-->"Z:\Steam\steam.exe" steam://uninstall/22000
World of Zoo-->"Z:\Steam\steam.exe" steam://uninstall/43100
Worms Reloaded-->"Z:\Steam\steam.exe" steam://uninstall/22600
X-COM: Apocalypse-->"Z:\Steam\steam.exe" steam://uninstall/7660
X-COM: Enforcer-->"Z:\Steam\steam.exe" steam://uninstall/7770
X-COM: Interceptor-->"Z:\Steam\steam.exe" steam://uninstall/7730
X-COM: Terror from the Deep-->"Z:\Steam\steam.exe" steam://uninstall/7650
X-COM: UFO Defense-->"Z:\Steam\steam.exe" steam://uninstall/7760
Xfire (remove only)-->"C:\Program Files (x86)\Xfire\uninst.exe"
Xotic-->"Z:\Steam\steam.exe" steam://uninstall/92600
Zoom Player (remove only)-->"C:\Program Files (x86)\Zoom Player\uninstall.exe"
======Hosts File======
0.0.0.0 localhost
127.0.0.1 activate.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 ereg.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 wip3.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 adobe-dns.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
======System event log======
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Cryptographic Services byl změněn na: stopped
Record Number: 5
Source Name: Service Control Manager
Time Written: 20090714051424.262212-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Windows Modules Installer byl změněn na: stopped
Record Number: 4
Source Name: Service Control Manager
Time Written: 20090714051424.168612-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Software Protection byl změněn na: stopped
Record Number: 3
Source Name: Service Control Manager
Time Written: 20090714051424.059412-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Windows Event Log byl změněn na: stopped
Record Number: 2
Source Name: Service Control Manager
Time Written: 20090714051424.012612-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 7036
Message: Stav služby Volume Shadow Copy byl změněn na: stopped
Record Number: 1
Source Name: Service Control Manager
Time Written: 20090714051423.934612-000
Event Type: Informace
User:
=====Application event log=====
Computer Name: 37L4247E29-32
Event Code: 1001
Message: Chybný blok , typ 0
Název události: PnPDriverNotFound
Reakce: Není k dispozici
ID souboru CAB: 0
Podpis problému:
P1: x64
P2: PCI\VEN_10EC&DEV_8168&SUBSYS_84321043&REV_06
P3:
P4:
P5:
P6:
P7:
P8:
P9:
P10:
Připojené soubory:
C:\Windows\Temp\DMIBBB0.tmp.log.xml
Tyto soubory mohou být k dispozici zde:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_49cacc919319752dd21fef87966b3f1807afc42_cab_06b6bc1d
Symbol analýzy:
Opětovné hledání řešení: 0
ID hlášení: 8f38947e-fb5d-11e0-adb3-94176c40bd1c
Stav hlášení: 6
Record Number: 5
Source Name: Windows Error Reporting
Time Written: 20111020205328.000000-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 5617
Message: Windows Management Instrumentation Service subsystems initialized successfully
Record Number: 4
Source Name: Microsoft-Windows-WMI
Time Written: 20111020205150.000000-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 5615
Message: Windows Management Instrumentation Service started sucessfully
Record Number: 3
Source Name: Microsoft-Windows-WMI
Time Written: 20111020205144.000000-000
Event Type: Informace
User:
Computer Name: 37L4247E29-32
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.
Record Number: 2
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20111020205139.311719-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: 37L4247E29-32
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1
Source Name: Microsoft-Windows-EventSystem
Time Written: 20111020205139.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: 37L4247E29-32
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 5
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205124.444894-000
Event Type: Úspěšný audit
User:
Computer Name: 37L4247E29-32
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: 37L4247E29-32$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7
Typ přihlášení: 5
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x1fc
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 4
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205124.444894-000
Event Type: Úspěšný audit
User:
Computer Name: 37L4247E29-32
Event Code: 4902
Message: Tabulka zásad auditu pro jednotlivé uživatele byla vytvořena.
Počet prvků: 0
ID zásady: 0x32e1b
Record Number: 3
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205116.925680-000
Event Type: Úspěšný audit
User:
Computer Name: 37L4247E29-32
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-0-0
Název účtu: -
Doména účtu: -
ID přihlášení: 0x0
Typ přihlášení: 0
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x4
Název procesu:
Informace o síti:
Název pracovní stanice: -
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: -
Balíček ověření: -
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 2
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205113.072474-000
Event Type: Úspěšný audit
User:
Computer Name: 37L4247E29-32
Event Code: 4608
Message: Spouští se systém Windows.
Tato událost je zaznamenána při spuštění procesu LSASS.EXE a inicializaci kontrolního podsystému.
Record Number: 1
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20111020205112.947674-000
Event Type: Úspěšný audit
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%CommonProgramFiles%\Microsoft Shared\Windows Live;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=16
"PROCESSOR_IDENTIFIER"=AMD64 Family 16 Model 4 Stepping 3, AuthenticAMD
"PROCESSOR_REVISION"=0403
"asl.log"=Destination=file
-----------------EOF-----------------