Notebook zpomalený na internetu a neinstalují se aktual.Win7
Napsal: 17 lis 2016 07:24
Zdravím pěkně a velmi rád bych požádal o kontrolu systému. Zapnul jsem 4 roky starý notebook po půl roce (v té době výkonný, i5 má)
a webovky na firefoxu co používám mi nabíhají pomalu. Dal jsem i aktualizaci Win7, ale ty jen se hlédá a hledá a nic již po 2 dnech, kdy jsem ho i 3x restartoval a zadal update znovu.
Prosím pěkně o kontrolu systému, přidávám rsit a frst log, velmi děkuji a přeji příjemný den:-)
Petr
frst log:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:07-11-2015
Ran by Petr (administrator) on MANDIS (17-11-2016 06:58:37)
Running from C:\Mandis disk\programy Windows 7\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available Profiles: Petr & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Nico Mak Computing) C:\Program Files\File Association Helper\FAHWindow.exe
(Xerox) C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
() C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox)
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-01-03] ()
HKLM-x32\...\Run: [StatusAutoRun6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [4476928 2012-01-03] ()
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [24576 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [40960 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [9080768 2016-11-15] (AVAST Software)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2020704 2014-08-05] (Wondershare)
HKLM-x32\...\Run: [ProductUpdater] => C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [75776 2016-11-15] ()
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\MountPoints2: {36787e2d-2ad3-11e5-9109-002713a4b3b0} - F:\iLinker.exe
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\MountPoints2: {6d08fdae-f483-11e4-b9fc-002713a4b3b0} - F:\Unlock.exe autoplay=true
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\MountPoints2: {b5f7b0f0-9767-11e5-af74-002713a4b3b0} - G:\Setup.bat
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll [2016-11-12] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2016-02-01]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.131.81.65 192.168.1.1
Tcpip\..\Interfaces\{D0B7FA16-DD22-4461-85C0-0EF88289B5B4}: [DhcpNameServer] 10.131.81.65 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-03-18] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-22] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-03-18] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-03-12] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\10k6c8t2.default-1478954368855
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-13] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-13] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-10-06] (Google)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-11-12] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-11-12] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-27] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-10-27] (Adobe Systems Inc.)
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-11-13] [not signed]
Chrome:
=======
CHR HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2207960 2016-09-26] (Adobe Systems, Incorporated)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [197128 2016-11-12] (AVAST Software)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [104448 2016-11-15] (Freemake) [File not signed]
R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2016-11-15] (Ellora Assets Corp.) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-12] (Validity Sensors, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [95744 2012-01-03] () [File not signed]
S2 SysMain; %systemroot%\system32\sysmain.dll [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-11-12] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-11-12] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-11-12] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-11-12] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-11-12] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-11-12] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-11-12] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-11-12] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-11-12] (AVAST Software)
S3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 enecir; C:\Windows\System32\DRIVERS\enecir.sys [70656 2009-06-28] (ENE TECHNOLOGY INC.) [File not signed]
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2014-01-27] () [File not signed]
U3 av90eo8w; C:\Windows\System32\Drivers\av90eo8w.sys [0 ] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder)
S3 NPF; system32\drivers\NPF.sys [X]
S3 STHDA; system32\DRIVERS\stwrt64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-11-17 06:58 - 2016-11-17 06:58 - 00000000 ____D C:\FRST
2016-11-17 06:50 - 2016-11-17 06:51 - 00000000 ____D C:\rsit
2016-11-17 06:39 - 2016-11-17 06:40 - 09647696 _____ (Crawler Group ) C:\Users\Petr\Downloads\SpywareTerminatorSetup.exe
2016-11-17 06:34 - 2016-11-17 06:34 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2016-11-16 17:11 - 2016-11-16 17:11 - 04999096 _____ C:\Users\Petr\Downloads\ausetup.exe
2016-11-16 05:21 - 2016-11-16 08:31 - 3418053727 _____ C:\Users\Petr\Downloads\Na-udici--lov-rybích-příšer--Úlovek-na-Kamčatce-hd.mp4
2016-11-15 22:52 - 2016-11-16 17:15 - 00000112 _____ C:\Windows\setupact.log
2016-11-15 22:52 - 2016-11-15 22:52 - 00000000 _____ C:\Windows\setuperr.log
2016-11-15 22:51 - 2016-11-16 17:14 - 00001498 _____ C:\Windows\PFRO.log
2016-11-15 20:31 - 2016-11-16 17:08 - 00000000 ____D C:\Program Files\McAfee
2016-11-15 20:30 - 2016-11-16 17:15 - 00000000 ____D C:\ProgramData\McAfee
2016-11-15 20:30 - 2016-11-16 17:15 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-11-15 18:31 - 2016-11-15 22:12 - 3966177695 _____ C:\Users\Petr\Desktop\Robson-Green---Extrémní-rybaření-1---1.mp4
2016-11-15 13:08 - 2016-11-17 02:28 - 00000000 ____D C:\Users\Public\Documents\AdobeGC
2016-11-13 13:16 - 2016-11-13 13:16 - 00002144 _____ C:\Users\Public\Desktop\Google Earth.lnk
2016-11-13 13:16 - 2016-11-13 13:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
2016-11-13 05:14 - 2016-11-15 18:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-11-13 02:25 - 2016-11-12 13:56 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-11-12 13:58 - 2016-11-13 02:26 - 00001893 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-11-12 13:58 - 2016-11-12 13:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-11-12 13:56 - 2016-11-12 13:56 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-11-12 13:55 - 2016-11-12 15:14 - 1368256512 _____ C:\Users\Petr\Desktop\Trine-2-CZ-Pikachu92.iso
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-11-17 06:52 - 2016-02-01 08:31 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-11-17 06:51 - 2015-11-09 09:23 - 00000000 ____D C:\Program Files\trend micro
2016-11-17 06:47 - 2015-12-09 12:40 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-11-17 06:38 - 2014-01-19 15:33 - 01888083 _____ C:\Windows\WindowsUpdate.log
2016-11-17 06:10 - 2009-07-14 05:45 - 00031104 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-11-17 06:10 - 2009-07-14 05:45 - 00031104 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-11-17 02:00 - 2014-01-31 13:43 - 00000000 ____D C:\Users\Petr\AppData\Local\Adobe
2016-11-16 17:21 - 2011-04-12 09:34 - 00668790 _____ C:\Windows\system32\perfh005.dat
2016-11-16 17:21 - 2011-04-12 09:34 - 00141418 _____ C:\Windows\system32\perfc005.dat
2016-11-16 17:21 - 2009-07-14 06:13 - 01583214 _____ C:\Windows\system32\PerfStringBackup.INI
2016-11-16 17:16 - 2016-02-01 08:31 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-11-16 17:15 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-11-16 17:14 - 2009-07-14 04:20 - 00000000 __RSD C:\Windows\Media
2016-11-16 17:12 - 2015-11-06 20:46 - 00001122 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Absolute Uninstaller.lnk
2016-11-16 17:12 - 2015-11-06 20:46 - 00001110 _____ C:\Users\Public\Desktop\Absolute Uninstaller.lnk
2016-11-16 17:05 - 2014-01-27 20:58 - 00000000 ____D C:\Program Files\KMSnano
2016-11-15 22:46 - 2014-12-03 11:28 - 00000000 ____D C:\Users\Petr\AppData\Roaming\uTorrent
2016-11-15 20:31 - 2016-01-19 10:36 - 00001336 _____ C:\Users\Public\Desktop\Freemake Video Downloader.lnk
2016-11-15 20:31 - 2016-01-19 10:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
2016-11-15 20:31 - 2016-01-19 10:36 - 00000000 ____D C:\ProgramData\Freemake
2016-11-15 20:31 - 2015-11-01 06:43 - 01278976 ___SH C:\Users\Petr\Desktop\Thumbs.db
2016-11-15 18:21 - 2014-12-03 16:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-11-14 16:04 - 2014-02-27 08:48 - 00000000 ____D C:\Users\Petr\AppData\Roaming\vlc
2016-11-13 13:51 - 2014-02-01 20:15 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-11-13 13:51 - 2014-02-01 20:15 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-11-13 13:51 - 2014-02-01 20:15 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-11-13 13:51 - 2014-02-01 20:15 - 00000000 ____D C:\Windows\system32\Macromed
2016-11-13 13:51 - 2014-01-27 21:17 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-11-13 13:16 - 2014-01-21 10:02 - 00000000 ____D C:\Program Files (x86)\Google
2016-11-13 02:26 - 2014-05-13 13:27 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-11-12 16:21 - 2015-12-01 09:34 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-11-12 16:20 - 2015-12-01 09:35 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-11-12 13:58 - 2014-05-13 13:27 - 00969184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2016-11-12 13:58 - 2014-05-13 13:27 - 00293352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2016-11-12 13:58 - 2014-01-27 22:10 - 00513632 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2016-11-12 13:56 - 2015-07-04 10:01 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-11-12 13:56 - 2014-05-13 13:34 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-11-12 13:56 - 2014-05-13 13:34 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-11-12 13:56 - 2014-05-13 13:27 - 00969560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.147895550213507
2016-11-12 13:56 - 2014-05-13 13:27 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys.147895550666112
2016-11-12 13:56 - 2014-05-13 13:27 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-11-12 13:56 - 2014-05-13 13:27 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-11-12 13:56 - 2014-01-27 22:10 - 00513496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.147895550441310
2016-11-12 13:56 - 2014-01-27 22:09 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-11-12 13:47 - 2016-02-01 08:31 - 00003948 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-11-12 13:47 - 2016-02-01 08:31 - 00003696 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
==================== Files in the root of some directories =======
2015-06-29 18:20 - 2015-07-03 16:38 - 0000428 _____ () C:\Users\Petr\AppData\Roaming\MANDIS.MTBF.txt
2015-06-29 18:20 - 2015-07-03 16:54 - 0000934 _____ () C:\Users\Petr\AppData\Roaming\__AvidCloudManager.log
2015-06-29 18:20 - 2015-06-29 18:26 - 0000792 _____ () C:\Users\Petr\AppData\Roaming\__AvidCloudManagerPrevious.log
2014-01-20 23:21 - 2014-01-20 23:21 - 0000000 _____ () C:\Users\Petr\AppData\Local\AtStart.txt
2014-01-20 23:21 - 2014-01-20 23:21 - 0000000 _____ () C:\Users\Petr\AppData\Local\DSwitch.txt
2014-01-20 23:21 - 2014-01-20 23:21 - 0000000 _____ () C:\Users\Petr\AppData\Local\QSwitch.txt
2014-01-27 21:15 - 2016-03-01 17:05 - 0005344 _____ () C:\ProgramData\hpzinstall.log
Some files in TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\FreemakeVideoDownloaderFull.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-11-14 00:36
==================== End of FRST.txt ============================
info.txt logfile of random's system information tool 1.10 2016-11-17 06:51:29
======MBR======
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
======Uninstall list======
-->C:\Windows\SysWOW64\Macromed\Flash\uninstall_activeX.exe
Absolute Uninstaller 5.3.1.21-->C:\Program Files (x86)\Absolute Uninstaller\uninst.exe
Adobe Acrobat Reader DC-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-AC0F074E4100}
Adobe Flash Player 23 NPAPI-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_207_Plugin.exe -maintain plugin
Adobe Photoshop CC 2015-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="2.0" --mode="Uninstall" --mediaSignature="{793C2BF7-A4FE-4608-91C9-9282C5801C21}"
Adobe Photoshop CS-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}\setup.exe" -l0x5
Adobe Refresh Manager-->MsiExec.exe /I{AC76BA86-0804-1033-1959-001824205020}
Aktualizace NVIDIA 1.15.2-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{0A836BF7-6020-42E8-81E8-72BB4E1A744C}\NVI2.DLL",UninstallPackage Display.Update
Any Video Converter 5.8.6-->"C:\Program Files (x86)\Any Video Converter\unins000.exe"
Avast Free Antivirus-->C:\Program Files\Alwil Software\Avast5\Setup\Instup.exe /control_panel
Broadcom 802.11 Wireless LAN Adapter-->"C:\Program Files\Broadcom\Broadcom 802.11\Driver\bcmwlu00.exe" verbose /rootkey="Software\Broadcom\802.11\UninstallInfo" /rootdir="C:\Program Files\Broadcom\Broadcom 802.11\Driver"
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
Definition Update for Microsoft Office 2013 (KB2965273) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{3D7BF4DB-4BB0-4559-9E7D-9BFFEBD36234}" "1029" "0"
Defraggler-->"C:\Program Files\Defraggler\uninst.exe"
FormatFactory 3.8.0.0-->C:\Program Files (x86)\FormatFactory\uninst.exe
Fotogalerie-->MsiExec.exe /X{F37D360D-9308-4BB1-8515-DC6B637B9486}
Fotosizer 2.09-->C:\Program Files (x86)\Fotosizer\uninst.exe
Freemake Video Downloader-->"C:\Program Files (x86)\Freemake\Freemake Video Downloader\Uninstall\unins000.exe"
Glary Undelete 5.0.1.19-->C:\Program Files (x86)\Glary Undelete\uninst.exe
Google Earth-->MsiExec.exe /I{A0C18B96-AB79-46BD-8321-6FA83E6D25B9}
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
HP MediaSmart Live TV-->"C:\Program Files (x86)\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\setup.exe" /z-uninstall
HP MediaSmart Live TV-->"C:\Program Files (x86)\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\setup.exe" /z-uninstall
Intel(R) Turbo Boost Technology Driver-->C:\Program Files (x86)\Intel\Intel(R) Turbo Boost Technology Driver\Uninstall\setup.exe -uninstall -iips
Jpeg Resampler Vs 6+-->"C:\Program Files (x86)\JpegResampler2010\unins000.exe"
Junk Mail filter update-->MsiExec.exe /I{0BE9E708-5DC0-4963-9CFD-0AA519090E79}
K-Lite Codec Pack 11.7.5 Full-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
KMSnano 24-->"C:\Program Files\KMSnano\unins000.exe"
Microsoft .NET Framework 4.5.1 (CSY)-->MsiExec.exe /X{50813B8C-FCBB-3C61-8039-EAAA93029066}
Microsoft .NET Framework 4.5.1 (čeština)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\CSY\\Setup.exe /repair /x86 /x64 /lcid 1029
Microsoft .NET Framework 4.5.1-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\\Setup.exe /repair /x86 /x64
Microsoft .NET Framework 4.5.1-->MsiExec.exe /X{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}
Microsoft Access MUI (Czech) 2013-->MsiExec.exe /X{90150000-0015-0405-1000-0000000FF1CE}
Microsoft DCF MUI (Czech) 2013-->MsiExec.exe /X{90150000-0090-0405-1000-0000000FF1CE}
Microsoft Excel MUI (Czech) 2013-->MsiExec.exe /X{90150000-0016-0405-1000-0000000FF1CE}
Microsoft Groove MUI (Czech) 2013-->MsiExec.exe /X{90150000-00BA-0405-1000-0000000FF1CE}
Microsoft InfoPath MUI (Czech) 2013-->MsiExec.exe /X{90150000-0044-0405-1000-0000000FF1CE}
Microsoft Lync MUI (Czech) 2013-->MsiExec.exe /X{90150000-012B-0405-1000-0000000FF1CE}
Microsoft Office 32-bit Components 2013-->MsiExec.exe /X{90150000-00C1-0000-1000-0000000FF1CE}
Microsoft Office Korrekturhilfen 2013 - Deutsch-->MsiExec.exe /X{90150000-001F-0407-1000-0000000FF1CE}
Microsoft Office OSM MUI (Czech) 2013-->MsiExec.exe /X{90150000-00E1-0405-1000-0000000FF1CE}
Microsoft Office OSM UX MUI (Czech) 2013-->MsiExec.exe /X{90150000-00E2-0405-1000-0000000FF1CE}
Microsoft Office Professional Plus 2013-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Office Setup Controller\setup.exe" /uninstall PROPLUSR /dll OSETUP.DLL
Microsoft Office Professional Plus 2013-->MsiExec.exe /X{91150000-0011-0000-1000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2013-->MsiExec.exe /X{90150000-002C-0405-1000-0000000FF1CE}
Microsoft Office Proofing Tools 2013 - English-->MsiExec.exe /X{90150000-001F-0409-1000-0000000FF1CE}
Microsoft Office Shared 32-bit MUI (Czech) 2013-->MsiExec.exe /X{90150000-00C1-0405-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2013-->MsiExec.exe /X{90150000-006E-0405-1000-0000000FF1CE}
Microsoft OneNote MUI (Czech) 2013-->MsiExec.exe /X{90150000-00A1-0405-1000-0000000FF1CE}
Microsoft Outlook MUI (Czech) 2013-->MsiExec.exe /X{90150000-001A-0405-1000-0000000FF1CE}
Microsoft PowerPoint MUI (Czech) 2013-->MsiExec.exe /X{90150000-0018-0405-1000-0000000FF1CE}
Microsoft Publisher MUI (Czech) 2013-->MsiExec.exe /X{90150000-0019-0405-1000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030-->"C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030-->"C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030-->MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030-->MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501-->"C:\ProgramData\Package Cache\{050d4fc8-5d48-4b8f-8972-47c82c46020f}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501-->"C:\ProgramData\Package Cache\{f65db027-aff3-4070-886a-0d87064aabb1}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005-->MsiExec.exe /X{929FBD26-9020-399B-9A7A-751D61F0B942}
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->c:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)\install.exe
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->MsiExec.exe /X{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}
Microsoft Word MUI (Czech) 2013-->MsiExec.exe /X{90150000-001B-0405-1000-0000000FF1CE}
Movie Maker-->MsiExec.exe /X{38F03569-A636-4CF3-BDDE-032C8C251304}
Movie Maker-->MsiExec.exe /X{3D2CF65C-B544-4308-B996-700D3E5F6C4C}
Movie Maker-->MsiExec.exe /X{DD67BE4B-7E62-4215-AFA3-F123A800A389}
Mozilla Firefox 49.0.2 (x86 cs)-->"C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe"
Mozilla Maintenance Service-->"C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe"
MSVCRT_amd64-->MsiExec.exe /I{D0B44725-3666-492D-BEF6-587A14BD9BD9}
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSVCRT110_amd64-->MsiExec.exe /I{E9FA781F-3E80-4399-825A-AD3E11C28C77}
MSVCRT110-->MsiExec.exe /I{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština-->MsiExec.exe /X{90150000-001F-0405-1000-0000000FF1CE}
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina-->MsiExec.exe /X{90150000-001F-041B-1000-0000000FF1CE}
NVIDIA Ovladače grafiky 331.65-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{0A836BF7-6020-42E8-81E8-72BB4E1A744C}\NVI2.DLL",UninstallPackage Display.Driver
Photo Common-->MsiExec.exe /X{15BFD731-A10E-43E9-9D18-0F682BC0480F}
Photo Common-->MsiExec.exe /X{CAA0F57A-BA8C-4AD8-AA03-F32B0E4F5623}
Photo Gallery-->MsiExec.exe /X{07AAB66E-4718-422D-9218-4AFB3C922A71}
Photo Gallery-->MsiExec.exe /X{C992FFE0-AC32-4FA9-BC9A-F1637B9E655D}
Playway to English 1 CD-ROM-->MsiExec.exe /I{6A031978-1FDC-42D4-A30B-018FA99C5784}
Samsung Kies3-->"C:\Program Files (x86)\InstallShield Installation Information\{88547073-C566-4895-9005-EBE98EA3F7C7}\setup.exe" -runfromtemp -l0x0409 -removeonly
Samsung Kies3-->MsiExec.exe /I{88547073-C566-4895-9005-EBE98EA3F7C7}
ScanSoft OmniPage SE 16-->MsiExec.exe /X{27AC9FC3-9041-4CA0-B718-C0B8122D9B32}
ScanSoft PaperPort 11-->MsiExec.exe /I{1D66156D-D721-4B55-B08B-BDC917E8DCD0}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {F7CBA1C7-E5B5-39E9-9631-459E1FE08C45}
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {BD0F9F7E-62B2-3971-9E2E-B87B832CE89D}
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {513BC47F-0560-33C2-A029-C5387642233A}
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {599EC629-2679-30CE-B28B-7432EF5FC126}
Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {47FA5DCB-D13C-331E-BC32-65E53BDD949C}
Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {48006B2D-366F-3386-92C7-785D3A523042}
Security Update for Microsoft Office 2013 (KB2910941) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{43ECCB82-45DF-4800-8930-0689BF91F765}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039734) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{FB8031A1-6407-43C0-8AE5-4BD452FA42F0}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039798) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{05F0956E-88D3-4437-BE87-E2B0CA491BE8}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039798) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{05F0956E-88D3-4437-BE87-E2B0CA491BE8}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3085572) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{6190EC69-4261-4E1F-AD8A-417355BC58E7}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3101360) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{73A98FFF-A40F-4B6F-9E31-0DC7D6234169}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3101360) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{73A98FFF-A40F-4B6F-9E31-0DC7D6234169}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3101360) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{73A98FFF-A40F-4B6F-9E31-0DC7D6234169}" "1029" "0"
Security Update for Microsoft OneNote 2013 (KB3101371) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0405-1000-0000000FF1CE}" "{953F3907-B939-4CD7-9885-D88AEDF92716}" "1029" "0"
Security Update for Microsoft OneNote 2013 (KB3101371) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{953F3907-B939-4CD7-9885-D88AEDF92716}" "1029" "0"
Security Update for Microsoft OneNote 2013 (KB3101371) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{953F3907-B939-4CD7-9885-D88AEDF92716}" "1029" "0"
Security Update for Microsoft PowerPoint 2013 (KB3055029) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-1000-0000000FF1CE}" "{C047B653-5363-4F75-A3D4-7FB3878D32BD}" "1029" "0"
Security Update for Microsoft PowerPoint 2013 (KB3055029) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{C047B653-5363-4F75-A3D4-7FB3878D32BD}" "1029" "0"
Security Update for Microsoft Publisher 2013 (KB3085561) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0405-1000-0000000FF1CE}" "{B868C869-9B43-469A-A22F-C2E79B706F14}" "1029" "0"
Security Update for Microsoft Publisher 2013 (KB3085561) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{B868C869-9B43-469A-A22F-C2E79B706F14}" "1029" "0"
Security Update for Microsoft Publisher 2013 (KB3085561) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{B868C869-9B43-469A-A22F-C2E79B706F14}" "1029" "0"
Security Update for Microsoft Word 2013 (KB2965224) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-1000-0000000FF1CE}" "{CAFFE1BB-5EB9-413A-B84A-65F01EAF7C15}" "1029" "0"
Security Update for Microsoft Word 2013 (KB2965224) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-1000-0000000FF1CE}" "{CAFFE1BB-5EB9-413A-B84A-65F01EAF7C15}" "1029" "0"
Security Update for Microsoft Word 2013 (KB2965224) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-1000-0000000FF1CE}" "{CAFFE1BB-5EB9-413A-B84A-65F01EAF7C15}" "1029" "0"
Security Update for Microsoft Word 2013 (KB2965224) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{CAFFE1BB-5EB9-413A-B84A-65F01EAF7C15}" "1029" "0"
Security Update for Skype for Business 2015 (KB3085500) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{2CBBF876-7E76-4A01-8E9D-AEE3A99A19F2}" "1029" "0"
Security Update for Skype for Business 2015 (KB3085500) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-1000-0000000FF1CE}" "{2CBBF876-7E76-4A01-8E9D-AEE3A99A19F2}" "1029" "0"
Security Update for Skype for Business 2015 (KB3085500) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{2CBBF876-7E76-4A01-8E9D-AEE3A99A19F2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0405-1000-0000000FF1CE}" "{1E8252A7-D489-4BB6-9694-93799FFD33ED}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0407-1000-0000000FF1CE}" "{DABB9E2A-F054-4F97-9EB2-6992316C6EC7}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-1000-0000000FF1CE}" "{835E4BED-E265-4103-AE14-0B4C70CF3FE8}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-041B-1000-0000000FF1CE}" "{4601BD00-BC9B-4CA2-940C-2552782C7347}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002C-0405-1000-0000000FF1CE}" "{EC915383-0457-4D83-BE7A-009D7841E9C5}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0044-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{3F685A71-DF4A-4AC0-A110-0FA0B7FFD86C}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0090-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{1931508C-C004-4983-81E3-70BE6252904B}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0405-1000-0000000FF1CE}" "{6E88843F-58F2-45EB-8C4A-0DDFE45366E1}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E1-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E2-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}" "1029" "0"
Skype Click to Call-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 7.0-->MsiExec.exe /X{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
SP45629 - Intel Chipset Installation Utility-->MsiExec.exe /I{7AB416C2-4AEC-4967-A873-E2A3B404E6EC}
Synaptics Pointing Device Driver-->rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
TeamViewer 11-->C:\Program Files (x86)\TeamViewer\uninstall.exe
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Update for Microsoft Access 2013 (KB3085503) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0405-1000-0000000FF1CE}" "{08B86615-1181-4A9C-A7B9-BBE31E2BD466}" "1029" "0"
Update for Microsoft Access 2013 (KB3085503) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{08B86615-1181-4A9C-A7B9-BBE31E2BD466}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0405-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Office 2013 (KB2760344) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{EF77B4A6-DFEC-4010-A87D-9B6BF87FABEC}" "1029" "0"
Update for Microsoft Office 2013 (KB2760371) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{25DEA344-FF6F-41BD-B88F-5242BB8E80E1}" "1029" "0"
Update for Microsoft Office 2013 (KB2760544) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{62857CDD-2985-4939-91BA-19ED0B0031A5}" "1029" "0"
Update for Microsoft Office 2013 (KB2768012) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{0814662C-FD28-4DE0-ACE5-EE50D1D6C8FB}" "1029" "0"
Update for Microsoft Office 2013 (KB2837654) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{2147FFF7-71C4-4306-AFE2-1AA7A6025BB1}" "1029" "0"
Update for Microsoft Office 2013 (KB2880478) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{8116ED50-F1E7-49E1-9D8D-421497D34B0F}" "1029" "0"
Update for Microsoft Office 2013 (KB2880487) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{76379D52-B506-4634-8404-8E1718DF1430}" "1029" "0"
Update for Microsoft Office 2013 (KB2881001) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{DF1B7B95-4A86-4605-A628-556394B5580A}" "1029" "0"
Update for Microsoft Office 2013 (KB2881076) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-1000-0000000FF1CE}" "{F492C757-000C-4745-BD8F-AD03F029C6BB}" "1029" "0"
Update for Microsoft Office 2013 (KB2881076) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{F492C757-000C-4745-BD8F-AD03F029C6BB}" "1029" "0"
Update for Microsoft Office 2013 (KB2883036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{E919ACF4-A1D7-4CAA-A103-5EB115563721}" "1029" "0"
Update for Microsoft Office 2013 (KB2883095) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{EADBF225-163E-406B-B11A-26ECCCAB5A0E}" "1029" "0"
Update for Microsoft Office 2013 (KB2889863) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{82D6A9DF-894F-488F-A0C3-54A37A6E7B2A}" "1029" "0"
Update for Microsoft Office 2013 (KB2899522) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A4E88D96-814F-4183-8DB2-BA3EC2B7E434}" "1029" "0"
Update for Microsoft Office 2013 (KB2956171) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A3DC29E8-0E97-448A-B9C0-9086CB8B3E86}" "1029" "0"
Update for Microsoft Office 2013 (KB2956177) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{3F8EF29A-A7F8-48B0-BA19-01D0B88AB1B7}" "1029" "0"
Update for Microsoft Office 2013 (KB2956177) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{3F8EF29A-A7F8-48B0-BA19-01D0B88AB1B7}" "1029" "0"
Update for Microsoft Office 2013 (KB2965262) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{D99CCEA8-CBD6-4800-8805-535A99AFC8BC}" "1029" "0"
Update for Microsoft Office 2013 (KB2965262) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{D99CCEA8-CBD6-4800-8805-535A99AFC8BC}" "1029" "0"
Update for Microsoft Office 2013 (KB2965267) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{A64A29C8-BB35-4FC5-84D6-6D1C6B2BB59F}" "1029" "0"
Update for Microsoft Office 2013 (KB2965267) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{A64A29C8-BB35-4FC5-84D6-6D1C6B2BB59F}" "1029" "0"
Update for Microsoft Office 2013 (KB2965267) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A64A29C8-BB35-4FC5-84D6-6D1C6B2BB59F}" "1029" "0"
Update for Microsoft Office 2013 (KB3023052) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A472CEA9-44BA-4ADD-8AD1-589B2F0240EE}" "1029" "0"
Update for Microsoft Office 2013 (KB3039701) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{8A6AEFA2-8003-4FD6-8EF7-DEAD1C07803C}" "1029" "0"
Update for Microsoft Office 2013 (KB3039718) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{88E8FA4B-38D9-496D-86D8-BB84E9AB520D}" "1029" "0"
Update for Microsoft Office 2013 (KB3039739) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-1000-0000000FF1CE}" "{AFF17D1D-61FB-4F35-86B8-074884BDD0A6}" "1029" "0"
Update for Microsoft Office 2013 (KB3039739) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{AFF17D1D-61FB-4F35-86B8-074884BDD0A6}" "1029" "0"
Update for Microsoft Office 2013 (KB3039766) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{881BA890-D29E-4212-ADDC-A92BE0FBA444}" "1029" "0"
Update for Microsoft Office 2013 (KB3054783) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{4F73DEDD-E1B8-43A4-B999-D18C134D22B5}" "1029" "0"
Update for Microsoft Office 2013 (KB3054785) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{A4970C67-6BF6-470D-9A66-BD7488A56F2E}" "1029" "0"
Update for Microsoft Office 2013 (KB3054785) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A4970C67-6BF6-470D-9A66-BD7488A56F2E}" "1029" "0"
Update for Microsoft Office 2013 (KB3054856) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{65B377E4-0004-4060-A2EE-EC38AD73EF92}" "1029" "0"
Update for Microsoft Office 2013 (KB3054935) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{875E1573-787C-4DAD-94E8-347D0406A1AD}" "1029" "0"
Update for Microsoft Office 2013 (KB3055011) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0405-1000-0000000FF1CE}" "{53DB886B-0826-45BC-8C4D-D761A5D5AB3C}" "1029" "0"
Update for Microsoft Office 2013 (KB3055011) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0407-1000-0000000FF1CE}" "{8F98D5E9-1F7E-4848-9431-CEE5E1E51313}" "1029" "0"
Update for Microsoft Office 2013 (KB3055011) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-1000-0000000FF1CE}" "{D05C001E-B0A0-4903-BC14-F34CB4A775C1}" "1029" "0"
Update for Microsoft Office 2013 (KB3055011) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-041B-1000-0000000FF1CE}" "{00EE9619-871B-4484-ABDD-2A829F3D683D}" "1029" "0"
Update for Microsoft Office 2013 (KB3085493) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{572934A4-C018-4D51-AA2C-F6F85B1E9129}" "1029" "0"
Update for Microsoft Office 2013 (KB3085506) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{F2858C55-53C1-4AA0-9DF5-E240E15F01BE}" "1029" "0"
Update for Microsoft Office 2013 (KB3101358) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{B685B80D-4621-44BA-9849-19C71C4CAC69}" "1029" "0"
Update for Microsoft Office 2013 (KB3101487) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{51348D5E-3736-4A29-98DD-6B97EE696382}" "1029" "0"
Update for Microsoft OneDrive for Business (KB2956185) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0405-1000-0000000FF1CE}" "{171E6E09-C2A5-432E-85A4-C19136E59BCE}" "1029" "0"
Update for Microsoft OneDrive for Business (KB2956185) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{171E6E09-C2A5-432E-85A4-C19136E59BCE}" "1029" "0"
Update for Microsoft OneDrive for Business (KB2956185) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0405-1000-0000000FF1CE}" "{171E6E09-C2A5-432E-85A4-C19136E59BCE}" "1029" "0"
Update for Microsoft OneDrive for Business (KB2956185) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{171E6E09-C2A5-432E-85A4-C19136E59BCE}" "1029" "0"
Update for Microsoft Outlook 2013 (KB2965270) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-1000-0000000FF1CE}" "{B4FE3F01-A94B-44F5-8142-C9522B537443}" "1029" "0"
Update for Microsoft Outlook 2013 (KB2965270) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{B4FE3F01-A94B-44F5-8142-C9522B537443}" "1029" "0"
Update for Microsoft Outlook Social Connector 2013 (KB3054854) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-1000-0000000FF1CE}" "{0B5649CA-AD84-4970-9FCE-548A3EF323ED}" "1029" "0"
Update for Microsoft Outlook Social Connector 2013 (KB3054854) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{0B5649CA-AD84-4970-9FCE-548A3EF323ED}" "1029" "0"
Update for Microsoft Project 2013 (KB2965279) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{0CDCFFFE-0E55-4C46-9B09-8CB5D0F38566}" "1029" "0"
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}" "1029" "0"
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}" "1029" "0"
Update for Microsoft Word 2013 (KB2878319) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{BC51FE30-3A56-4802-8D9E-E9BC05B56B49}" "1029" "0"
Update for Skype for Business 2015 (KB2889853) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-1000-0000000FF1CE}" "{2B44F588-2B80-4DD3-B577-B10B3C6865EA}" "1029" "0"
VLC media player-->C:\Program Files (x86)\VLC\uninstall.exe
Windows Live Communications Platform-->MsiExec.exe /I{41C61308-6CFD-4D54-AB6A-7136ED08A18E}
Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{66B5819D-DE70-42BE-B40F-978FBA12452E}
Windows Live Essentials-->MsiExec.exe /I{9A470EA9-FF86-4C0E-992C-572BF2B9D6FF}
Windows Live Family Safety-->MsiExec.exe /I{2BC9C2FF-E0B7-40F9-B1A5-6F80663C301B}
Windows Live Family Safety-->MsiExec.exe /I{6152DEA9-EA0C-4013-9DBF-4A8881A7F722}
Windows Live Family Safety-->MsiExec.exe /X{CB3CA48C-95CB-412B-B7AE-6F2EA8F89907}
Windows Live ID Sign-in Assistant-->MsiExec.exe /I{CE52672C-A0E9-4450-8875-88A221D5CD50}
Windows Live Installer-->MsiExec.exe /I{659CB81C-B54E-4DF1-B618-F35777393A54}
Windows Live Mail-->MsiExec.exe /I{3EE8FA69-F2A5-4BDB-9E23-3ABB2421B4FA}
Windows Live Mail-->MsiExec.exe /I{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}
Windows Live Mail-->MsiExec.exe /I{BAD27F0E-5165-49A5-BE66-AF5BF73F2FEE}
Windows Live Messenger-->MsiExec.exe /X{88B9357F-0845-465F-96B9-50976FB9C6C2}
Windows Live Messenger-->MsiExec.exe /X{BAD984EE-790E-4513-A428-3BE2D426DCA7}
Windows Live Messenger-->MsiExec.exe /X{E703613B-BDAB-433E-A66A-DE0263E3D35D}
Windows Live MIME IFilter-->MsiExec.exe /I{25058321-C33E-496B-8915-6FD64D362CAF}
Windows Live Photo Common-->MsiExec.exe /X{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}
Windows Live PIMT Platform-->MsiExec.exe /I{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}
Windows Live SOXE Definitions-->MsiExec.exe /I{D1893000-EA77-493C-8DDD-E262436E959B}
Windows Live SOXE-->MsiExec.exe /I{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{6522F5F9-411B-4513-A75B-CEA00395F032}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{E100E2B5-F2EF-4955-AB7A-C3F2125A3BCD}
Windows Live UX Platform-->MsiExec.exe /I{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}
Windows Live Writer Resources-->MsiExec.exe /X{0F974770-76EB-4C38-986E-E7BDD9C0DFC4}
Windows Live Writer Resources-->MsiExec.exe /X{E5807449-CA84-42F6-9CE3-A0E2BDA9E24B}
Windows Live Writer-->MsiExec.exe /X{714E162E-CD4F-4F1B-8302-7F5179409C25}
WinRAR 5.21 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
WinZip 19.0-->MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240E5}
Xerox WorkCentre 6015B-->"C:\Program Files (x86)\InstallShield Installation Information\{FB21CB19-03DB-4422-AB72-3CA9C9499512}\setup.exe" -runfromtemp -l0x0405 -removeonly
Xerox WorkCentre 6015B-->MsiExec.exe /I{FB21CB19-03DB-4422-AB72-3CA9C9499512}
======System event log======
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953582
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953581
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953580
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953579
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953578
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
=====Application event log=====
Computer Name: Mandis
Event Code: 4101
Message: Byla ověřena platnost licence systému Windows.
Record Number: 91358
Source Name: Microsoft-Windows-Winlogon
Time Written: 20151010164342.000000-000
Event Type: Informace
User:
Computer Name: Mandis
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.
Record Number: 91357
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20151010164339.494459-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: Mandis
Event Code: 105
Message:
Record Number: 91356
Source Name: HPSrv
Time Written: 20151010164339.000000-000
Event Type: Informace
User:
Computer Name: Mandis
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 91355
Source Name: Microsoft-Windows-EventSystem
Time Written: 20151010164339.000000-000
Event Type: Informace
User:
Computer Name: Mandis
Event Code: 6003
Message: Odběratel oznámení přihlašování do systému Windows <TrustedInstaller> nezpracoval důležitou událost upozornění.
Record Number: 91354
Source Name: Microsoft-Windows-Winlogon
Time Written: 20151010164339.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: Mandis
Event Code: 4634
Message: Účet byl odhlášen.
Předmět:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dbf
Typ přihlášení: 7
Tato událost je generována, pokud je zničena relace přihlášení. Může být spojena s událostí přihlášení pomocí hodnoty ID přihlášení. Hodnoty ID přihlášení jsou jednoznačné pouze v rámci jednotlivých restartů stejného počítače.
Record Number: 32371
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
Computer Name: Mandis
Event Code: 4634
Message: Účet byl odhlášen.
Předmět:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dcd
Typ přihlášení: 7
Tato událost je generována, pokud je zničena relace přihlášení. Může být spojena s událostí přihlášení pomocí hodnoty ID přihlášení. Hodnoty ID přihlášení jsou jednoznačné pouze v rámci jednotlivých restartů stejného počítače.
Record Number: 32370
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
Computer Name: Mandis
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dbf
Oprávnění: SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 32369
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
Computer Name: Mandis
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: MANDIS$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7
Typ přihlášení: 7
Nové přihlášení:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dcd
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2e4
Název procesu: C:\Windows\System32\winlogon.exe
Informace o síti:
Název pracovní stanice: MANDIS
Adresa zdrojové sítě 127.0.0.1
Zdrojový port: 0
Podrobné informace o ověření:
Proces přihlášení: User32
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 32368
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
Computer Name: Mandis
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: MANDIS$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7
Typ přihlášení: 7
Nové přihlášení:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dbf
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2e4
Název procesu: C:\Windows\System32\winlogon.exe
Informace o síti:
Název pracovní stanice: MANDIS
Adresa zdrojové sítě 127.0.0.1
Zdrojový port: 0
Podrobné informace o ověření:
Proces přihlášení: User32
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 32367
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Broadcom\Broadcom 802.11\Driver;C:\Program Files (x86)\Windows Live\Shared
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 37 Stepping 2, GenuineIntel
"PROCESSOR_REVISION"=2502
"windows_tracing_logfile"=C:\BVTBin\Tests\installpackage\csilogfile.log
"windows_tracing_flags"=3
"Grande"=C:\Program Files (x86)\Xerox Office Printing\DocuPrint SSW\PrintingScout
-----------------EOF-----------------
a webovky na firefoxu co používám mi nabíhají pomalu. Dal jsem i aktualizaci Win7, ale ty jen se hlédá a hledá a nic již po 2 dnech, kdy jsem ho i 3x restartoval a zadal update znovu.
Prosím pěkně o kontrolu systému, přidávám rsit a frst log, velmi děkuji a přeji příjemný den:-)
Petr
frst log:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:07-11-2015
Ran by Petr (administrator) on MANDIS (17-11-2016 06:58:37)
Running from C:\Mandis disk\programy Windows 7\Programy proti virům a malware
Loaded Profiles: Petr & UpdatusUser (Available Profiles: Petr & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Nico Mak Computing) C:\Program Files\File Association Helper\FAHWindow.exe
(Xerox) C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
() C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
() C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox)
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-01-03] ()
HKLM-x32\...\Run: [StatusAutoRun6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe [4476928 2012-01-03] ()
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [24576 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [40960 2009-02-19] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [9080768 2016-11-15] (AVAST Software)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2020704 2014-08-05] (Wondershare)
HKLM-x32\...\Run: [ProductUpdater] => C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [75776 2016-11-15] ()
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\MountPoints2: {36787e2d-2ad3-11e5-9109-002713a4b3b0} - F:\iLinker.exe
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\MountPoints2: {6d08fdae-f483-11e4-b9fc-002713a4b3b0} - F:\Unlock.exe autoplay=true
HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\...\MountPoints2: {b5f7b0f0-9767-11e5-af74-002713a4b3b0} - G:\Setup.bat
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll [2016-11-12] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2016-02-01]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.131.81.65 192.168.1.1
Tcpip\..\Interfaces\{D0B7FA16-DD22-4461-85C0-0EF88289B5B4}: [DhcpNameServer] 10.131.81.65 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3400088848-3241487186-2567401322-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-03-18] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-22] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-03-18] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-03-12] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\10k6c8t2.default-1478954368855
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-13] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-13] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-10-06] (Google)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-11-12] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-11-12] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-27] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-10-27] (Adobe Systems Inc.)
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-11-13] [not signed]
Chrome:
=======
CHR HKU\S-1-5-21-3400088848-3241487186-2567401322-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2207960 2016-09-26] (Adobe Systems, Incorporated)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [197128 2016-11-12] (AVAST Software)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [104448 2016-11-15] (Freemake) [File not signed]
R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2016-11-15] (Ellora Assets Corp.) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-12] (Validity Sensors, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [95744 2012-01-03] () [File not signed]
S2 SysMain; %systemroot%\system32\sysmain.dll [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-11-12] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-11-12] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-11-12] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-11-12] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-11-12] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-11-12] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-11-12] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-11-12] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-11-12] (AVAST Software)
S3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.) [File not signed]
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 enecir; C:\Windows\System32\DRIVERS\enecir.sys [70656 2009-06-28] (ENE TECHNOLOGY INC.) [File not signed]
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2014-01-27] () [File not signed]
U3 av90eo8w; C:\Windows\System32\Drivers\av90eo8w.sys [0 ] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder)
S3 NPF; system32\drivers\NPF.sys [X]
S3 STHDA; system32\DRIVERS\stwrt64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-11-17 06:58 - 2016-11-17 06:58 - 00000000 ____D C:\FRST
2016-11-17 06:50 - 2016-11-17 06:51 - 00000000 ____D C:\rsit
2016-11-17 06:39 - 2016-11-17 06:40 - 09647696 _____ (Crawler Group ) C:\Users\Petr\Downloads\SpywareTerminatorSetup.exe
2016-11-17 06:34 - 2016-11-17 06:34 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2016-11-16 17:11 - 2016-11-16 17:11 - 04999096 _____ C:\Users\Petr\Downloads\ausetup.exe
2016-11-16 05:21 - 2016-11-16 08:31 - 3418053727 _____ C:\Users\Petr\Downloads\Na-udici--lov-rybích-příšer--Úlovek-na-Kamčatce-hd.mp4
2016-11-15 22:52 - 2016-11-16 17:15 - 00000112 _____ C:\Windows\setupact.log
2016-11-15 22:52 - 2016-11-15 22:52 - 00000000 _____ C:\Windows\setuperr.log
2016-11-15 22:51 - 2016-11-16 17:14 - 00001498 _____ C:\Windows\PFRO.log
2016-11-15 20:31 - 2016-11-16 17:08 - 00000000 ____D C:\Program Files\McAfee
2016-11-15 20:30 - 2016-11-16 17:15 - 00000000 ____D C:\ProgramData\McAfee
2016-11-15 20:30 - 2016-11-16 17:15 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-11-15 18:31 - 2016-11-15 22:12 - 3966177695 _____ C:\Users\Petr\Desktop\Robson-Green---Extrémní-rybaření-1---1.mp4
2016-11-15 13:08 - 2016-11-17 02:28 - 00000000 ____D C:\Users\Public\Documents\AdobeGC
2016-11-13 13:16 - 2016-11-13 13:16 - 00002144 _____ C:\Users\Public\Desktop\Google Earth.lnk
2016-11-13 13:16 - 2016-11-13 13:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
2016-11-13 05:14 - 2016-11-15 18:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-11-13 02:25 - 2016-11-12 13:56 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-11-12 13:58 - 2016-11-13 02:26 - 00001893 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-11-12 13:58 - 2016-11-12 13:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-11-12 13:56 - 2016-11-12 13:56 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-11-12 13:55 - 2016-11-12 15:14 - 1368256512 _____ C:\Users\Petr\Desktop\Trine-2-CZ-Pikachu92.iso
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-11-17 06:52 - 2016-02-01 08:31 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-11-17 06:51 - 2015-11-09 09:23 - 00000000 ____D C:\Program Files\trend micro
2016-11-17 06:47 - 2015-12-09 12:40 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-11-17 06:38 - 2014-01-19 15:33 - 01888083 _____ C:\Windows\WindowsUpdate.log
2016-11-17 06:10 - 2009-07-14 05:45 - 00031104 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-11-17 06:10 - 2009-07-14 05:45 - 00031104 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-11-17 02:00 - 2014-01-31 13:43 - 00000000 ____D C:\Users\Petr\AppData\Local\Adobe
2016-11-16 17:21 - 2011-04-12 09:34 - 00668790 _____ C:\Windows\system32\perfh005.dat
2016-11-16 17:21 - 2011-04-12 09:34 - 00141418 _____ C:\Windows\system32\perfc005.dat
2016-11-16 17:21 - 2009-07-14 06:13 - 01583214 _____ C:\Windows\system32\PerfStringBackup.INI
2016-11-16 17:16 - 2016-02-01 08:31 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-11-16 17:15 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-11-16 17:14 - 2009-07-14 04:20 - 00000000 __RSD C:\Windows\Media
2016-11-16 17:12 - 2015-11-06 20:46 - 00001122 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Absolute Uninstaller.lnk
2016-11-16 17:12 - 2015-11-06 20:46 - 00001110 _____ C:\Users\Public\Desktop\Absolute Uninstaller.lnk
2016-11-16 17:05 - 2014-01-27 20:58 - 00000000 ____D C:\Program Files\KMSnano
2016-11-15 22:46 - 2014-12-03 11:28 - 00000000 ____D C:\Users\Petr\AppData\Roaming\uTorrent
2016-11-15 20:31 - 2016-01-19 10:36 - 00001336 _____ C:\Users\Public\Desktop\Freemake Video Downloader.lnk
2016-11-15 20:31 - 2016-01-19 10:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
2016-11-15 20:31 - 2016-01-19 10:36 - 00000000 ____D C:\ProgramData\Freemake
2016-11-15 20:31 - 2015-11-01 06:43 - 01278976 ___SH C:\Users\Petr\Desktop\Thumbs.db
2016-11-15 18:21 - 2014-12-03 16:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-11-14 16:04 - 2014-02-27 08:48 - 00000000 ____D C:\Users\Petr\AppData\Roaming\vlc
2016-11-13 13:51 - 2014-02-01 20:15 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-11-13 13:51 - 2014-02-01 20:15 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-11-13 13:51 - 2014-02-01 20:15 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-11-13 13:51 - 2014-02-01 20:15 - 00000000 ____D C:\Windows\system32\Macromed
2016-11-13 13:51 - 2014-01-27 21:17 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-11-13 13:16 - 2014-01-21 10:02 - 00000000 ____D C:\Program Files (x86)\Google
2016-11-13 02:26 - 2014-05-13 13:27 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-11-12 16:21 - 2015-12-01 09:34 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-11-12 16:20 - 2015-12-01 09:35 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-11-12 13:58 - 2014-05-13 13:27 - 00969184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2016-11-12 13:58 - 2014-05-13 13:27 - 00293352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2016-11-12 13:58 - 2014-01-27 22:10 - 00513632 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2016-11-12 13:56 - 2015-07-04 10:01 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-11-12 13:56 - 2014-05-13 13:34 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-11-12 13:56 - 2014-05-13 13:34 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-11-12 13:56 - 2014-05-13 13:27 - 00969560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.147895550213507
2016-11-12 13:56 - 2014-05-13 13:27 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys.147895550666112
2016-11-12 13:56 - 2014-05-13 13:27 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-11-12 13:56 - 2014-05-13 13:27 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-11-12 13:56 - 2014-01-27 22:10 - 00513496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.147895550441310
2016-11-12 13:56 - 2014-01-27 22:09 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-11-12 13:47 - 2016-02-01 08:31 - 00003948 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-11-12 13:47 - 2016-02-01 08:31 - 00003696 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
==================== Files in the root of some directories =======
2015-06-29 18:20 - 2015-07-03 16:38 - 0000428 _____ () C:\Users\Petr\AppData\Roaming\MANDIS.MTBF.txt
2015-06-29 18:20 - 2015-07-03 16:54 - 0000934 _____ () C:\Users\Petr\AppData\Roaming\__AvidCloudManager.log
2015-06-29 18:20 - 2015-06-29 18:26 - 0000792 _____ () C:\Users\Petr\AppData\Roaming\__AvidCloudManagerPrevious.log
2014-01-20 23:21 - 2014-01-20 23:21 - 0000000 _____ () C:\Users\Petr\AppData\Local\AtStart.txt
2014-01-20 23:21 - 2014-01-20 23:21 - 0000000 _____ () C:\Users\Petr\AppData\Local\DSwitch.txt
2014-01-20 23:21 - 2014-01-20 23:21 - 0000000 _____ () C:\Users\Petr\AppData\Local\QSwitch.txt
2014-01-27 21:15 - 2016-03-01 17:05 - 0005344 _____ () C:\ProgramData\hpzinstall.log
Some files in TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\FreemakeVideoDownloaderFull.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-11-14 00:36
==================== End of FRST.txt ============================
info.txt logfile of random's system information tool 1.10 2016-11-17 06:51:29
======MBR======
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
======Uninstall list======
-->C:\Windows\SysWOW64\Macromed\Flash\uninstall_activeX.exe
Absolute Uninstaller 5.3.1.21-->C:\Program Files (x86)\Absolute Uninstaller\uninst.exe
Adobe Acrobat Reader DC-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-AC0F074E4100}
Adobe Flash Player 23 NPAPI-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_207_Plugin.exe -maintain plugin
Adobe Photoshop CC 2015-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="2.0" --mode="Uninstall" --mediaSignature="{793C2BF7-A4FE-4608-91C9-9282C5801C21}"
Adobe Photoshop CS-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}\setup.exe" -l0x5
Adobe Refresh Manager-->MsiExec.exe /I{AC76BA86-0804-1033-1959-001824205020}
Aktualizace NVIDIA 1.15.2-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{0A836BF7-6020-42E8-81E8-72BB4E1A744C}\NVI2.DLL",UninstallPackage Display.Update
Any Video Converter 5.8.6-->"C:\Program Files (x86)\Any Video Converter\unins000.exe"
Avast Free Antivirus-->C:\Program Files\Alwil Software\Avast5\Setup\Instup.exe /control_panel
Broadcom 802.11 Wireless LAN Adapter-->"C:\Program Files\Broadcom\Broadcom 802.11\Driver\bcmwlu00.exe" verbose /rootkey="Software\Broadcom\802.11\UninstallInfo" /rootdir="C:\Program Files\Broadcom\Broadcom 802.11\Driver"
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
Definition Update for Microsoft Office 2013 (KB2965273) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{3D7BF4DB-4BB0-4559-9E7D-9BFFEBD36234}" "1029" "0"
Defraggler-->"C:\Program Files\Defraggler\uninst.exe"
FormatFactory 3.8.0.0-->C:\Program Files (x86)\FormatFactory\uninst.exe
Fotogalerie-->MsiExec.exe /X{F37D360D-9308-4BB1-8515-DC6B637B9486}
Fotosizer 2.09-->C:\Program Files (x86)\Fotosizer\uninst.exe
Freemake Video Downloader-->"C:\Program Files (x86)\Freemake\Freemake Video Downloader\Uninstall\unins000.exe"
Glary Undelete 5.0.1.19-->C:\Program Files (x86)\Glary Undelete\uninst.exe
Google Earth-->MsiExec.exe /I{A0C18B96-AB79-46BD-8321-6FA83E6D25B9}
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
HP MediaSmart Live TV-->"C:\Program Files (x86)\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\setup.exe" /z-uninstall
HP MediaSmart Live TV-->"C:\Program Files (x86)\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\setup.exe" /z-uninstall
Intel(R) Turbo Boost Technology Driver-->C:\Program Files (x86)\Intel\Intel(R) Turbo Boost Technology Driver\Uninstall\setup.exe -uninstall -iips
Jpeg Resampler Vs 6+-->"C:\Program Files (x86)\JpegResampler2010\unins000.exe"
Junk Mail filter update-->MsiExec.exe /I{0BE9E708-5DC0-4963-9CFD-0AA519090E79}
K-Lite Codec Pack 11.7.5 Full-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
KMSnano 24-->"C:\Program Files\KMSnano\unins000.exe"
Microsoft .NET Framework 4.5.1 (CSY)-->MsiExec.exe /X{50813B8C-FCBB-3C61-8039-EAAA93029066}
Microsoft .NET Framework 4.5.1 (čeština)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\CSY\\Setup.exe /repair /x86 /x64 /lcid 1029
Microsoft .NET Framework 4.5.1-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\\Setup.exe /repair /x86 /x64
Microsoft .NET Framework 4.5.1-->MsiExec.exe /X{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}
Microsoft Access MUI (Czech) 2013-->MsiExec.exe /X{90150000-0015-0405-1000-0000000FF1CE}
Microsoft DCF MUI (Czech) 2013-->MsiExec.exe /X{90150000-0090-0405-1000-0000000FF1CE}
Microsoft Excel MUI (Czech) 2013-->MsiExec.exe /X{90150000-0016-0405-1000-0000000FF1CE}
Microsoft Groove MUI (Czech) 2013-->MsiExec.exe /X{90150000-00BA-0405-1000-0000000FF1CE}
Microsoft InfoPath MUI (Czech) 2013-->MsiExec.exe /X{90150000-0044-0405-1000-0000000FF1CE}
Microsoft Lync MUI (Czech) 2013-->MsiExec.exe /X{90150000-012B-0405-1000-0000000FF1CE}
Microsoft Office 32-bit Components 2013-->MsiExec.exe /X{90150000-00C1-0000-1000-0000000FF1CE}
Microsoft Office Korrekturhilfen 2013 - Deutsch-->MsiExec.exe /X{90150000-001F-0407-1000-0000000FF1CE}
Microsoft Office OSM MUI (Czech) 2013-->MsiExec.exe /X{90150000-00E1-0405-1000-0000000FF1CE}
Microsoft Office OSM UX MUI (Czech) 2013-->MsiExec.exe /X{90150000-00E2-0405-1000-0000000FF1CE}
Microsoft Office Professional Plus 2013-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Office Setup Controller\setup.exe" /uninstall PROPLUSR /dll OSETUP.DLL
Microsoft Office Professional Plus 2013-->MsiExec.exe /X{91150000-0011-0000-1000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2013-->MsiExec.exe /X{90150000-002C-0405-1000-0000000FF1CE}
Microsoft Office Proofing Tools 2013 - English-->MsiExec.exe /X{90150000-001F-0409-1000-0000000FF1CE}
Microsoft Office Shared 32-bit MUI (Czech) 2013-->MsiExec.exe /X{90150000-00C1-0405-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2013-->MsiExec.exe /X{90150000-006E-0405-1000-0000000FF1CE}
Microsoft OneNote MUI (Czech) 2013-->MsiExec.exe /X{90150000-00A1-0405-1000-0000000FF1CE}
Microsoft Outlook MUI (Czech) 2013-->MsiExec.exe /X{90150000-001A-0405-1000-0000000FF1CE}
Microsoft PowerPoint MUI (Czech) 2013-->MsiExec.exe /X{90150000-0018-0405-1000-0000000FF1CE}
Microsoft Publisher MUI (Czech) 2013-->MsiExec.exe /X{90150000-0019-0405-1000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030-->"C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030-->"C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030-->MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030-->MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501-->"C:\ProgramData\Package Cache\{050d4fc8-5d48-4b8f-8972-47c82c46020f}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501-->"C:\ProgramData\Package Cache\{f65db027-aff3-4070-886a-0d87064aabb1}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005-->MsiExec.exe /X{929FBD26-9020-399B-9A7A-751D61F0B942}
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->c:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)\install.exe
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->MsiExec.exe /X{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}
Microsoft Word MUI (Czech) 2013-->MsiExec.exe /X{90150000-001B-0405-1000-0000000FF1CE}
Movie Maker-->MsiExec.exe /X{38F03569-A636-4CF3-BDDE-032C8C251304}
Movie Maker-->MsiExec.exe /X{3D2CF65C-B544-4308-B996-700D3E5F6C4C}
Movie Maker-->MsiExec.exe /X{DD67BE4B-7E62-4215-AFA3-F123A800A389}
Mozilla Firefox 49.0.2 (x86 cs)-->"C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe"
Mozilla Maintenance Service-->"C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe"
MSVCRT_amd64-->MsiExec.exe /I{D0B44725-3666-492D-BEF6-587A14BD9BD9}
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSVCRT110_amd64-->MsiExec.exe /I{E9FA781F-3E80-4399-825A-AD3E11C28C77}
MSVCRT110-->MsiExec.exe /I{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština-->MsiExec.exe /X{90150000-001F-0405-1000-0000000FF1CE}
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina-->MsiExec.exe /X{90150000-001F-041B-1000-0000000FF1CE}
NVIDIA Ovladače grafiky 331.65-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{0A836BF7-6020-42E8-81E8-72BB4E1A744C}\NVI2.DLL",UninstallPackage Display.Driver
Photo Common-->MsiExec.exe /X{15BFD731-A10E-43E9-9D18-0F682BC0480F}
Photo Common-->MsiExec.exe /X{CAA0F57A-BA8C-4AD8-AA03-F32B0E4F5623}
Photo Gallery-->MsiExec.exe /X{07AAB66E-4718-422D-9218-4AFB3C922A71}
Photo Gallery-->MsiExec.exe /X{C992FFE0-AC32-4FA9-BC9A-F1637B9E655D}
Playway to English 1 CD-ROM-->MsiExec.exe /I{6A031978-1FDC-42D4-A30B-018FA99C5784}
Samsung Kies3-->"C:\Program Files (x86)\InstallShield Installation Information\{88547073-C566-4895-9005-EBE98EA3F7C7}\setup.exe" -runfromtemp -l0x0409 -removeonly
Samsung Kies3-->MsiExec.exe /I{88547073-C566-4895-9005-EBE98EA3F7C7}
ScanSoft OmniPage SE 16-->MsiExec.exe /X{27AC9FC3-9041-4CA0-B718-C0B8122D9B32}
ScanSoft PaperPort 11-->MsiExec.exe /I{1D66156D-D721-4B55-B08B-BDC917E8DCD0}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {F7CBA1C7-E5B5-39E9-9631-459E1FE08C45}
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {BD0F9F7E-62B2-3971-9E2E-B87B832CE89D}
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {513BC47F-0560-33C2-A029-C5387642233A}
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {599EC629-2679-30CE-B28B-7432EF5FC126}
Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {47FA5DCB-D13C-331E-BC32-65E53BDD949C}
Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {48006B2D-366F-3386-92C7-785D3A523042}
Security Update for Microsoft Office 2013 (KB2910941) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{43ECCB82-45DF-4800-8930-0689BF91F765}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039734) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{FB8031A1-6407-43C0-8AE5-4BD452FA42F0}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039798) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{05F0956E-88D3-4437-BE87-E2B0CA491BE8}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039798) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{05F0956E-88D3-4437-BE87-E2B0CA491BE8}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3085572) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{6190EC69-4261-4E1F-AD8A-417355BC58E7}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3101360) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{73A98FFF-A40F-4B6F-9E31-0DC7D6234169}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3101360) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{73A98FFF-A40F-4B6F-9E31-0DC7D6234169}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3101360) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{73A98FFF-A40F-4B6F-9E31-0DC7D6234169}" "1029" "0"
Security Update for Microsoft OneNote 2013 (KB3101371) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0405-1000-0000000FF1CE}" "{953F3907-B939-4CD7-9885-D88AEDF92716}" "1029" "0"
Security Update for Microsoft OneNote 2013 (KB3101371) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{953F3907-B939-4CD7-9885-D88AEDF92716}" "1029" "0"
Security Update for Microsoft OneNote 2013 (KB3101371) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{953F3907-B939-4CD7-9885-D88AEDF92716}" "1029" "0"
Security Update for Microsoft PowerPoint 2013 (KB3055029) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-1000-0000000FF1CE}" "{C047B653-5363-4F75-A3D4-7FB3878D32BD}" "1029" "0"
Security Update for Microsoft PowerPoint 2013 (KB3055029) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{C047B653-5363-4F75-A3D4-7FB3878D32BD}" "1029" "0"
Security Update for Microsoft Publisher 2013 (KB3085561) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0405-1000-0000000FF1CE}" "{B868C869-9B43-469A-A22F-C2E79B706F14}" "1029" "0"
Security Update for Microsoft Publisher 2013 (KB3085561) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{B868C869-9B43-469A-A22F-C2E79B706F14}" "1029" "0"
Security Update for Microsoft Publisher 2013 (KB3085561) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{B868C869-9B43-469A-A22F-C2E79B706F14}" "1029" "0"
Security Update for Microsoft Word 2013 (KB2965224) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-1000-0000000FF1CE}" "{CAFFE1BB-5EB9-413A-B84A-65F01EAF7C15}" "1029" "0"
Security Update for Microsoft Word 2013 (KB2965224) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-1000-0000000FF1CE}" "{CAFFE1BB-5EB9-413A-B84A-65F01EAF7C15}" "1029" "0"
Security Update for Microsoft Word 2013 (KB2965224) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-1000-0000000FF1CE}" "{CAFFE1BB-5EB9-413A-B84A-65F01EAF7C15}" "1029" "0"
Security Update for Microsoft Word 2013 (KB2965224) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{CAFFE1BB-5EB9-413A-B84A-65F01EAF7C15}" "1029" "0"
Security Update for Skype for Business 2015 (KB3085500) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{2CBBF876-7E76-4A01-8E9D-AEE3A99A19F2}" "1029" "0"
Security Update for Skype for Business 2015 (KB3085500) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-1000-0000000FF1CE}" "{2CBBF876-7E76-4A01-8E9D-AEE3A99A19F2}" "1029" "0"
Security Update for Skype for Business 2015 (KB3085500) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{2CBBF876-7E76-4A01-8E9D-AEE3A99A19F2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0405-1000-0000000FF1CE}" "{1E8252A7-D489-4BB6-9694-93799FFD33ED}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0407-1000-0000000FF1CE}" "{DABB9E2A-F054-4F97-9EB2-6992316C6EC7}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-1000-0000000FF1CE}" "{835E4BED-E265-4103-AE14-0B4C70CF3FE8}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-041B-1000-0000000FF1CE}" "{4601BD00-BC9B-4CA2-940C-2552782C7347}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002C-0405-1000-0000000FF1CE}" "{EC915383-0457-4D83-BE7A-009D7841E9C5}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0044-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{3F685A71-DF4A-4AC0-A110-0FA0B7FFD86C}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0090-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{1931508C-C004-4983-81E3-70BE6252904B}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0405-1000-0000000FF1CE}" "{6E88843F-58F2-45EB-8C4A-0DDFE45366E1}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E1-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E2-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-1000-0000000FF1CE}" "{010BF41A-4D78-40C3-90BA-117DF64A0AE2}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}" "1029" "0"
Skype Click to Call-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 7.0-->MsiExec.exe /X{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
SP45629 - Intel Chipset Installation Utility-->MsiExec.exe /I{7AB416C2-4AEC-4967-A873-E2A3B404E6EC}
Synaptics Pointing Device Driver-->rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
TeamViewer 11-->C:\Program Files (x86)\TeamViewer\uninstall.exe
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Update for Microsoft Access 2013 (KB3085503) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0405-1000-0000000FF1CE}" "{08B86615-1181-4A9C-A7B9-BBE31E2BD466}" "1029" "0"
Update for Microsoft Access 2013 (KB3085503) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{08B86615-1181-4A9C-A7B9-BBE31E2BD466}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0405-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Excel 2013 (KB2965275) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{F1E55CDA-F069-414A-9257-C59E4DBFA091}" "1029" "0"
Update for Microsoft Office 2013 (KB2760344) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{EF77B4A6-DFEC-4010-A87D-9B6BF87FABEC}" "1029" "0"
Update for Microsoft Office 2013 (KB2760371) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{25DEA344-FF6F-41BD-B88F-5242BB8E80E1}" "1029" "0"
Update for Microsoft Office 2013 (KB2760544) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{62857CDD-2985-4939-91BA-19ED0B0031A5}" "1029" "0"
Update for Microsoft Office 2013 (KB2768012) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{0814662C-FD28-4DE0-ACE5-EE50D1D6C8FB}" "1029" "0"
Update for Microsoft Office 2013 (KB2837654) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{2147FFF7-71C4-4306-AFE2-1AA7A6025BB1}" "1029" "0"
Update for Microsoft Office 2013 (KB2880478) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{8116ED50-F1E7-49E1-9D8D-421497D34B0F}" "1029" "0"
Update for Microsoft Office 2013 (KB2880487) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{76379D52-B506-4634-8404-8E1718DF1430}" "1029" "0"
Update for Microsoft Office 2013 (KB2881001) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{DF1B7B95-4A86-4605-A628-556394B5580A}" "1029" "0"
Update for Microsoft Office 2013 (KB2881076) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-1000-0000000FF1CE}" "{F492C757-000C-4745-BD8F-AD03F029C6BB}" "1029" "0"
Update for Microsoft Office 2013 (KB2881076) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{F492C757-000C-4745-BD8F-AD03F029C6BB}" "1029" "0"
Update for Microsoft Office 2013 (KB2883036) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{E919ACF4-A1D7-4CAA-A103-5EB115563721}" "1029" "0"
Update for Microsoft Office 2013 (KB2883095) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{EADBF225-163E-406B-B11A-26ECCCAB5A0E}" "1029" "0"
Update for Microsoft Office 2013 (KB2889863) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{82D6A9DF-894F-488F-A0C3-54A37A6E7B2A}" "1029" "0"
Update for Microsoft Office 2013 (KB2899522) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A4E88D96-814F-4183-8DB2-BA3EC2B7E434}" "1029" "0"
Update for Microsoft Office 2013 (KB2956171) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A3DC29E8-0E97-448A-B9C0-9086CB8B3E86}" "1029" "0"
Update for Microsoft Office 2013 (KB2956177) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{3F8EF29A-A7F8-48B0-BA19-01D0B88AB1B7}" "1029" "0"
Update for Microsoft Office 2013 (KB2956177) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{3F8EF29A-A7F8-48B0-BA19-01D0B88AB1B7}" "1029" "0"
Update for Microsoft Office 2013 (KB2965262) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{D99CCEA8-CBD6-4800-8805-535A99AFC8BC}" "1029" "0"
Update for Microsoft Office 2013 (KB2965262) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{D99CCEA8-CBD6-4800-8805-535A99AFC8BC}" "1029" "0"
Update for Microsoft Office 2013 (KB2965267) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{A64A29C8-BB35-4FC5-84D6-6D1C6B2BB59F}" "1029" "0"
Update for Microsoft Office 2013 (KB2965267) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{A64A29C8-BB35-4FC5-84D6-6D1C6B2BB59F}" "1029" "0"
Update for Microsoft Office 2013 (KB2965267) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A64A29C8-BB35-4FC5-84D6-6D1C6B2BB59F}" "1029" "0"
Update for Microsoft Office 2013 (KB3023052) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A472CEA9-44BA-4ADD-8AD1-589B2F0240EE}" "1029" "0"
Update for Microsoft Office 2013 (KB3039701) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{8A6AEFA2-8003-4FD6-8EF7-DEAD1C07803C}" "1029" "0"
Update for Microsoft Office 2013 (KB3039718) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{88E8FA4B-38D9-496D-86D8-BB84E9AB520D}" "1029" "0"
Update for Microsoft Office 2013 (KB3039739) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-1000-0000000FF1CE}" "{AFF17D1D-61FB-4F35-86B8-074884BDD0A6}" "1029" "0"
Update for Microsoft Office 2013 (KB3039739) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{AFF17D1D-61FB-4F35-86B8-074884BDD0A6}" "1029" "0"
Update for Microsoft Office 2013 (KB3039766) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{881BA890-D29E-4212-ADDC-A92BE0FBA444}" "1029" "0"
Update for Microsoft Office 2013 (KB3054783) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{4F73DEDD-E1B8-43A4-B999-D18C134D22B5}" "1029" "0"
Update for Microsoft Office 2013 (KB3054785) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{A4970C67-6BF6-470D-9A66-BD7488A56F2E}" "1029" "0"
Update for Microsoft Office 2013 (KB3054785) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{A4970C67-6BF6-470D-9A66-BD7488A56F2E}" "1029" "0"
Update for Microsoft Office 2013 (KB3054856) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{65B377E4-0004-4060-A2EE-EC38AD73EF92}" "1029" "0"
Update for Microsoft Office 2013 (KB3054935) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{875E1573-787C-4DAD-94E8-347D0406A1AD}" "1029" "0"
Update for Microsoft Office 2013 (KB3055011) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0405-1000-0000000FF1CE}" "{53DB886B-0826-45BC-8C4D-D761A5D5AB3C}" "1029" "0"
Update for Microsoft Office 2013 (KB3055011) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0407-1000-0000000FF1CE}" "{8F98D5E9-1F7E-4848-9431-CEE5E1E51313}" "1029" "0"
Update for Microsoft Office 2013 (KB3055011) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-1000-0000000FF1CE}" "{D05C001E-B0A0-4903-BC14-F34CB4A775C1}" "1029" "0"
Update for Microsoft Office 2013 (KB3055011) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-041B-1000-0000000FF1CE}" "{00EE9619-871B-4484-ABDD-2A829F3D683D}" "1029" "0"
Update for Microsoft Office 2013 (KB3085493) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{572934A4-C018-4D51-AA2C-F6F85B1E9129}" "1029" "0"
Update for Microsoft Office 2013 (KB3085506) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{F2858C55-53C1-4AA0-9DF5-E240E15F01BE}" "1029" "0"
Update for Microsoft Office 2013 (KB3101358) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{B685B80D-4621-44BA-9849-19C71C4CAC69}" "1029" "0"
Update for Microsoft Office 2013 (KB3101487) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{51348D5E-3736-4A29-98DD-6B97EE696382}" "1029" "0"
Update for Microsoft OneDrive for Business (KB2956185) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0405-1000-0000000FF1CE}" "{171E6E09-C2A5-432E-85A4-C19136E59BCE}" "1029" "0"
Update for Microsoft OneDrive for Business (KB2956185) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{171E6E09-C2A5-432E-85A4-C19136E59BCE}" "1029" "0"
Update for Microsoft OneDrive for Business (KB2956185) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0405-1000-0000000FF1CE}" "{171E6E09-C2A5-432E-85A4-C19136E59BCE}" "1029" "0"
Update for Microsoft OneDrive for Business (KB2956185) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{171E6E09-C2A5-432E-85A4-C19136E59BCE}" "1029" "0"
Update for Microsoft Outlook 2013 (KB2965270) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-1000-0000000FF1CE}" "{B4FE3F01-A94B-44F5-8142-C9522B537443}" "1029" "0"
Update for Microsoft Outlook 2013 (KB2965270) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{B4FE3F01-A94B-44F5-8142-C9522B537443}" "1029" "0"
Update for Microsoft Outlook Social Connector 2013 (KB3054854) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-1000-0000000FF1CE}" "{0B5649CA-AD84-4970-9FCE-548A3EF323ED}" "1029" "0"
Update for Microsoft Outlook Social Connector 2013 (KB3054854) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{0B5649CA-AD84-4970-9FCE-548A3EF323ED}" "1029" "0"
Update for Microsoft Project 2013 (KB2965279) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00C1-0000-1000-0000000FF1CE}" "{0CDCFFFE-0E55-4C46-9B09-8CB5D0F38566}" "1029" "0"
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-1000-0000000FF1CE}" "{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}" "1029" "0"
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}" "1029" "0"
Update for Microsoft Word 2013 (KB2878319) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{91150000-0011-0000-1000-0000000FF1CE}" "{BC51FE30-3A56-4802-8D9E-E9BC05B56B49}" "1029" "0"
Update for Skype for Business 2015 (KB2889853) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-1000-0000000FF1CE}" "{2B44F588-2B80-4DD3-B577-B10B3C6865EA}" "1029" "0"
VLC media player-->C:\Program Files (x86)\VLC\uninstall.exe
Windows Live Communications Platform-->MsiExec.exe /I{41C61308-6CFD-4D54-AB6A-7136ED08A18E}
Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{66B5819D-DE70-42BE-B40F-978FBA12452E}
Windows Live Essentials-->MsiExec.exe /I{9A470EA9-FF86-4C0E-992C-572BF2B9D6FF}
Windows Live Family Safety-->MsiExec.exe /I{2BC9C2FF-E0B7-40F9-B1A5-6F80663C301B}
Windows Live Family Safety-->MsiExec.exe /I{6152DEA9-EA0C-4013-9DBF-4A8881A7F722}
Windows Live Family Safety-->MsiExec.exe /X{CB3CA48C-95CB-412B-B7AE-6F2EA8F89907}
Windows Live ID Sign-in Assistant-->MsiExec.exe /I{CE52672C-A0E9-4450-8875-88A221D5CD50}
Windows Live Installer-->MsiExec.exe /I{659CB81C-B54E-4DF1-B618-F35777393A54}
Windows Live Mail-->MsiExec.exe /I{3EE8FA69-F2A5-4BDB-9E23-3ABB2421B4FA}
Windows Live Mail-->MsiExec.exe /I{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}
Windows Live Mail-->MsiExec.exe /I{BAD27F0E-5165-49A5-BE66-AF5BF73F2FEE}
Windows Live Messenger-->MsiExec.exe /X{88B9357F-0845-465F-96B9-50976FB9C6C2}
Windows Live Messenger-->MsiExec.exe /X{BAD984EE-790E-4513-A428-3BE2D426DCA7}
Windows Live Messenger-->MsiExec.exe /X{E703613B-BDAB-433E-A66A-DE0263E3D35D}
Windows Live MIME IFilter-->MsiExec.exe /I{25058321-C33E-496B-8915-6FD64D362CAF}
Windows Live Photo Common-->MsiExec.exe /X{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}
Windows Live PIMT Platform-->MsiExec.exe /I{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}
Windows Live SOXE Definitions-->MsiExec.exe /I{D1893000-EA77-493C-8DDD-E262436E959B}
Windows Live SOXE-->MsiExec.exe /I{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{6522F5F9-411B-4513-A75B-CEA00395F032}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{E100E2B5-F2EF-4955-AB7A-C3F2125A3BCD}
Windows Live UX Platform-->MsiExec.exe /I{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}
Windows Live Writer Resources-->MsiExec.exe /X{0F974770-76EB-4C38-986E-E7BDD9C0DFC4}
Windows Live Writer Resources-->MsiExec.exe /X{E5807449-CA84-42F6-9CE3-A0E2BDA9E24B}
Windows Live Writer-->MsiExec.exe /X{714E162E-CD4F-4F1B-8302-7F5179409C25}
WinRAR 5.21 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
WinZip 19.0-->MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240E5}
Xerox WorkCentre 6015B-->"C:\Program Files (x86)\InstallShield Installation Information\{FB21CB19-03DB-4422-AB72-3CA9C9499512}\setup.exe" -runfromtemp -l0x0405 -removeonly
Xerox WorkCentre 6015B-->MsiExec.exe /I{FB21CB19-03DB-4422-AB72-3CA9C9499512}
======System event log======
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953582
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953581
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953580
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953579
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
Computer Name: Mandis
Event Code: 51
Message: Na zařízení \Device\Harddisk1\DR2 byla při operaci stránkování rozpoznána chyba.
Record Number: 953578
Source Name: Disk
Time Written: 20151030160842.706968-000
Event Type: Upozornění
User:
=====Application event log=====
Computer Name: Mandis
Event Code: 4101
Message: Byla ověřena platnost licence systému Windows.
Record Number: 91358
Source Name: Microsoft-Windows-Winlogon
Time Written: 20151010164342.000000-000
Event Type: Informace
User:
Computer Name: Mandis
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.
Record Number: 91357
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20151010164339.494459-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: Mandis
Event Code: 105
Message:
Record Number: 91356
Source Name: HPSrv
Time Written: 20151010164339.000000-000
Event Type: Informace
User:
Computer Name: Mandis
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 91355
Source Name: Microsoft-Windows-EventSystem
Time Written: 20151010164339.000000-000
Event Type: Informace
User:
Computer Name: Mandis
Event Code: 6003
Message: Odběratel oznámení přihlašování do systému Windows <TrustedInstaller> nezpracoval důležitou událost upozornění.
Record Number: 91354
Source Name: Microsoft-Windows-Winlogon
Time Written: 20151010164339.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: Mandis
Event Code: 4634
Message: Účet byl odhlášen.
Předmět:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dbf
Typ přihlášení: 7
Tato událost je generována, pokud je zničena relace přihlášení. Může být spojena s událostí přihlášení pomocí hodnoty ID přihlášení. Hodnoty ID přihlášení jsou jednoznačné pouze v rámci jednotlivých restartů stejného počítače.
Record Number: 32371
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
Computer Name: Mandis
Event Code: 4634
Message: Účet byl odhlášen.
Předmět:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dcd
Typ přihlášení: 7
Tato událost je generována, pokud je zničena relace přihlášení. Může být spojena s událostí přihlášení pomocí hodnoty ID přihlášení. Hodnoty ID přihlášení jsou jednoznačné pouze v rámci jednotlivých restartů stejného počítače.
Record Number: 32370
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
Computer Name: Mandis
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dbf
Oprávnění: SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 32369
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
Computer Name: Mandis
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: MANDIS$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7
Typ přihlášení: 7
Nové přihlášení:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dcd
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2e4
Název procesu: C:\Windows\System32\winlogon.exe
Informace o síti:
Název pracovní stanice: MANDIS
Adresa zdrojové sítě 127.0.0.1
Zdrojový port: 0
Podrobné informace o ověření:
Proces přihlášení: User32
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 32368
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
Computer Name: Mandis
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: MANDIS$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7
Typ přihlášení: 7
Nové přihlášení:
ID zabezpečení: S-1-5-21-3400088848-3241487186-2567401322-1000
Název účtu: Petr
Doména účtu: Mandis
ID přihlášení: 0x1050dbf
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2e4
Název procesu: C:\Windows\System32\winlogon.exe
Informace o síti:
Název pracovní stanice: MANDIS
Adresa zdrojové sítě 127.0.0.1
Zdrojový port: 0
Podrobné informace o ověření:
Proces přihlášení: User32
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 32367
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150708202214.626579-000
Event Type: Úspěšný audit
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Broadcom\Broadcom 802.11\Driver;C:\Program Files (x86)\Windows Live\Shared
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 37 Stepping 2, GenuineIntel
"PROCESSOR_REVISION"=2502
"windows_tracing_logfile"=C:\BVTBin\Tests\installpackage\csilogfile.log
"windows_tracing_flags"=3
"Grande"=C:\Program Files (x86)\Xerox Office Printing\DocuPrint SSW\PrintingScout
-----------------EOF-----------------